Technology · Red Hat
Red Hat Enterprise Linux 10 vulnerabilities
Updated . Rebuilt every hour.
Junglewise Threat Intelligence has tracked 140 vulnerabilities in Red Hat Enterprise Linux 10: 0 in the last 7 days and 68 in the last 90 days, 4 of them critical and 0 exploited in the wild. The most recent, CVE-2026-18358, was published on 31 July 2026.
- Last 7 days
- 0
- Last 90 days
- 68
- Critical, all time
- 4
- Exploited in the wild
- 0
About Red Hat Enterprise Linux 10
A commercial Linux distribution developed by Red Hat for enterprise environments.
Latest Red Hat Enterprise Linux 10 vulnerabilities
- CVE-2026-18358: Red Hat Enterprise Linux gnome-remote-desktop DoS in system-mode RDPhighCVSS 7.5
- CVE-2026-18157: Red Hat yggdrasil-worker-package-manager argument injection in APT backendhighCVSS 7.8
- CVE-2026-58222: Samba AD DC LDAP filter injection and ACL bypass in Compare requestshighCVSS 8.8
- CVE-2026-58216: Samba KDC out-of-bounds read in kpasswd servicemediumCVSS 5.3
- CVE-2026-58218: Samba internal DNS server denial of service via TKEY cache exhaustionmediumCVSS 5.3
- CVE-2026-16527: Red Hat PCP auth bypass in pmproxy /store endpointhighCVSS 7.3
- CVE-2026-16526: Red Hat PCP privilege escalation in linux_sockets PMDAhighCVSS 8.8
- CVE-2026-16524: PCP linux_sockets PMDA command injection in network.persocket.filterhighCVSS 7.8
- CVE-2026-18220: GNU binutils out-of-bounds write in BFD DLX ELF backendhighCVSS 7.8
- CVE-2026-18107: CRIU privilege escalation via rseq critical section hijack during checkpointhighCVSS 7.8
- CVE-2026-16313: sg3_utils command injection via udev property injection in sg_inqhighCVSS 7.6
- CVE-2026-17072: GStreamer gst-plugins-good heap out-of-bounds read in Matroska demuxerlowCVSS 3.3
- CVE-2026-15003: GNU Binutils heap overflow in linker XCOFF processingmediumCVSS 5.6
- CVE-2026-16743: freedesktop.org accountsservice arbitrary file read in SetIconFilemediumCVSS 5.5
- CVE-2026-16730: dbus-broker denial of service via file-descriptor exhaustionmediumCVSS 5.5
- CVE-2026-12353: Red Hat Certificate System memory leak in TLS endpointmediumCVSS 5.3
- CVE-2026-64611: OpenPrinting libcupsfilters infinite loop in cfIEEE1284NormalizeMakeModelhighCVSS 7.5
- CVE-2026-6390: GNU nano format string vulnerability in multi-buffer error handlingmediumCVSS 6.8
- CVE-2026-16615: GNOME librest weak PRNG in OAuth PKCE implementationmediumCVSS 6.8
- CVE-2026-16552: systemd systemd-tmpfiles symlink-redirected arbitrary file overwritemediumCVSS 6.3
- CVE-2026-16473: BlueZ sbc heap out-of-bounds read in SBC frame decodermediumCVSS 4.3
- CVE-2026-16517: libarchive signed integer overflow in ZIP writerlowCVSS 2.9
- CVE-2026-16493: Red Hat ansible-core argument injection in ansible-galaxy collection installhighCVSS 7.8
- CVE-2026-59851: libssh authentication bypass in GSSAPIKeyExchangehighCVSS 8.8
- CVE-2026-59850: libssh use-after-free in channel data callbacksmediumCVSS 4.3
Most severe Red Hat Enterprise Linux 10 vulnerabilities
Exploited in the wild first, then by severity and CVSS score.
- CVE-2026-33937: Handlebars.js remote code execution via AST type confusion in compilecriticalCVSS 9.8EPSS 1.7%
- CVE-2025-14179: PHP PDO Firebird SQL injection via NUL bytes in quoted stringscriticalCVSS 9.8EPSS 0.3%
- CVE-2026-14544: HP HPLIP integer overflow in hpcups processing pathcriticalCVSS 9.8
- CVE-2026-42216: AcademySoftwareFoundation OpenEXR out-of-bounds read in IDManifestcriticalCVSS 9.1EPSS 0.4%
- CVE-2025-9900: Libtiff write-what-where condition in TIFF image processinghighCVSS 8.8EPSS 0.7%
- CVE-2026-41142: AcademySoftwareFoundation OpenEXR heap OOB write in ImageChannel::resizehighCVSS 8.8EPSS 0.3%
- CVE-2026-58222: Samba AD DC LDAP filter injection and ACL bypass in Compare requestshighCVSS 8.8
- CVE-2026-16526: Red Hat PCP privilege escalation in linux_sockets PMDAhighCVSS 8.8
- CVE-2026-59851: libssh authentication bypass in GSSAPIKeyExchangehighCVSS 8.8
- CVE-2026-5674: PipeWire sandbox escape via PulseAudio compatibility layerhighCVSS 8.8
Vulnerabilities per week
The last 13 weeks, by the week each vulnerability was published.
| Week of | Bar | Vulns | Critical |
|---|---|---|---|
| 29 Jun 2026 | 17 | 1 | |
| 6 Jul 2026 | 2 | 0 | |
| 13 Jul 2026 | 7 | 0 | |
| 20 Jul 2026 | 29 | 0 | |
| 27 Jul 2026 | 13 | 0 | |
| 3 Aug 2026 | 0 | 0 | |
| 10 Aug 2026 | 0 | 0 | |
| 17 Aug 2026 | 0 | 0 | |
| 24 Aug 2026 | 0 | 0 | |
| 31 Aug 2026 | 0 | 0 | |
| 7 Sep 2026 | 0 | 0 | |
| 14 Sep 2026 | 0 | 0 | |
| 21 Sep 2026 | 0 | 0 |
How this is built
Junglewise Threat Intelligence collects vulnerabilities from NVD, GitHub Security Advisories, OSV, the CISA Known Exploited Vulnerabilities catalog, FIRST EPSS and vendor advisories, and matches each one to the technologies and vendors it affects. Dates are the date a vulnerability was published, in UTC.
The pages are rebuilt from the database every hour. Frozen weekly and monthly reports never change once published, so they can be cited.
Use this data
The same data is at https://junglewise.ai/threats/technologies/enterprise-linux-10.json, for scripts and language models. It is free to reuse under CC BY 4.0 with a link back to this page.
Cite as: Junglewise Threat Intelligence, "Red Hat Enterprise Linux 10 vulnerabilities", https://junglewise.ai/threats/technologies/enterprise-linux-10, 26 September 2026.