VulnSea

rhui5/rhua-rhel9 vulnerabilities

CVEs whose affected-version data names the rhui5/rhua-rhel9 package. Each record lists the affected and patched versions; check a specific version with the dependency checker or POST /api/sbom.

7 CVEsRSS

CVE-2026-84232Medium· 5.4
2w ago

Pulpcore: python-pulpcore: stored cross-site scripting via inline rendering of uploaded html/svg content

A flaw was found in pulpcore's content serving application. Files uploaded to Pulp file-type repositories are served with their original content type (e.g., text/html for .html files, image/svg+xml for .svg files) and without a Content-D…

SunlitRed Hat · ansible-automation-platform-24/hub-rhel8EPSS 0.18%via CVEORG
CVE-2026-16730Medium· 5.5
1mo ago

A flaw was found in dbus-broker

A flaw was found in dbus-broker. When the process file-descriptor limit is reached, EMFILE/ENFILE errors during peer setup (notably SO_PEERPIDFD) are handled as fatal failures, causing the broker to exit. A local attacker who can open ma…

SunlitRed Hat · dbus-brokerEPSS 0.11%via NVD
CVE-2026-15588Medium· 5.3PoC
2mo ago

A denial-of-service and resource exhaustion vulnerability exists within the `GDBus` component of GLib

A denial-of-service and resource exhaustion vulnerability exists within the `GDBus` component of GLib. The `gdbusauth` authentication mechanism fails to enforce proper length limitations on data lines read from a client. An unauthenticat…

TwilightRed Hat · glib2EPSS 0.22%via NVD
CVE-2026-16118High· 7.1PoC
2mo ago

A flaw was found in xdgmime

A flaw was found in xdgmime. A heap-based buffer overflow can be triggered in _xdg_mime_magic_parse_magic_line() in the xdgmimemagic.c file on little-endian systems when an attacker-controlled MIME magic file in a user-writable XDG data …

Midnightxdg · xdgmimeEPSS 0.24%via NVD
CVE-2026-14164High· 7.5PoC
2mo ago

A double free issue has been identified in libarchive's RAR5 reader

A double free issue has been identified in libarchive's RAR5 reader. During parsing of a specially crafted RAR5 archive, the filtered_buf pointer may remain stale after being freed during unpacking state reinitialization. Subsequent proc…

MidnightRed Hat · libarchiveEPSS 0.49%via NVD
CVE-2026-33846High· 7.5
4mo ago

A heap buffer overflow vulnerability exists in the DTLS handshake fragment reassembly logic of GnuTLS

A heap buffer overflow vulnerability exists in the DTLS handshake fragment reassembly logic of GnuTLS. The issue arises in merge_handshake_packet() where incoming handshake fragments are matched and merged based solely on handshake type,…

TwilightRed Hat · gnutlsEPSS 1.3%via NVD
CVE-2025-5278Medium· 4.4
1y ago

A flaw was found in GNU Coreutils

A flaw was found in GNU Coreutils. The sort utility's begfield() function is vulnerable to a heap buffer under-read. The program may access memory outside the allocated buffer if a user runs a crafted command using the traditional key fo…

SunlitRed Hat · coreutilsEPSS 0.29%via NVD
rhui5/rhua-rhel9 vulnerabilities (CVEs) · VulnSea