Skip to main content

Threats Tagged 'cve-2026-34040'

View all threats tagged with 'cve-2026-34040'. Filter and sort to focus on specific types of threats.

Pro Console Lifetime

Stop chasing alerts. Route them.

Start free, then upgrade once to turn Radar into an automated delivery engine for your security stack.

Custom feeds / Automations: email, Slack, webhooks, SIEM/MISP / API access (baseline limits)

View Plans & Pricing

API access activates after upgrading in Console -> Billing.

Breach by OffSeqOFFSEQFRIENDS — 25% OFF

Check if your credentials are on the dark web

Instant breach scanning across billions of leaked records. Free tier available.

Scan now

Filter Threats

Narrow down the results by type, severity, or affected countries

Search threats by title, CVE ID, or description. Maximum 100 characters.
Active filters (1):Tag: cve-2026-34040

Threats Tagged 'cve-2026-34040'

Click on any threat for detailed analysis and mitigation recommendations

A service for building customized OS artifacts, such as VM images and OSTree commits, that uses osbuild under the hood. Besides building images for local usage, it can also upload images directly to cloud. It is compatible with composer-cli and cockpit-composer clients. Security Fix(es): * google.golang.org/grpc/grpc-go: google.golang.org/grpc/authz: gRPC-Go: Authorization bypass due to improper HTTP/2 path validation (CVE-2026-33186) * golang.org/x/net/idna: golang: net/http: golang.org/x/net/idna: Privilege escalation via incorrect Punycode label processing (CVE-2026-39821) For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.

Join the discussion
0

Melange version 0.56.1-r1 addresses 22 security vulnerabilities including CVE-2026-34040. This release provides important security fixes to mitigate these issues. No CVSS score is available for CVE-2026-34040 or the other vulnerabilities fixed in this version. There are no known exploits in the wild for these vulnerabilities at this time.

Join the discussion

The spire-server-fips package version 1.15.1-r1 addresses nine security vulnerabilities including CVE-2026-34040. This release provides security fixes to mitigate these issues. No CVSS score or detailed technical impact is provided for CVE-2026-34040 specifically. There are no known exploits in the wild for this vulnerability. The affected version is exactly 1.15.1-r1.

Join the discussion
0

This security update for docker-stable addresses four vulnerabilities affecting the BuildKit component and plugin privilege validation. The issues include the ability for malicious frontends to write files outside the BuildKit state directory, insufficient validation of Git URL fragments allowing access to files outside the checked-out repository, privilege validation bypass during plugin operations, and an authorization regression related to zero-length checks. These vulnerabilities are rated high severity by the SUSE Product Security Team.

Join the discussion

Red Hat multicluster global hub is a set of components that enable you to import one or more hub clusters and manage them from a single hub cluster.

Join the discussion

Multiple security vulnerabilities affect the Pulumi package, impacting versions up to but not including 3.299.0-r0. These issues have been addressed in version 3.299.0-r0 and later releases. The vulnerabilities are rated with medium severity. No known exploits are reported in the wild. The affected package is distributed in the Alpine ecosystem.

Join the discussion

Showing 1 to 6 of 6 results

Filters:Tag: cve-2026-34040
Page 1 of 1
OffSeq TrainingCredly Certified

Lead Pen Test Professional

Technical5-day eLearningPECB Accredited
View courses