Threats Tagged 'cve-2026-1526'
View all threats tagged with 'cve-2026-1526'. Filter and sort to focus on specific types of threats.
Stop chasing alerts. Route them.
Start free, then upgrade once to turn Radar into an automated delivery engine for your security stack.
Custom feeds / Automations: email, Slack, webhooks, SIEM/MISP / API access (baseline limits)
API access activates after upgrading in Console -> Billing.
Check if your credentials are on the dark web
Instant breach scanning across billions of leaked records. Free tier available.
Filter Threats
Narrow down the results by type, severity, or affected countries
Threats Tagged 'cve-2026-1526'
Click on any threat for detailed analysis and mitigation recommendations
Red Hat Security Advisory: nodejs:24 security updateCVE-2026-1525 0 A security advisory from Red Hat addresses multiple vulnerabilities in the Node. js 24 module and related components such as undici, brace-expansion, minimatch, and nghttp2. These vulnerabilities include various denial of service issues, HTTP request smuggling, information disclosure, permission bypass, and unauthorized inter-process communication. The advisory covers 18 CVEs affecting Red Hat Enterprise Linux 9 and related distributions. The update is rated as important by Red Hat Product Security, and fixes are available through updated packages. Users of affected Red Hat Enterprise Linux versions are advised to apply the provided updates to mitigate these vulnerabilities. Join the discussion | GCVE Database | 04/09/2026, 20:27:37 UTC Added: 05/26/2026, 20:58:45 UTC |
Red Hat Security Advisory: nodejs:24 security updateCVE-2026-1525 0 This Red Hat security advisory addresses multiple vulnerabilities in the Node. js 24 module and related components such as undici, minimatch, and nghttp2. The issues include various denial of service (DoS) vulnerabilities, HTTP request smuggling, information disclosure, permission bypass, unauthorized inter-process communication, and memory leaks. The advisory covers 17 CVEs affecting Red Hat Enterprise Linux 8 and related distributions. Red Hat has released an update to remediate these vulnerabilities. The severity of the overall update is rated as Important by Red Hat, and the advisory provides detailed references and instructions for applying the update. Join the discussion | GCVE Database | 04/13/2026, 03:00:22 UTC Added: 05/26/2026, 20:58:44 UTC |
Red Hat Security Advisory: nodejs:22 security updateCVE-2026-1525 0 This Red Hat security advisory addresses multiple denial of service (DoS) vulnerabilities in Node. js 22 and its dependencies, including brace-expansion, minimatch, undici, nghttp2, and Node. js core. The vulnerabilities involve issues such as unbounded brace range expansion, crafted glob patterns causing catastrophic backtracking, unbounded memory consumption during WebSocket decompression, HTTP request smuggling, malformed HTTP/2 frames, and crafted HTTP headers. These flaws could allow an attacker to cause service disruption by exhausting resources or causing crashes. The advisory covers Red Hat Enterprise Linux 9. 6 Extended Update Support and related variants. Red Hat has issued an important security update to address these issues. No known exploits in the wild have been reported at this time. Join the discussion | GCVE Database | 04/14/2026, 07:23:22 UTC Added: 05/26/2026, 20:58:44 UTC |
Red Hat Security Advisory: nodejs22 security updateCVE-2026-1525 0 Multiple denial of service vulnerabilities have been identified in Node. js and several of its dependencies, including undici, minimatch, brace-expansion, and nghttp2, affecting Red Hat Enterprise Linux 10 with nodejs22. These vulnerabilities allow denial of service through various means such as unbounded memory consumption, malformed HTTP/2 frames, crafted WebSocket frames, and specially crafted glob patterns. An important security update from Red Hat addresses these issues. The vulnerabilities are rated as having a high security impact. Administrators should apply the provided Red Hat update to remediate these issues. Join the discussion | GCVE Database | 04/08/2026, 13:58:58 UTC Added: 05/26/2026, 20:58:43 UTC |
Red Hat Security Advisory: nodejs:22 security updateCVE-2026-1525 0 Multiple denial of service vulnerabilities have been identified in Node. js and several of its dependencies, including brace-expansion, minimatch, undici, and nghttp2, affecting Red Hat Enterprise Linux 8's nodejs:22 module. These vulnerabilities allow denial of service via various vectors such as unbounded brace range expansion, crafted glob patterns, WebSocket frame manipulation, HTTP request smuggling, malformed HTTP/2 frames, and crafted HTTP headers. Red Hat has issued an important security update addressing these issues. The update rebases nodejs:22 to the latest Node. js 22 release and fixes all listed vulnerabilities. Users of affected Red Hat Enterprise Linux versions should apply the update as per Red Hat's guidance to mitigate these denial of service risks. Join the discussion | GCVE Database | 04/08/2026, 18:17:58 UTC Added: 05/26/2026, 20:58:43 UTC |
Red Hat Security Advisory: nodejs:22 security updateCVE-2026-1525 0 Multiple denial of service vulnerabilities and an HTTP request smuggling issue have been identified in Node. js and its dependencies, including brace-expansion, minimatch, undici, and nghttp2. These vulnerabilities affect Red Hat Enterprise Linux 9's nodejs:22 module. The issues include unbounded memory consumption, catastrophic backtracking, malformed HTTP/2 frames, and crafted HTTP headers that can cause denial of service or HTTP request smuggling. Red Hat has released an important security update addressing these vulnerabilities. Users of affected Red Hat Enterprise Linux versions should apply the update to mitigate these risks. Join the discussion | GCVE Database | 04/09/2026, 13:04:58 UTC Added: 05/26/2026, 20:58:43 UTC |
Red Hat Security Advisory: nodejs24 security updateCVE-2026-1525 0 A security update for Node. js 24 on Red Hat Enterprise Linux 10 addresses multiple vulnerabilities including denial of service, information disclosure, permission bypass, HTTP request smuggling, and unauthorized inter-process communication. The update fixes 18 CVEs affecting components such as undici, nghttp2, brace-expansion, minimatch, and the V8 engine. These vulnerabilities could allow attackers to cause denial of service, leak information, or bypass security restrictions. Red Hat has released patches for these issues as part of advisory RHSA-2026:7675. Join the discussion | GCVE Database | 04/13/2026, 02:27:36 UTC Added: 05/26/2026, 20:58:43 UTC |
Red Hat Security Advisory: nodejs22 security updateCVE-2026-1525 0 Red Hat has issued a security advisory for nodejs22 on Red Hat Enterprise Linux 10. 0 Extended Update Support addressing multiple denial of service vulnerabilities in Node. js and associated libraries such as minimatch, undici, and nghttp2. The vulnerabilities include denial of service via crafted glob patterns, WebSocket decompression issues, HTTP request smuggling, malformed HTTP/2 frames, and crafted HTTP headers. These issues could allow an attacker to cause service disruption. The advisory provides updated packages to remediate these vulnerabilities. Join the discussion | GCVE Database | 04/09/2026, 13:38:21 UTC Added: 05/26/2026, 20:58:41 UTC |
Red Hat Security Advisory: Red Hat Developer Hub 1.9.4 release.CVE-2025-62718 0 Red Hat Developer Hub (RHDH) version 1. 9. 4 addresses multiple critical security vulnerabilities affecting its enterprise-grade developer portal platform. RHDH is a self-managed, customizable portal based on Backstage. io, supporting major Kubernetes clusters. The advisory references 25 CVEs including CVE-2025-62718 and others, indicating a broad set of security issues. The vendor has released RHDH 1. 9. 4 to fix these vulnerabilities. No known exploits are reported in the wild at this time. Join the discussion | GCVE Database | 05/05/2026, 16:10:46 UTC Added: 05/26/2026, 20:58:28 UTC |
Red Hat Security Advisory: RHOAI 2.16.4 - Red Hat OpenShift AICVE-2024-25621 0 Release of RHOAI 2.16.4 provides these changes: Join the discussion | GCVE Database | 03/25/2026, 12:32:51 UTC Added: 05/26/2026, 20:58:12 UTC |
Showing 1 to 10 of 11 results