CVE Tools

Red OS

9,025 CVEs tracked. 72 of them are in CISA KEV.

This hub aggregates every CVE we track for Red OS, a product in the operating systems space. Use it to gauge the current risk picture and drill into individual advisories.

Red OS CVEs per month

Oct 2024 to Sep 2026. Point at a month, or focus the strip and use the arrow keys.
Red OS CVEs per month
MonthCVEs
2024-10303
2024-11247
2024-12255
2025-01193
2025-02156
2025-03207
2025-04241
2025-05287
2025-06154
2025-07394
2025-08234
2025-09176
2025-10111
2025-11103
2025-1296
2026-01122
2026-02110
2026-03219
2026-04135
2026-0528
2026-066
2026-070
2026-080
2026-090

Severity

How the 9,025 CVEs score on CVSS. Severity is not exploitation: KEV is counted above.

  • Critical6287%
  • High4,00944%
  • Medium4,03245%
  • Low3564%

Latest CVEs

The 15 most recently published vulnerabilities affecting Red OS.

  1. BDU:2026-08412Уязвимость параметра cli_history инструмента командной строки для взаимодействия с сервисами Amazon Web Services AWS CLI, позволяющая нарушителю вызвать отказ в обслуживании5.9
  2. CVE-2024-21944Improper input validation for DIMM serial presence detect (SPD) metadata could allow an attacker with physical access, ring0 access on a system with a non-compliant DIMM, or control over the Root o...5.3
  3. CVE-2026-46520ImageMagick: Heap Buffer Over-Write in IPL decoder when reading multiple images of different dimensions7.5
  4. CVE-2026-45664ImageMagick: Policy Bypass in MNG coder could5.3
  5. BDU:2026-07974Уязвимость функционала форматирования модуля парсера SQL для Python Sqlparse, позволяющая нарушителю вызвать отказ в обслуживании5.3
  6. CVE-2026-46243smb: client: reject userspace cifs.spnego descriptions7.1
  7. CVE-2026-44881Portainer: Arbitrary File Read via Git Symlink Injection in Stack Auto-Update9.9
  8. CVE-2026-44848Portainer: Missing authorization on Docker plugin endpoints allows host RCE8.8
  9. CVE-2026-44849Portainer: Endpoint security bypass via Swarm service create/update8.8
  10. CVE-2026-44850Portainer: Bind-mount restriction bypass via HostConfig.Mounts8.5
  11. CVE-2026-44882Portainer: Kubernetes middleware continues after token validation failure, bypassing endpoint authorization8.1
  12. BDU:2026-07378Уязвимость функции skb_gro_receive() ядра операционных систем Linux, позволяющая нарушителю, позволяющая нарушителю получить root-привилегии7.8
  13. CVE-2026-46300net: skbuff: preserve shared-frag marker during coalescing7.8
  14. CVE-2026-9256NGINX ngx_http_rewrite_module vulnerability8.1
  15. CVE-2026-46333ptrace: slightly saner 'get_dumpable()' logic7.1

Product grouping is registry-driven, with AI assist and human review. How it works

We use analytics cookies to see which pages and articles actually help people. Decline and none of them run — the site works the same. What we store