CVE Tools

Rosa Virtualization 3.0

1,026 CVEs tracked. 17 of them are in CISA KEV.

This hub aggregates every CVE we track for Rosa Virtualization 3.0, a product in the operating systems space. Use it to gauge the current risk picture and drill into individual advisories.

Rosa Virtualization 3.0 CVEs per month

Oct 2024 to Sep 2026. Point at a month, or focus the strip and use the arrow keys.
Rosa Virtualization 3.0 CVEs per month
MonthCVEs
2024-105
2024-1122
2024-128
2025-016
2025-0215
2025-035
2025-0413
2025-052
2025-067
2025-079
2025-080
2025-093
2025-101
2025-111
2025-121
2026-011
2026-020
2026-030
2026-040
2026-050
2026-060
2026-070
2026-080
2026-090

Severity

How the 1,026 CVEs score on CVSS. Severity is not exploitation: KEV is counted above.

  • Critical10610%
  • High45444%
  • Medium43843%
  • Low283%

Latest CVEs

The 15 most recently published vulnerabilities affecting Rosa Virtualization 3.0.

  1. CVE-2025-24531In OpenSC pam_pkcs11 before 0.6.13, pam_sm_authenticate() wrongly returns PAM_IGNORE in many error situations (such as an error triggered by a smartcard before login), allowing authentication bypass.6.7
  2. CVE-2025-66293LIBPNG has an out-of-bounds read in png_image_read_composite7.1
  3. CVE-2025-65018LIBPNG is vulnerable to a heap buffer overflow in `png_combine_row` triggered via `png_image_finish_read`7.1
  4. CVE-2025-40778Cache poisoning attacks with unsolicited RRs8.6
  5. CVE-2025-9086Out of bounds read for cookie path7.5
  6. CVE-2025-58364cups: Remote DoS via null dereference6.5
  7. CVE-2025-58060cups has Authentication bypass with AuthType Negotiate8.0
  8. CVE-2025-5994Cache poisoning via the ECS-enabled Rebirthday Attack7.5
  9. CVE-2025-53906Vim has path traversal issue with zip.vim and special crafted zip archives4.1
  10. CVE-2025-53905Vim has path traversial issue with tar.vim and special crafted tar files4.1
  11. CVE-2025-6965Integer Truncation on SQLite7.7
  12. CVE-2025-6395Gnutls: null pointer dereference in _gnutls_figure_common_ciphersuite()6.5
  13. CVE-2025-32990Gnutls: vulnerability in gnutls certtool template parsing6.5
  14. CVE-2025-32988Gnutls: vulnerability in gnutls othername san export6.5
  15. CVE-2025-7345Gdk‑pixbuf: heap‑buffer‑overflow in gdk‑pixbuf7.5

Product grouping is registry-driven, with AI assist and human review. How it works

We use analytics cookies to see which pages and articles actually help people. Decline and none of them run — the site works the same. What we store