{"schema_version":1,"title":"Red Hat Enterprise Linux 10 vulnerabilities","summary":"Junglewise Threat Intelligence has tracked 140 vulnerabilities in Red Hat Enterprise Linux 10: 0 in the last 7 days and 68 in the last 90 days, 4 of them critical and 0 exploited in the wild. The most recent, CVE-2026-18358, was published on 31 July 2026.","url":"https://junglewise.ai/threats/technologies/enterprise-linux-10","json_url":"https://junglewise.ai/threats/technologies/enterprise-linux-10.json","publisher":"Junglewise Threat Intelligence","license":"CC-BY-4.0","license_url":"https://creativecommons.org/licenses/by/4.0/","attribution":"Junglewise Threat Intelligence, https://junglewise.ai/threats/technologies/enterprise-linux-10","sources":"NVD, GitHub Security Advisories, OSV, the CISA Known Exploited Vulnerabilities catalog, FIRST EPSS and vendor advisories","kind":"technology","counts":{"high":51,"all_time":140,"critical":4,"exploited":0,"last_7_days":0,"last_30_days":0,"last_90_days":68,"last_365_days":127},"latest":[{"cve":"CVE-2026-18358","cvss":7.5,"slug":"cve-2026-18358-red-hat-enterprise-linux-gnome-remote-desktop-dos-in-system-mode","title":"Red Hat Enterprise Linux gnome-remote-desktop DoS in system-mode RDP","severity":"high","exploited":false,"published_at":"2026-07-31T13:17:19.933+00:00","url":"https://junglewise.ai/threats/cve-2026-18358-red-hat-enterprise-linux-gnome-remote-desktop-dos-in-system-mode"},{"cve":"CVE-2026-18157","cvss":7.8,"slug":"cve-2026-18157-red-hat-yggdrasil-worker-package-manager-argument-injection-in","title":"Red Hat yggdrasil-worker-package-manager argument injection in APT backend","severity":"high","exploited":false,"published_at":"2026-07-31T03:16:25.223+00:00","url":"https://junglewise.ai/threats/cve-2026-18157-red-hat-yggdrasil-worker-package-manager-argument-injection-in"},{"cve":"CVE-2026-58222","cvss":8.8,"slug":"cve-2026-58222-samba-ad-dc-ldap-filter-injection-and-acl-bypass-in-compare","title":"Samba AD DC LDAP filter injection and ACL bypass in Compare requests","severity":"high","exploited":false,"published_at":"2026-07-30T16:17:14.933+00:00","url":"https://junglewise.ai/threats/cve-2026-58222-samba-ad-dc-ldap-filter-injection-and-acl-bypass-in-compare"},{"cve":"CVE-2026-58216","cvss":5.3,"slug":"cve-2026-58216-samba-kdc-out-of-bounds-read-in-kpasswd-service","title":"Samba KDC out-of-bounds read in kpasswd service","severity":"medium","exploited":false,"published_at":"2026-07-30T16:17:14.767+00:00","url":"https://junglewise.ai/threats/cve-2026-58216-samba-kdc-out-of-bounds-read-in-kpasswd-service"},{"cve":"CVE-2026-58218","cvss":5.3,"slug":"cve-2026-58218-samba-internal-dns-server-denial-of-service-via-tkey-cache","title":"Samba internal DNS server denial of service via TKEY cache exhaustion","severity":"medium","exploited":false,"published_at":"2026-07-30T14:17:00.307+00:00","url":"https://junglewise.ai/threats/cve-2026-58218-samba-internal-dns-server-denial-of-service-via-tkey-cache"},{"cve":"CVE-2026-16527","cvss":7.3,"slug":"cve-2026-16527-red-hat-pcp-auth-bypass-in-pmproxy-store-endpoint","title":"Red Hat PCP auth bypass in pmproxy /store endpoint","severity":"high","exploited":false,"published_at":"2026-07-30T06:25:02.813+00:00","url":"https://junglewise.ai/threats/cve-2026-16527-red-hat-pcp-auth-bypass-in-pmproxy-store-endpoint"},{"cve":"CVE-2026-16526","cvss":8.8,"slug":"cve-2026-16526-red-hat-pcp-privilege-escalation-in-linux-sockets-pmda","title":"Red Hat PCP privilege escalation in linux_sockets PMDA","severity":"high","exploited":false,"published_at":"2026-07-30T06:25:02.663+00:00","url":"https://junglewise.ai/threats/cve-2026-16526-red-hat-pcp-privilege-escalation-in-linux-sockets-pmda"},{"cve":"CVE-2026-16524","cvss":7.8,"slug":"cve-2026-16524-pcp-linux-sockets-pmda-command-injection-in-network-persocket","title":"PCP linux_sockets PMDA command injection in network.persocket.filter","severity":"high","exploited":false,"published_at":"2026-07-30T06:25:02.46+00:00","url":"https://junglewise.ai/threats/cve-2026-16524-pcp-linux-sockets-pmda-command-injection-in-network-persocket"},{"cve":"CVE-2026-18220","cvss":7.8,"slug":"cve-2026-18220-gnu-binutils-out-of-bounds-write-in-bfd-dlx-elf-backend","title":"GNU binutils out-of-bounds write in BFD DLX ELF backend","severity":"high","exploited":false,"published_at":"2026-07-29T11:16:49.097+00:00","url":"https://junglewise.ai/threats/cve-2026-18220-gnu-binutils-out-of-bounds-write-in-bfd-dlx-elf-backend"},{"cve":"CVE-2026-18107","cvss":7.8,"slug":"cve-2026-18107-criu-privilege-escalation-via-rseq-critical-section-hijack-during","title":"CRIU privilege escalation via rseq critical section hijack during checkpoint","severity":"high","exploited":false,"published_at":"2026-07-28T19:17:32.42+00:00","url":"https://junglewise.ai/threats/cve-2026-18107-criu-privilege-escalation-via-rseq-critical-section-hijack-during"},{"cve":"CVE-2026-16313","cvss":7.6,"slug":"cve-2026-16313-sg3-utils-command-injection-via-udev-property-injection-in-sg-inq","title":"sg3_utils command injection via udev property injection in sg_inq","severity":"high","exploited":false,"published_at":"2026-07-28T17:16:37.807+00:00","url":"https://junglewise.ai/threats/cve-2026-16313-sg3-utils-command-injection-via-udev-property-injection-in-sg-inq"},{"cve":"CVE-2026-17072","cvss":3.3,"slug":"cve-2026-17072-gstreamer-gst-plugins-good-heap-out-of-bounds-read-in-matroska","title":"GStreamer gst-plugins-good heap out-of-bounds read in Matroska demuxer","severity":"low","exploited":false,"published_at":"2026-07-28T11:17:02.433+00:00","url":"https://junglewise.ai/threats/cve-2026-17072-gstreamer-gst-plugins-good-heap-out-of-bounds-read-in-matroska"},{"cve":"CVE-2026-15003","cvss":5.6,"slug":"cve-2026-15003-gnu-binutils-heap-overflow-in-linker-xcoff-processing","title":"GNU Binutils heap overflow in linker XCOFF processing","severity":"medium","exploited":false,"published_at":"2026-07-27T14:16:51.473+00:00","url":"https://junglewise.ai/threats/cve-2026-15003-gnu-binutils-heap-overflow-in-linker-xcoff-processing"},{"cve":"CVE-2026-16743","cvss":5.5,"slug":"cve-2026-16743-freedesktop-org-accountsservice-arbitrary-file-read-in","title":"freedesktop.org accountsservice arbitrary file read in SetIconFile","severity":"medium","exploited":false,"published_at":"2026-07-24T13:17:27.173+00:00","url":"https://junglewise.ai/threats/cve-2026-16743-freedesktop-org-accountsservice-arbitrary-file-read-in"},{"cve":"CVE-2026-16730","cvss":5.5,"slug":"cve-2026-16730-dbus-broker-denial-of-service-via-file-descriptor-exhaustion","title":"dbus-broker denial of service via file-descriptor exhaustion","severity":"medium","exploited":false,"published_at":"2026-07-24T12:16:47.717+00:00","url":"https://junglewise.ai/threats/cve-2026-16730-dbus-broker-denial-of-service-via-file-descriptor-exhaustion"},{"cve":"CVE-2026-12353","cvss":5.3,"slug":"cve-2026-12353-red-hat-certificate-system-memory-leak-in-tls-endpoint","title":"Red Hat Certificate System memory leak in TLS endpoint","severity":"medium","exploited":false,"published_at":"2026-07-23T20:17:07.077+00:00","url":"https://junglewise.ai/threats/cve-2026-12353-red-hat-certificate-system-memory-leak-in-tls-endpoint"},{"cve":"CVE-2026-64611","cvss":7.5,"slug":"cve-2026-64611-openprinting-libcupsfilters-infinite-loop-in","title":"OpenPrinting libcupsfilters infinite loop in cfIEEE1284NormalizeMakeModel","severity":"high","exploited":false,"published_at":"2026-07-23T11:16:40.68+00:00","url":"https://junglewise.ai/threats/cve-2026-64611-openprinting-libcupsfilters-infinite-loop-in"},{"cve":"CVE-2026-6390","cvss":6.8,"slug":"cve-2026-6390-gnu-nano-format-string-vulnerability-in-multi-buffer-error","title":"GNU nano format string vulnerability in multi-buffer error handling","severity":"medium","exploited":false,"published_at":"2026-07-23T05:16:38.36+00:00","url":"https://junglewise.ai/threats/cve-2026-6390-gnu-nano-format-string-vulnerability-in-multi-buffer-error"},{"cve":"CVE-2026-16615","cvss":6.8,"slug":"cve-2026-16615-gnome-librest-weak-prng-in-oauth-pkce-implementation","title":"GNOME librest weak PRNG in OAuth PKCE implementation","severity":"medium","exploited":false,"published_at":"2026-07-22T17:16:55.863+00:00","url":"https://junglewise.ai/threats/cve-2026-16615-gnome-librest-weak-prng-in-oauth-pkce-implementation"},{"cve":"CVE-2026-16552","cvss":6.3,"slug":"cve-2026-16552-systemd-systemd-tmpfiles-symlink-redirected-arbitrary-file","title":"systemd systemd-tmpfiles symlink-redirected arbitrary file overwrite","severity":"medium","exploited":false,"published_at":"2026-07-22T16:17:16.653+00:00","url":"https://junglewise.ai/threats/cve-2026-16552-systemd-systemd-tmpfiles-symlink-redirected-arbitrary-file"},{"cve":"CVE-2026-16473","cvss":4.3,"slug":"cve-2026-16473-bluez-sbc-heap-out-of-bounds-read-in-sbc-frame-decoder","title":"BlueZ sbc heap out-of-bounds read in SBC frame decoder","severity":"medium","exploited":false,"published_at":"2026-07-22T11:16:50.097+00:00","url":"https://junglewise.ai/threats/cve-2026-16473-bluez-sbc-heap-out-of-bounds-read-in-sbc-frame-decoder"},{"cve":"CVE-2026-16517","cvss":2.9,"slug":"cve-2026-16517-libarchive-signed-integer-overflow-in-zip-writer","title":"libarchive signed integer overflow in ZIP writer","severity":"low","exploited":false,"published_at":"2026-07-21T23:17:00.587+00:00","url":"https://junglewise.ai/threats/cve-2026-16517-libarchive-signed-integer-overflow-in-zip-writer"},{"cve":"CVE-2026-16493","cvss":7.8,"slug":"cve-2026-16493-red-hat-ansible-core-argument-injection-in-ansible-galaxy","title":"Red Hat ansible-core argument injection in ansible-galaxy collection install","severity":"high","exploited":false,"published_at":"2026-07-21T18:16:57.03+00:00","url":"https://junglewise.ai/threats/cve-2026-16493-red-hat-ansible-core-argument-injection-in-ansible-galaxy"},{"cve":"CVE-2026-59851","cvss":8.8,"slug":"cve-2026-59851-libssh-authentication-bypass-in-gssapikeyexchange","title":"libssh authentication bypass in GSSAPIKeyExchange","severity":"high","exploited":false,"published_at":"2026-07-21T15:16:37.897+00:00","url":"https://junglewise.ai/threats/cve-2026-59851-libssh-authentication-bypass-in-gssapikeyexchange"},{"cve":"CVE-2026-59850","cvss":4.3,"slug":"cve-2026-59850-libssh-use-after-free-in-channel-data-callbacks","title":"libssh use-after-free in channel data callbacks","severity":"medium","exploited":false,"published_at":"2026-07-21T15:16:37.773+00:00","url":"https://junglewise.ai/threats/cve-2026-59850-libssh-use-after-free-in-channel-data-callbacks"}],"weekly":[{"week":"2026-06-29","critical":1,"exploited":0,"vulnerabilities":17},{"week":"2026-07-06","critical":0,"exploited":0,"vulnerabilities":2},{"week":"2026-07-13","critical":0,"exploited":0,"vulnerabilities":7},{"week":"2026-07-20","critical":0,"exploited":0,"vulnerabilities":29},{"week":"2026-07-27","critical":0,"exploited":0,"vulnerabilities":13},{"week":"2026-08-03","critical":0,"exploited":0,"vulnerabilities":0},{"week":"2026-08-10","critical":0,"exploited":0,"vulnerabilities":0},{"week":"2026-08-17","critical":0,"exploited":0,"vulnerabilities":0},{"week":"2026-08-24","critical":0,"exploited":0,"vulnerabilities":0},{"week":"2026-08-31","critical":0,"exploited":0,"vulnerabilities":0},{"week":"2026-09-07","critical":0,"exploited":0,"vulnerabilities":0},{"week":"2026-09-14","critical":0,"exploited":0,"vulnerabilities":0},{"week":"2026-09-21","critical":0,"exploited":0,"vulnerabilities":0}],"related":[{"name":"Red Hat Enterprise Linux 9","slug":"enterprise-linux-9","vulnerabilities":146,"url":"https://junglewise.ai/threats/technologies/enterprise-linux-9"},{"name":"Red Hat Enterprise Linux 8","slug":"enterprise-linux-8","vulnerabilities":132,"url":"https://junglewise.ai/threats/technologies/enterprise-linux-8"},{"name":"Red Hat Enterprise Linux 7","slug":"enterprise-linux-7","vulnerabilities":68,"url":"https://junglewise.ai/threats/technologies/enterprise-linux-7"},{"name":"Red Hat Keycloak","slug":"build-of-keycloak","vulnerabilities":61,"url":"https://junglewise.ai/threats/technologies/build-of-keycloak"},{"name":"Red Hat Enterprise Linux 6","slug":"enterprise-linux-6","vulnerabilities":56,"url":"https://junglewise.ai/threats/technologies/enterprise-linux-6"},{"name":"Red Hat Build of Keycloak","slug":"red-hat-build-of-keycloak","vulnerabilities":54,"url":"https://junglewise.ai/threats/technologies/red-hat-build-of-keycloak"},{"name":"Red Hat Enterprise Linux AppStream","slug":"enterprise-linux-appstream","vulnerabilities":46,"url":"https://junglewise.ai/threats/technologies/enterprise-linux-appstream"},{"name":"Red Hat OpenShift Container Platform 4","slug":"openshift-container-platform-4","vulnerabilities":36,"url":"https://junglewise.ai/threats/technologies/openshift-container-platform-4"},{"name":"Red Hat Ansible Automation Platform","slug":"ansible-automation-platform-2","vulnerabilities":33,"url":"https://junglewise.ai/threats/technologies/ansible-automation-platform-2"},{"name":"Red Hat Developer Hub","slug":"developer-hub","vulnerabilities":28,"url":"https://junglewise.ai/threats/technologies/developer-hub"},{"name":"Red Hat Multicluster Global Hub","slug":"multicluster-global-hub","vulnerabilities":19,"url":"https://junglewise.ai/threats/technologies/multicluster-global-hub"},{"name":"Red Hat AI Inference Server","slug":"ai-inference-server","vulnerabilities":16,"url":"https://junglewise.ai/threats/technologies/ai-inference-server"}],"technology":{"hub":true,"name":"Red Hat Enterprise Linux 10","slug":"enterprise-linux-10","vendor":{"name":"Red Hat","slug":"red-hat","url":"https://junglewise.ai/threats/vendors/red-hat"},"aliases":["red-hat-enterprise-linux-10"],"category":"operating-system","homepage":"https://www.redhat.com/en/technologies/linux-platforms/enterprise-linux","description":"A commercial Linux distribution developed by Red Hat for enterprise environments.","url":"https://junglewise.ai/threats/technologies/enterprise-linux-10"},"most_severe":[{"cve":"CVE-2026-33937","cvss":9.8,"epss":0.0174,"slug":"cve-2026-33937-handlebars-js-remote-code-execution-via-ast-type-confusion-in","title":"Handlebars.js remote code execution via AST type confusion in compile","severity":"critical","exploited":false,"published_at":"2026-03-27T21:17:27.417+00:00","url":"https://junglewise.ai/threats/cve-2026-33937-handlebars-js-remote-code-execution-via-ast-type-confusion-in"},{"cve":"CVE-2025-14179","cvss":9.8,"epss":0.0026,"slug":"cve-2025-14179-php-pdo-firebird-sql-injection-via-nul-bytes-in-quoted-strings","title":"PHP PDO Firebird SQL injection via NUL bytes in quoted strings","severity":"critical","exploited":false,"published_at":"2026-05-10T05:16:09.853+00:00","url":"https://junglewise.ai/threats/cve-2025-14179-php-pdo-firebird-sql-injection-via-nul-bytes-in-quoted-strings"},{"cve":"CVE-2026-14544","cvss":9.8,"slug":"cve-2026-14544-hp-hplip-integer-overflow-in-hpcups-processing-path","title":"HP HPLIP integer overflow in hpcups processing path","severity":"critical","exploited":false,"published_at":"2026-07-03T08:16:24.433+00:00","url":"https://junglewise.ai/threats/cve-2026-14544-hp-hplip-integer-overflow-in-hpcups-processing-path"},{"cve":"CVE-2026-42216","cvss":9.1,"epss":0.0037,"slug":"cve-2026-42216-academysoftwarefoundation-openexr-out-of-bounds-read-in","title":"AcademySoftwareFoundation OpenEXR out-of-bounds read in IDManifest","severity":"critical","exploited":false,"published_at":"2026-05-07T04:16:34.22+00:00","url":"https://junglewise.ai/threats/cve-2026-42216-academysoftwarefoundation-openexr-out-of-bounds-read-in"},{"cve":"CVE-2025-9900","cvss":8.8,"epss":0.0074,"slug":"cve-2025-9900-libtiff-write-what-where-condition-in-tiff-image-processing","title":"Libtiff write-what-where condition in TIFF image processing","severity":"high","exploited":false,"published_at":"2025-09-23T17:15:38.357+00:00","url":"https://junglewise.ai/threats/cve-2025-9900-libtiff-write-what-where-condition-in-tiff-image-processing"},{"cve":"CVE-2026-41142","cvss":8.8,"epss":0.0032,"slug":"cve-2026-41142-academysoftwarefoundation-openexr-heap-oob-write-in-imagechannel","title":"AcademySoftwareFoundation OpenEXR heap OOB write in ImageChannel::resize","severity":"high","exploited":false,"published_at":"2026-05-07T04:16:26.02+00:00","url":"https://junglewise.ai/threats/cve-2026-41142-academysoftwarefoundation-openexr-heap-oob-write-in-imagechannel"},{"cve":"CVE-2026-58222","cvss":8.8,"slug":"cve-2026-58222-samba-ad-dc-ldap-filter-injection-and-acl-bypass-in-compare","title":"Samba AD DC LDAP filter injection and ACL bypass in Compare requests","severity":"high","exploited":false,"published_at":"2026-07-30T16:17:14.933+00:00","url":"https://junglewise.ai/threats/cve-2026-58222-samba-ad-dc-ldap-filter-injection-and-acl-bypass-in-compare"},{"cve":"CVE-2026-16526","cvss":8.8,"slug":"cve-2026-16526-red-hat-pcp-privilege-escalation-in-linux-sockets-pmda","title":"Red Hat PCP privilege escalation in linux_sockets PMDA","severity":"high","exploited":false,"published_at":"2026-07-30T06:25:02.663+00:00","url":"https://junglewise.ai/threats/cve-2026-16526-red-hat-pcp-privilege-escalation-in-linux-sockets-pmda"},{"cve":"CVE-2026-59851","cvss":8.8,"slug":"cve-2026-59851-libssh-authentication-bypass-in-gssapikeyexchange","title":"libssh authentication bypass in GSSAPIKeyExchange","severity":"high","exploited":false,"published_at":"2026-07-21T15:16:37.897+00:00","url":"https://junglewise.ai/threats/cve-2026-59851-libssh-authentication-bypass-in-gssapikeyexchange"},{"cve":"CVE-2026-5674","cvss":8.8,"slug":"cve-2026-5674-pipewire-sandbox-escape-via-pulseaudio-compatibility-layer","title":"PipeWire sandbox escape via PulseAudio compatibility layer","severity":"high","exploited":false,"published_at":"2026-07-16T14:16:56.07+00:00","url":"https://junglewise.ai/threats/cve-2026-5674-pipewire-sandbox-escape-via-pulseaudio-compatibility-layer"}],"generated_at":"2026-09-27T03:07:00.185062+00:00"}