In affected versions of Rancher a critical severity vulnerability CVE-2026-44945 was detected. This vulnerability allows an attacker to escalate privileges. To address this issue, users should upgrade Rancher to the latest available version. For more details, visit https://nvd.nist.gov/vuln/detail/CVE-2026-44945.
Read more Developer ToolsIn koku-metrics-operator component for OpenShift in affected versions a high severity vulnerability CVE-2026-18381 was detected. This vulnerability allows a user to specify an arbitrary upload URL. To address this issue, users should upgrade OpenShift to the latest available version. For more details, visit https://nvd.nist.gov/vuln/detail/CVE-2026-18381.
Read more Developer ToolsIn Apache ActiveMQ versions before 5.19.9, a high severity vulnerability CVE-2026-59878 was detected. This vulnerability allows a remote unauthenticated attacker to cause a denial-of-service. To address this issue, users should upgrade Apache ActiveMQ to version 5.19.9 or later. For more details, visit https://nvd.nist.gov/vuln/detail/CVE-2026-59878.
Read more Developer ToolsIn Apache ActiveMQ versions before 5.19.9 a medium severity vulnerability CVE-2026-61487 was detected. This vulnerability allows an authenticated low-privilege user to bypass write permissions for message queues. To address this issue, users should upgrade Apache ActiveMQ to version 5.19.9 or later. For more details, visit https://nvd.nist.gov/vuln/detail/CVE-2026-61487.
Read more Developer ToolsIn certain versions of Node a medium severity vulnerability CVE-2026-66922 was detected. This vulnerability allows an attacker to tamper with object prototypes, potentially leading to denial of service or other security bypasses. To address this issue, users should upgrade Node to the latest available version. For more details, visit https://nvd.nist.gov/vuln/detail/CVE-2026-66922.
Read more Developer ToolsIn the Kubernetes Java client library component for Kubernetes in unspecified versions a unknown severity vulnerability CVE-2026-15687 was detected. This vulnerability allows a compromised pod to create new files in arbitrary locations on the client machine. To address this issue, users should upgrade the Kubernetes Java client library to the latest available version. For more details, visit https://nvd.nist.gov/vuln/detail/CVE-2026-15687.
Read more Developer ToolsIn Centrifugo versions prior to 6.8.1 a high severity vulnerability CVE-2026-49998 was detected. This vulnerability allows an attacker to bypass authentication by reusing a key from one allowed issuer to verify a token for a different issuer. To address this issue, users should upgrade Centrifugo to version 6.8.1. For more details, visit https://nvd.nist.gov/vuln/detail/CVE-2026-49998.
Read more Developer ToolsIn the cert-manager component for Kubernetes versions 1.18.0 through 1.19.5 and versions prior to 1.20.3 a high severity vulnerability CVE-2026-62290 was detected. This vulnerability allows an attacker to bypass DNS01 solver selectors and cause cert-manager to use ClusterIssuer DNS credentials for attacker-selected provider settings. To address this issue, users should upgrade cert-manager to version 1.19.6 or later. For more details, visit https://nvd.nist.gov/vuln/detail/CVE-2026-62290.
Read more Developer ToolsIn Centrifugo versions prior to 6.8.4 a high severity vulnerability CVE-2026-62963 was detected. This vulnerability allows unauthenticated attackers to trigger large memory and CPU consumption. To address this issue, users should upgrade Centrifugo to version 6.8.4. For more details, visit https://nvd.nist.gov/vuln/detail/CVE-2026-62963.
Read more Developer Tools