| CoreDNS: Schwachstelle ermöglicht Denial of Service | mittel | 1 CVSS 7.5 | 17.09.2026 |
| ClamAV: Mehrere Schwachstellen | mittel | 7 CVSS 7.5 | 17.09.2026 |
Neu Linux Kernel: Mehrere Schwachstellen | mittel | 19 CVSS 9.8 | 16.09.2026 |
Neu MISP: Mehrere Schwachstellen | mittel | 4 | 16.09.2026 |
Neu Arista EOS: Mehrere Schwachstellen | hoch | 8 CVSS 8.8 | 16.09.2026 |
Neu IBM MQ: Mehrere Schwachstellen | hoch | 19 CVSS 9.8 | 16.09.2026 |
Neu Ghostscript: Schwachstelle ermöglicht Codeausführung und Manipulation von Daten | hoch | 1 CVSS 9.8 | 16.09.2026 |
| Pixel Patchday September 2026: Mehrere Schwachstellen | hoch | 110 CVSS 9.8 | 16.09.2026 |
Neu GIMP: Schwachstelle ermöglicht Codeausführung und Denial of Service | hoch | 1 CVSS 7.8 | 16.09.2026 |
Neu Microsoft Edge: Mehrere Schwachstellen | hoch | 3 CVSS 8.8 | 16.09.2026 |
Neu Aruba EdgeConnect: Mehrere Schwachstellen | hoch | 39 CVSS 9.9 | 16.09.2026 |
| Oracle Communications: Mehrere Schwachstellen | hoch | 31 CVSS 9.8 | 16.09.2026 |
Neu Oracle Supply Chain: Mehrere Schwachstellen | hoch | 19 CVSS 9.8 | 16.09.2026 |
Neu Oracle Siebel CRM: Mehrere Schwachstellen | hoch | 63 CVSS 9.1 | 16.09.2026 |
Neu Oracle E-Business Suite: Mehrere Schwachstellen | hoch | 159 CVSS 9.8 | 16.09.2026 |
Neu Oracle Enterprise Manager: Mehrere Schwachstellen | hoch | 7 CVSS 9.8 | 16.09.2026 |
Neu Oracle Financial Services Applications: Mehrere Schwachstellen | hoch | 6 CVSS 8 | 16.09.2026 |
Neu Oracle Hyperion: Mehrere Schwachstellen | hoch | 102 CVSS 10 | 16.09.2026 |
Neu Oracle Fusion Middleware: Mehrere Schwachstellen | hoch | 153 CVSS 10 | 16.09.2026 |
Neu Oracle GraalVM: Mehrere Schwachstellen | hoch | 3 CVSS 8.1 | 16.09.2026 |
Neu Oracle PeopleSoft: Mehrere Schwachstellen | hoch | 16 CVSS 8.8 | 16.09.2026 |
Neu n8n: Mehrere Schwachstellen | hoch | — | 16.09.2026 |
Neu Unbound: Mehrere Schwachstellen | hoch | 9 CVSS 7.5 | 16.09.2026 |
Neu Oracle Database Server: Mehrere Schwachstellen | hoch | 11 CVSS 8.8 | 16.09.2026 |
Neu Oracle Commerce: Mehrere Schwachstellen | hoch | 27 CVSS 8.2 | 16.09.2026 |
Neu Oracle VM VirtualBox: Mehrere Schwachstellen | hoch | 19 CVSS 8.6 | 16.09.2026 |
Neu Oracle Utilities Applications: Mehrere Schwachstellen | hoch | 2 CVSS 8.2 | 16.09.2026 |
Neu binutils: Schwachstelle ermöglicht Denial of Service | niedrig | 2 CVSS 3.3 | 16.09.2026 |
Neu Netgate pfSense: Schwachstelle ermöglicht Codeausführung | hoch | — | 16.09.2026 |
Neu Apache Airflow Providers (FAB, Keycloak, Kafka, Akeyless): Mehrere Schwachstellen | hoch | 8 | 16.09.2026 |
Neu BigBlueButton: Schwachstelle ermöglicht Denial of Service | mittel | — | 16.09.2026 |
Neu QT: Schwachstelle ermöglicht Denial of Service | mittel | 1 | 16.09.2026 |
Neu Red Hat Enterprise Linux (firewalld, leapp-repository, tesseract: Mehrere Schwachstellen | mittel | 3 CVSS 7.3 | 16.09.2026 |
Neu MikroTik RouterOS: Schwachstelle ermöglicht Denial of Service und Offenlegung von Informationen | hoch | 1 | 16.09.2026 |
| Dell integrated Dell Remote Access Controller: Mehrere Schwachstellen | mittel | 2 | 16.09.2026 |
| BusyBox (wget): Schwachstelle ermöglicht Umgehung von Sicherheitsvorkehrungen | mittel | 1 | 16.09.2026 |
| OpenSSH: Mehrere Schwachstellen | hoch | 2 CVSS 6.8 | 16.09.2026 |
| GNOME: Mehrere Schwachstellen | mittel | 4 | 16.09.2026 |
| expat: Schwachstelle ermöglicht Denial of Service | mittel | 1 | 16.09.2026 |
| TianoCore EDK2: Schwachstelle ermöglicht Denial of Service | mittel | 1 | 16.09.2026 |
| Red Hat Enterprise Linux: Schwachstelle ermöglicht Darstellen falscher Informationen | mittel | 1 | 16.09.2026 |
| expat: Mehrere Schwachstellen ermöglichen Denial of Service | mittel | 3 | 16.09.2026 |
| Linux Kernel: Schwachstelle ermöglicht Denial of Service | mittel | 1 | 16.09.2026 |
| OpenSSH: Schwachstelle ermöglicht Codeausführung | hoch | 1 CVSS 8.1 | 16.09.2026 |
| GNU libc: Mehrere Schwachstellen | hoch | 3 CVSS 8.4 | 16.09.2026 |
| SSH Protokoll: Schwachstelle ermöglicht Umgehen von Sicherheitsvorkehrungen | mittel | 1 CVSS 5.9 | 16.09.2026 |
| BusyBox: Schwachstelle ermöglicht Codeausführung | hoch | 1 CVSS 9.8 | 16.09.2026 |
| BusyBox: Schwachstelle ermöglicht Codeausführung | hoch | 4 | 16.09.2026 |
| BusyBox: Mehrere Schwachstellen | hoch | — | 16.09.2026 |
Neu Google Chrome: Mehrere Schwachstellen | hoch | 42 CVSS 9.6 | 16.09.2026 |
Neu Camunda: Schwachstelle ermöglicht Denial of Service | mittel | 1 CVSS 5.3 | 16.09.2026 |
Neu [UNGEPATCHT] [mittel] Podman: Schwachstelle ermöglicht Manipulation von Dateien | — | 1 CVSS 5.5 | 16.09.2026 |
Neu vllm: Schwachstelle ermöglicht Denial of Service | mittel | 1 CVSS 5.3 | 16.09.2026 |
Neu Atlassian Bamboo, Bitbucket, Confluence, Fisheye/Crucible, Jira Software und Jira Service Management: Mehrere Schwachstellen | hoch | 64 CVSS 9.1 | 16.09.2026 |
Neu Mozilla Firefox und Thunderbird: Mehrere Schwachstellen | hoch | 78 CVSS 8.8 | 16.09.2026 |
Neu Octopus Deploy: Schwachstelle ermöglicht Manipulation von Dateien und potenziell Codeausführung | mittel | 1 | 16.09.2026 |
Neu NGINX: Schwachstelle ermöglicht Denial of Service | mittel | 1 CVSS 6.5 | 16.09.2026 |
Neu Devolutions Server: Mehrere Schwachstellen | hoch | 4 | 16.09.2026 |
Neu [UNGEPATCHT] [mittel] Keycloak: Schwachstelle ermöglicht Umgehen von Sicherheitsvorkehrungen | — | 1 CVSS 6.4 | 16.09.2026 |
| OpenBao: Mehrere Schwachstellen | mittel | 4 CVSS 6.8 | 16.09.2026 |
| xwiki (Live Data): Schwachstelle ermöglicht Privilegieneskalation | mittel | 1 | 16.09.2026 |
| IBM WebSphere Application Server: Mehrere Schwachstellen | mittel | 2 | 16.09.2026 |
| Flowise: Mehrere Schwachstellen | hoch | 1 CVSS 7.1 | 16.09.2026 |
Neu MISP: Mehrere Schwachstellen | hoch | 8 | 15.09.2026 |
Neu ZScaler Client Connector: Mehrere Schwachstellen ermöglichen Umgehen von Sicherheitsvorkehrungen | hoch | 2 CVSS 8.1 | 15.09.2026 |
Neu Arista EOS: Mehrere Schwachstellen | mittel | 5 CVSS 5.9 | 15.09.2026 |
Neu Python: Schwachstelle ermöglicht Manipulation und Offenlegung von Daten | mittel | 1 | 15.09.2026 |
Neu MikroTik RouterOS: Mehrere Schwachstellen | mittel | 2 CVSS 6.9 | 15.09.2026 |
Neu IBM MQ: Mehrere Schwachstellen | hoch | 9 CVSS 8.8 | 15.09.2026 |
Neu [UNGEPATCHT] [mittel] binutils: Mehrere Schwachstellen | — | 10 CVSS 5.3 | 15.09.2026 |
Neu [UNGEPATCHT] [mittel] System Security Services Daemon (SSSD): Mehrere Schwachstellen ermöglichen Denial of Service | — | 3 CVSS 5.5 | 15.09.2026 |
Neu Fleet: Schwachstelle ermöglicht Offenlegung von Informationen | niedrig | — | 15.09.2026 |
Neu Mattermost Server: Mehrere Schwachstellen | niedrig | 3 CVSS 6.5 | 15.09.2026 |
Neu ffmpeg: Mehrere Schwachstellen | mittel | 2 CVSS 6.3 | 15.09.2026 |
Neu IBM i: Mehrere Schwachstellen | mittel | 8 CVSS 6.1 | 15.09.2026 |
Neu GIMP Plugins: Mehrere Schwachstellen ermöglichen Codeausführung und DoS | mittel | 3 CVSS 7.8 | 15.09.2026 |
Neu vllm: Schwachstelle ermöglicht Denial of Service | niedrig | 1 CVSS 4.3 | 15.09.2026 |
Neu Governikus AusweisApp2: Schwachstelle ermöglicht Cross-Site Scripting | niedrig | 1 CVSS 4.3 | 15.09.2026 |
Neu Grafana: Schwachstelle ermöglicht Umgehen von Sicherheitsvorkehrungen und Offenlegung von Informationen | mittel | 1 CVSS 7.1 | 15.09.2026 |
Neu WP Royal Royal Elementor Addons: Schwachstelle ermöglicht Manipulation von Dateien | mittel | 1 CVSS 5.4 | 15.09.2026 |
| Cisco Secure Email Gateway: Mehrere Schwachstellen | hoch | 6 CVSS 9.8 | 15.09.2026 |
| Apple iOS, iPadOS, macOS Tahoe, macOS Golden Gate, macOS Sequoia und Safari: Mehrere Schwachstellen | hoch | 273 CVSS 10 | 15.09.2026 |
Neu IBM DB2: Schwachstelle ermöglicht Manipulation von Dateien | mittel | 1 CVSS 7.5 | 15.09.2026 |
Neu Langflow: Mehrere Schwachstellen | hoch | 2 CVSS 9.6 | 15.09.2026 |
Neu Octopus Deploy Server: Schwachstelle ermöglicht Codeausführung | hoch | 1 | 15.09.2026 |
Neu Microsoft Windows 11 (Secure Kernel Mode): Schwachstelle ermöglicht Privilegieneskalation | hoch | 1 CVSS 8.2 | 15.09.2026 |
Neu Apple Xcode: Schwachstelle ermöglicht Offenlegung von Informationen | mittel | 1 CVSS 5.5 | 15.09.2026 |
| KDE "Konsole": Schwachstelle ermöglicht Codeausführung | hoch | 1 | 15.09.2026 |
| Linux Kernel: Mehrere Schwachstellen | mittel | 19 CVSS 9.1 | 15.09.2026 |
| WebKitGTK: Schwachstelle ermöglicht Codeausführung | hoch | 1 CVSS 8.8 | 15.09.2026 |
| Apple iOS und iPadOS: Mehrere Schwachstellen | mittel | 97 CVSS 9.8 | 15.09.2026 |
| Red Hat Enterprise Linux (libinput): Schwachstelle ermöglicht Privilegieneskalation | mittel | 1 CVSS 7.4 | 15.09.2026 |
| xwiki: Schwachstelle ermöglicht Offenlegung von Informationen | mittel | 1 | 15.09.2026 |
| Linux Kernel: Schwachstelle ermöglicht Umgehen von Sicherheitsvorkehrungen | mittel | 1 | 15.09.2026 |
Neu Citrix Systems Workspace App Windows: Mehrere Schwachstellen ermöglichen nicht spezifizierten Angriff | mittel | 2 | 14.09.2026 |
Neu Microsoft Edge: Schwachstelle ermöglicht Cross-Site Scripting | mittel | 1 CVSS 6.1 | 14.09.2026 |
Neu WP Royal Royal Elementor Addons: Schwachstelle ermöglicht Offenlegung von Informationen | mittel | 1 CVSS 5.3 | 14.09.2026 |
Neu wpa_supplicant: Schwachstelle ermöglicht Umgehen von Sicherheitsvorkehrungen | mittel | 1 CVSS 7.1 | 14.09.2026 |
Neu Puppet Enterprise: Schwachstelle ermöglicht Ausführen von beliebigem Programmcode mit Administratorrechten | mittel | 1 | 14.09.2026 |
Neu [UNGEPATCHT] [mittel] Net-SNMP: Schwachstelle ermöglicht Denial of Service | — | 1 CVSS 7.5 | 14.09.2026 |
Neu libarchive: Schwachstelle ermöglicht Denial of Service | niedrig | 1 CVSS 2.5 | 14.09.2026 |
Neu FRRouting Project FRRouting: Schwachstelle ermöglicht Privilegieneskalation | mittel | 1 CVSS 6.7 | 14.09.2026 |
Neu libTIFF: Schwachstelle ermöglicht Denial of Service | mittel | 1 CVSS 6.1 | 14.09.2026 |
Neu Red Hat Certificate System for RHEL (Dogtag PKI): Schwachstelle ermöglicht Offenlegung von Informationen | mittel | 1 CVSS 5.8 | 14.09.2026 |
Neu memcached: Schwachstelle ermöglicht Denial of Service | mittel | 1 CVSS 5.3 | 14.09.2026 |
Neu CPython: Schwachstelle ermöglicht Umgehen von Sicherheitsvorkehrungen | mittel | 1 | 14.09.2026 |
Neu PCRE2 (Perl Compatible Regular Expressions): Mehrere Schwachstellen | hoch | 7 CVSS 8.2 | 14.09.2026 |
| Angular: Mehrere Schwachstellen | hoch | 3 CVSS 6.1 | 14.09.2026 |
Neu Red Hat Enterprise Linux (libgit2): Schwachstelle ermöglicht Denial of Service | mittel | 1 CVSS 7.5 | 14.09.2026 |
Neu QT: Schwachstelle ermöglicht Denial of Service | mittel | 1 | 14.09.2026 |
Neu ffmpeg: Mehrere Schwachstellen ermöglichen Denial of Service | niedrig | 2 CVSS 2.9 | 14.09.2026 |
Neu CyberPanel: Mehrere Schwachstellen | niedrig | 3 CVSS 7.7 | 14.09.2026 |
Neu Squid: Mehrere Schwachstellen | hoch | 4 | 14.09.2026 |
Neu vim: Schwachstelle ermöglicht Codeausführung | mittel | — | 14.09.2026 |
Neu vllm: Mehrere Schwachstellen ermöglichen | mittel | — | 14.09.2026 |
Neu Flowise: Mehrere Schwachstellen | mittel | 2 CVSS 6.5 | 14.09.2026 |
Neu [UNGEPATCHT] [niedrig] CUPS: Schwachstelle ermöglicht Codeausführung | — | — | 14.09.2026 |
Neu Strapi: Schwachstelle ermöglicht Cross-Site Scripting | hoch | 1 CVSS 8.7 | 14.09.2026 |
Neu HAProxy: Schwachstelle ermöglicht Umgehen von Sicherheitsvorkehrungen | mittel | 1 CVSS 7.5 | 14.09.2026 |
Neu Red Hat Enterprise Linux (libkcapi): Mehrere Schwachstellen | mittel | 3 CVSS 7.3 | 14.09.2026 |
| Linux Kernel: Mehrere Schwachstellen ermöglichen Denial of Service | mittel | 34 CVSS 9.8 | 14.09.2026 |
| Linux Kernel: Mehrere Schwachstellen ermöglichen Denial of Service oder unspezifischer Angriff | mittel | 63 CVSS 10 | 14.09.2026 |
| Apache ActiveMQ: Mehrere Schwachstellen | hoch | 3 CVSS 8.8 | 14.09.2026 |
| Apache ActiveMQ, Client, Broker und Web: Mehrere Schwachstellen | hoch | 2 CVSS 8.8 | 14.09.2026 |
| libpng: Schwachstelle ermöglicht Codeausführung | mittel | 1 | 14.09.2026 |
| FasterXML Jackson: Schwachstelle ermöglicht Denial of Service | mittel | 1 | 14.09.2026 |
| Red Hat OpenShift Service Mesh (Kiali): Schwachstelle ermöglicht Denial of Service | mittel | 1 CVSS 7.5 | 14.09.2026 |
| Apache Cassandra (Netty): Schwachstelle ermöglicht Denial of Service | mittel | 1 | 14.09.2026 |
| Red Hat Enterprise Linux (CivetWeb library): Schwachstelle ermöglicht Denial of Service | mittel | 1 | 14.09.2026 |
| Google Chrome/Microsoft Edge: Mehrere Schwachstellen | hoch | 25 | 14.09.2026 |
| CPython: Schwachstelle ermöglicht Denial of Service | mittel | 1 | 14.09.2026 |
| Google Chrome: Schwachstelle ermöglicht nicht spezifizierten Angriff | hoch | 1 | 14.09.2026 |
| Google Chrome / Microsoft Edge: Mehrere Schwachstellen | hoch | 3 | 14.09.2026 |
| expat: Schwachstelle ermöglicht Denial of Service | mittel | 1 CVSS 7.5 | 14.09.2026 |
| Google Chrome und Microsoft Edge: Mehrere Schwachstellen | hoch | 2 | 14.09.2026 |
| Samsung Exynos: Mehrere Schwachstellen | mittel | 16 CVSS 7.8 | 14.09.2026 |
| Google Chrome/Microsoft Edge: Mehrere Schwachstellen | hoch | 12 | 14.09.2026 |
| OpenSC: Mehrere Schwachstellen ermöglichen nicht spezifizierten Angriff | niedrig | 2 CVSS 3.8 | 14.09.2026 |
| Bouncy Castle: Schwachstelle ermöglicht Denial of Service | mittel | 1 | 14.09.2026 |
| Google Chrome / Microsoft Edge: Mehrere Schwachstellen ermöglichen Codeausführung | hoch | 2 | 14.09.2026 |
| Google Chrome / Microsoft Edge: Mehrere Schwachstellen | hoch | 3 | 14.09.2026 |
| WithSecure Endpoint Protection: Schwachstelle ermöglicht Denial of Service | mittel | 1 CVSS 3.7 | 14.09.2026 |
| IBM App Connect Enterprise: Schwachstelle ermöglicht Umgehen von Sicherheitsvorkehrungen | mittel | 1 | 14.09.2026 |
| Red Hat Enterprise Linux (c-ares): Schwachstelle ermöglicht Denial of Service | niedrig | 1 | 14.09.2026 |
| MediaWiki: Mehrere Schwachstellen ermöglichen Cross-Site Scripting | niedrig | 8 CVSS 5.4 | 14.09.2026 |
| TYPO3 Extensions: Mehrere Schwachstellen | hoch | 4 CVSS 8.8 | 14.09.2026 |
| Extreme Networks IQ Engine: Mehrere Schwachstellen | hoch | 3 CVSS 8.8 | 14.09.2026 |
| Paessler PRTG: Schwachstelle ermöglicht Offenlegung von Informationen | mittel | 1 CVSS 8.6 | 14.09.2026 |
| TYPO3 Extension(Femanager): Schwachstelle ermöglicht Umgehen von Sicherheitsvorkehrungen | mittel | 1 CVSS 4.2 | 14.09.2026 |
| Samsung Exynos: Mehrere Schwachstellen | mittel | 3 CVSS 2.8 | 14.09.2026 |