Vulnerabilities

ID
Packages
Summary
Published
arrow_upward
Attributes
CLEANSTART-2026-YO86996
  • CleanStart/cadvisor
Previously, after a channel has been established, a malicious peer could send crafted messages that would deadlock the entire connection 14 hours ago
  • Fix available
  • Severity - 9.8 (Critical)
CLEANSTART-2026-ZJ50310
  • CleanStart/haproxy-ingress
Previously, after a channel has been established, a malicious peer could send crafted messages that would deadlock the entire connection 14 hours ago
  • Fix available
  • Severity - 9.8 (Critical)
CGA-ghg5-p4cp-796j
  • Chainguard/nvidia-nsight-compute-13.4
See record for full details 19 hours ago
  • No fix available
RHSA-2026:66327
  • Red Hat:enterprise_linux_eus:10.0/osbuild-composer
  • Red Hat:enterprise_linux_eus:10.0/osbuild-composer-core
  • Red Hat:enterprise_linux_eus:10.0/osbuild-composer-core-debuginfo
  • Red Hat:enterprise_linux_eus:10.0/osbuild-composer-debugsource
  • Red Hat:enterprise_linux_eus:10.0/osbuild-composer-tests-debuginfo
  • ... 2 more
Red Hat Security Advisory: osbuild-composer security, bug fix, and enhancement update yesterday
  • Fix available
  • Severity - 8.8 (High)
RHSA-2026:65895
  • Red Hat:enterprise_linux:10.2/osbuild-composer
  • Red Hat:enterprise_linux:10.2/osbuild-composer-core
  • Red Hat:enterprise_linux:10.2/osbuild-composer-core-debuginfo
  • Red Hat:enterprise_linux:10.2/osbuild-composer-debuginfo
  • Red Hat:enterprise_linux:10.2/osbuild-composer-debugsource
  • ... 3 more
Red Hat Security Advisory: osbuild-composer security update yesterday
  • Fix available
  • Severity - 8.8 (High)
RHSA-2026:65886
  • Red Hat:enterprise_linux:9::appstream/image-builder
  • Red Hat:enterprise_linux:9::appstream/image-builder-debuginfo
  • Red Hat:enterprise_linux:9::appstream/image-builder-debugsource
Red Hat Security Advisory: image-builder security update yesterday
  • Fix available
  • Severity - 8.2 (High)
CLEANSTART-2026-RC17482
  • CleanStart/minio-operator
ToASCII and ToUnicode functions incorrectly accept Punycode-encoded labels that decode to an ASCII-only label yesterday
  • Fix available
  • Severity - 9.8 (Critical)
CLEANSTART-2026-FD87409
  • CleanStart/nats-streaming
Previously, resolving relative paths containing parent directory (' yesterday
  • Fix available
  • Severity - 9.8 (Critical)
CLEANSTART-2026-UN51807
  • CleanStart/nats-streaming
ToASCII and ToUnicode functions incorrectly accept Punycode-encoded labels that decode to an ASCII-only label yesterday
  • Fix available
  • Severity - 9.8 (Critical)
CLEANSTART-2026-EC45528
  • CleanStart/apache-nifi
Improper TLS hostname verification vulnerability in Apache HttpComponents Client 5 yesterday
  • Fix available
  • Severity - 9.8 (Critical)
CLEANSTART-2026-OB24504
  • CleanStart/kube-state-metrics
Previously, resolving relative paths containing parent directory (' yesterday
  • Fix available
  • Severity - 9.8 (Critical)
CLEANSTART-2026-VO98287
  • CleanStart/vault
Previously, after a channel has been established, a malicious peer could send crafted messages that would deadlock the entire connection yesterday
  • Fix available
  • Severity - 9.8 (Critical)
CLEANSTART-2026-TY53144
  • CleanStart/vault
Previously, after a channel has been established, a malicious peer could send crafted messages that would deadlock the entire connection yesterday
  • Fix available
  • Severity - 9.8 (Critical)
CLEANSTART-2026-YS01797
  • CleanStart/calico
ToASCII and ToUnicode functions incorrectly accept Punycode-encoded labels that decode to an ASCII-only label yesterday
  • Fix available
  • Severity - 9.8 (Critical)
CLEANSTART-2026-HR50080
  • CleanStart/cert-manager
ToASCII and ToUnicode functions incorrectly accept Punycode-encoded labels that decode to an ASCII-only label yesterday
  • Fix available
  • Severity - 9.8 (Critical)
CLEANSTART-2026-GY20219
  • CleanStart/calico
ToASCII and ToUnicode functions incorrectly accept Punycode-encoded labels that decode to an ASCII-only label yesterday
  • Fix available
  • Severity - 9.8 (Critical)