CVE-2026-5734
published 2026-04-07CVE-2026-5734: Memory safety bugs present in Firefox ESR 140.9.0, Thunderbird ESR 140.9.0, Firefox 149.0.1 and Thunderbird 149.0.1. Some of these bugs showed evidence of…
PriorityP349critical9.8CVSS 3.1
AVNACLPRNUINSUCHIHAH
EPSS
0.33%
25.1th percentile
Memory safety bugs present in Firefox ESR 140.9.0, Thunderbird ESR 140.9.0, Firefox 149.0.1 and Thunderbird 149.0.1. Some of these bugs showed evidence of memory corruption and we presume that with enough effort some of these could have been exploited to run arbitrary code. This vulnerability was fixed in Firefox 149.0.2, Firefox ESR 140.9.1, Thunderbird 149.0.2, and Thunderbird 140.9.1.
Affected
8 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| debian | firefox | < firefox 149.0.2-1 (sid) | firefox 149.0.2-1 (sid) |
| debian | firefox-esr | < firefox 149.0.2-1 (sid) | firefox 149.0.2-1 (sid) |
| debian | thunderbird | < firefox 149.0.2-1 (sid) | firefox 149.0.2-1 (sid) |
| mozilla | firefox | < 140.9.1 | 140.9.1 |
| mozilla | firefox | < 149.0.2 | 149.0.2 |
| mozilla | firefox | — | — |
| mozilla | thunderbird | < 140.9.1 | 140.9.1 |
| mozilla | thunderbird | < 149.0.2 | 149.0.2 |
CVSS provenance
nvdv3.19.8CRITICALCVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
osv9.8CRITICAL
vendor_debian9.8CRITICAL
vendor_redhat9.8CRITICAL
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
VulDB
Mozilla Firefox up to 149.0.1 memory corruption (Nessus ID 306064 / WID-SEC-2026-0997)
vuldb·2026-05-02·CVSS 9.8
CVE-2026-5734 [CRITICAL] Mozilla Firefox up to 149.0.1 memory corruption (Nessus ID 306064 / WID-SEC-2026-0997)
A vulnerability classified as critical has been found in Mozilla Firefox up to 149.0.1. Affected is an unknown function. The manipulation leads to memory corruption.
This vulnerability is traded as CVE-2026-5734. It is possible to initiate the attack remotely. There is no exploit available.
It is recommended to upgrade the affected component.
OSV
CVE-2026-5734: Memory safety bugs present in Firefox ESR 140
osv·2026-04-07·CVSS 9.8
CVE-2026-5734 [CRITICAL] CVE-2026-5734: Memory safety bugs present in Firefox ESR 140
Memory safety bugs present in Firefox ESR 140.9.0, Thunderbird ESR 140.9.0, Firefox 149.0.1 and Thunderbird 149.0.1. Some of these bugs showed evidence of memory corruption and we presume that with enough effort some of these could have been exploited to run arbitrary code. This vulnerability affects Firefox < 149.0.2, Firefox ESR < 140.9.1, Thunderbird < 149.0.2, and Thunderbird < 140.9.1.
GHSA
GHSA-qf82-86x2-7q23: Memory safety bugs present in Firefox ESR 140
ghsa_unreviewed·2026-04-07
CVE-2026-5734 [CRITICAL] CWE-787 GHSA-qf82-86x2-7q23: Memory safety bugs present in Firefox ESR 140
Memory safety bugs present in Firefox ESR 140.9.0, Thunderbird ESR 140.9.0, Firefox 149.0.1 and Thunderbird 149.0.1. Some of these bugs showed evidence of memory corruption and we presume that with enough effort some of these could have been exploited to run arbitrary code. This vulnerability affects Firefox < 149.0.2 and Firefox ESR < 140.9.1.
Red Hat
thunderbird: firefox: Memory safety bugs fixed in Firefox ESR 140.9.1, Thunderbird ESR 140.9.1, Firefox 149.0.2 and Thunderbird 149.0.2
vendor_redhat·2026-04-07·CVSS 9.8
CVE-2026-5734 [CRITICAL] CWE-787 thunderbird: firefox: Memory safety bugs fixed in Firefox ESR 140.9.1, Thunderbird ESR 140.9.1, Firefox 149.0.2 and Thunderbird 149.0.2
thunderbird: firefox: Memory safety bugs fixed in Firefox ESR 140.9.1, Thunderbird ESR 140.9.1, Firefox 149.0.2 and Thunderbird 149.0.2
Memory safety bugs present in Firefox ESR 140.9.0, Thunderbird ESR 140.9.0, Firefox 149.0.1 and Thunderbird 149.0.1. Some of these bugs showed evidence of memory corruption and we presume that with enough effort some of these could have been exploited to run arbitrary code. This vulnerability affects Firefox < 149.0.2, Firefox ESR < 140.9.1, Thunderbird < 149.0.2, and Thunderbird < 140.9.1.
A flaw was found in Firefox and Thunderbird. The Mozilla Foundation's Security Advisory describes the following issue:
Memory safety bugs present in Firefox ESR 140.9.0, Thunderbird ESR 140.9.0, Firefox 149.0.1 and Thunderbird 149.0.1. Some of these bugs showed eviden
Debian
CVE-2026-5734: firefox - Memory safety bugs present in Firefox ESR 140.9.0, Thunderbird ESR 140.9.0, Fire...
vendor_debian·2026·CVSS 9.8
CVE-2026-5734 [CRITICAL] CVE-2026-5734: firefox - Memory safety bugs present in Firefox ESR 140.9.0, Thunderbird ESR 140.9.0, Fire...
Memory safety bugs present in Firefox ESR 140.9.0, Thunderbird ESR 140.9.0, Firefox 149.0.1 and Thunderbird 149.0.1. Some of these bugs showed evidence of memory corruption and we presume that with enough effort some of these could have been exploited to run arbitrary code. This vulnerability affects Firefox < 149.0.2, Firefox ESR < 140.9.1, Thunderbird < 149.0.2, and Thunderbird < 140.9.1.
Scope: local
sid: resolved (fixed in 149.0.2-1)
Mozilla
Mozilla Foundation Security Advisory 2026-29: CVE-2026-5734
vendor_mozilla·CVSS 9.8
CVE-2026-5734 [CRITICAL] Mozilla Foundation Security Advisory 2026-29: CVE-2026-5734
Mozilla Foundation Security Advisory 2026-29
CVE: CVE-2026-5734
Product: Thunderbird
Impact: high
Fixed in: Thunderbird 140.9.1
Mozilla
Mozilla Foundation Security Advisory 2026-28: CVE-2026-5734
vendor_mozilla·CVSS 9.8
CVE-2026-5734 [CRITICAL] Mozilla Foundation Security Advisory 2026-28: CVE-2026-5734
Mozilla Foundation Security Advisory 2026-28
CVE: CVE-2026-5734
Product: Thunderbird
Impact: high
Fixed in: Thunderbird 149.0.2
Mozilla
Mozilla Foundation Security Advisory 2026-25: CVE-2026-5734
vendor_mozilla·CVSS 9.8
CVE-2026-5734 [CRITICAL] Mozilla Foundation Security Advisory 2026-25: CVE-2026-5734
Mozilla Foundation Security Advisory 2026-25
CVE: CVE-2026-5734
Product: Firefox
Impact: high
Fixed in: Firefox 149.0.2
Mozilla
Mozilla Foundation Security Advisory 2026-27: CVE-2026-5734
vendor_mozilla·CVSS 9.8
CVE-2026-5734 [CRITICAL] Mozilla Foundation Security Advisory 2026-27: CVE-2026-5734
Mozilla Foundation Security Advisory 2026-27
CVE: CVE-2026-5734
Product: Firefox ESR
Impact: high
Fixed in: Firefox ESR 140.9.1
No detection rules found.
No public exploits indexed.
Wiz
CVE-2026-33654 Impact, Exploitability, and Mitigation Steps | Wiz
blogs_wiz·CVSS 8.9
CVE-2026-33654 [HIGH] CVE-2026-33654 Impact, Exploitability, and Mitigation Steps | Wiz
## CVE-2026-33654 :
Homebrew vulnerability analysis and mitigation
nanobot/channels/email.py
Source : NVD
## 8.9
Score
Published March 27, 2026
Severity HIGH
CNA Score 8.9
Affected Technologies
Homebrew
Has Public Exploit Yes
Has CISA KEV Exploit No
CISA KEV Release Date N/A
CISA KEV Due Date N/A
Exploitation Probability Percentile (EPSS) 40.5
Exploitation Probability (EPSS) 0.2
Affected packages and libraries
nanobot
Sources
NVD
Homebrew Severity CRITICAL No Fix Added at: Apr 10, 2026
## Get a CVE risk assessment
Get a prioritized view of CVEs in your cloud—so you can focus on what's exploitable, not just what's listed.
## Related Homebrew vulnerabilities:
CVE ID
Severity
Score
Technologies
Component name
CISA KEV exploit
Has fix
Published date
CVE-2
Wiz
CVE-2026-34387 Impact, Exploitability, and Mitigation Steps | Wiz
blogs_wiz·CVSS 5.7
CVE-2026-34387 [MEDIUM] CVE-2026-34387 Impact, Exploitability, and Mitigation Steps | Wiz
## CVE-2026-34387 :
Homebrew vulnerability analysis and mitigation
Fleet is open source device management software. Prior to 4.81.1, a command injection vulnerability in Fleet's software installer pipeline allows an attacker to achieve arbitrary code execution as root (macOS/Linux) or SYSTEM (Windows) on managed hosts when an uninstall is triggered for a crafted software package. Version 4.81.1 patches the issue.
Source : NVD
## 5.7
Score
Published March 27, 2026
Severity MEDIUM
CNA Score 5.7
Affected Technologies
Homebrew
Has Public Exploit No
Has CISA KEV Exploit No
CISA KEV Release Date N/A
CISA KEV Due Date N/A
Exploitation Probability Percentile (EPSS) 32.3
Exploitation Probability (EPSS) 0.1
Affected packages and libraries
fleet
Sources
NVD
Homebrew Severity CR
Wiz
CVE-2026-26133 Impact, Exploitability, and Mitigation Steps | Wiz
blogs_wiz·CVSS 7.1
CVE-2026-26133 [HIGH] CVE-2026-26133 Impact, Exploitability, and Mitigation Steps | Wiz
## CVE-2026-26133 :
NixOS vulnerability analysis and mitigation
AI command injection in M365 Copilot allows an unauthorized attacker to disclose information over a network.
Source : NVD
## 7.1
Score
Published March 16, 2026
Severity HIGH
CNA Score 7.1
Affected Technologies
NixOS
Homebrew
Has Public Exploit No
Has CISA KEV Exploit No
CISA KEV Release Date N/A
CISA KEV Due Date N/A
Exploitation Probability Percentile (EPSS) 16.6
Exploitation Probability (EPSS) 0.1
Affected packages and libraries
loop
edge
Sources
NVD
Homebrew Severity HIGH Has Fix Added at: Apr 10, 2026
Nix Severity HIGH Has Fix Added at: Apr 10, 2026
## Get a CVE risk assessment
Get a prioritized view of CVEs in your cloud—so you can focus on what's exploitable, not just what's listed.
## Rel
Wiz
CVE-2026-5732 Impact, Exploitability, and Mitigation Steps | Wiz
blogs_wiz·CVSS 8.4
CVE-2026-5732 [HIGH] CVE-2026-5732 Impact, Exploitability, and Mitigation Steps | Wiz
## CVE-2026-5732 :
NixOS vulnerability analysis and mitigation
Incorrect boundary conditions, integer overflow in the Graphics: Text component. This vulnerability affects Firefox < 149.0.2, Firefox ESR < 140.9.1, Thunderbird < 149.0.2, and Thunderbird < 140.9.1.
Source : NVD
## 8.8
Score
Published April 7, 2026
Severity HIGH
CNA Score 8.8
Affected Technologies
NixOS
Mozilla Firefox
Has Public Exploit No
Has CISA KEV Exploit No
CISA KEV Release Date N/A
CISA KEV Due Date N/A
Exploitation Probability Percentile (EPSS) 11.8
Exploitation Probability (EPSS) N/A
Affected packages and libraries
cpe:2.3:a:mozilla:thunderbird
cpe:2.3:a:mozilla:firefox
Sources
Debian 11, 14 Severity HIGH No Fix Added at: Apr 09, 2026
Debian 12, 13 Severity HIGH Has Fix Added at: Apr 09, 2026
Wiz
CVE-2026-34606 Impact, Exploitability, and Mitigation Steps | Wiz
blogs_wiz·CVSS 8.4
CVE-2026-34606 [HIGH] CVE-2026-34606 Impact, Exploitability, and Mitigation Steps | Wiz
## CVE-2026-34606 :
NixOS vulnerability analysis and mitigation
Frappe Learning Management System (LMS) is a learning system that helps users structure their content. From version 2.27.0 to before version 2.48.0, Frappe LMS was vulnerable to stored XSS. This issue has been patched in version 2.48.0.
Source : NVD
## 6.9
Score
Published April 2, 2026
Severity MEDIUM
CNA Score 6.9
Affected Technologies
NixOS
Has Public Exploit No
Has CISA KEV Exploit No
CISA KEV Release Date N/A
CISA KEV Due Date N/A
Exploitation Probability Percentile (EPSS) 9.2
Exploitation Probability (EPSS) N/A
Affected packages and libraries
learning
Sources
NVD
Nix Severity MEDIUM Has Fix Added at: Apr 10, 2026
## Get a CVE risk assessment
Get a prioritized view of CVEs in your cloud—so you ca
Wiz
CVE-2026-30313 Impact, Exploitability, and Mitigation Steps | Wiz
blogs_wiz·CVSS 9.8
CVE-2026-30313 [CRITICAL] CVE-2026-30313 Impact, Exploitability, and Mitigation Steps | Wiz
## CVE-2026-30313 :
Homebrew vulnerability analysis and mitigation
DSAI-Cline's command auto-approval module contains a critical OS command injection vulnerability that renders its whitelist security mechanism completely ineffective. The system relies on string-based parsing to validate commands; while it intercepts dangerous operators such as ;, &&, ||, |, and command substitution patterns, it fails to account for raw newline characters embedded within the input. An attacker can construct a payload by embedding a literal newline between a whitelisted command and malicious code (e.g., git log malicious_command), forcing DSAI-Cline to misidentify it as a safe operation and automatically approve it. The underlying PowerShell interpreter treats the newline as a command separator, executing
Wiz
CVE-2026-5734 Impact, Exploitability, and Mitigation Steps | Wiz
blogs_wiz·CVSS 9.8
CVE-2026-5734 [CRITICAL] CVE-2026-5734 Impact, Exploitability, and Mitigation Steps | Wiz
## CVE-2026-5734 :
NixOS vulnerability analysis and mitigation
Memory safety bugs present in Firefox ESR 140.9.0, Thunderbird ESR 140.9.0, Firefox 149.0.1 and Thunderbird 149.0.1. Some of these bugs showed evidence of memory corruption and we presume that with enough effort some of these could have been exploited to run arbitrary code. This vulnerability affects Firefox < 149.0.2, Firefox ESR < 140.9.1, Thunderbird < 149.0.2, and Thunderbird < 140.9.1.
Source : NVD
## 9.8
Score
Published April 7, 2026
Severity CRITICAL
CNA Score N/A
Affected Technologies
NixOS
Mozilla Firefox
Has Public Exploit No
Has CISA KEV Exploit No
CISA KEV Release Date N/A
CISA KEV Due Date N/A
Exploitation Probability Percentile (EPSS) 14
Exploitation Probability (EPSS) N/A
Affected packages and
Wiz
CVE-2026-5731 Impact, Exploitability, and Mitigation Steps | Wiz
blogs_wiz·CVSS 9.8
CVE-2026-5731 [CRITICAL] CVE-2026-5731 Impact, Exploitability, and Mitigation Steps | Wiz
## CVE-2026-5731 :
Mozilla Firefox vulnerability analysis and mitigation
Memory safety bugs present in Firefox ESR 115.34.0, Firefox ESR 140.9.0, Thunderbird ESR 140.9.0, Firefox 149.0.1 and Thunderbird 149.0.1. Some of these bugs showed evidence of memory corruption and we presume that with enough effort some of these could have been exploited to run arbitrary code. This vulnerability affects Firefox < 149.0.2, Firefox ESR < 115.34.1, Firefox ESR < 140.9.1, Thunderbird < 149.0.2, and Thunderbird < 140.9.1.
Source : NVD
## 9.8
Score
Published April 7, 2026
Severity CRITICAL
CNA Score 9.8
Affected Technologies
Mozilla Firefox
Mozilla Thunderbird
Has Public Exploit No
Has CISA KEV Exploit No
CISA KEV Release Date N/A
CISA KEV Due Date N/A
Exploitation Probability Percentile
Wiz
CVE-2026-34200 Impact, Exploitability, and Mitigation Steps | Wiz
blogs_wiz·CVSS 7.7
CVE-2026-34200 [HIGH] CVE-2026-34200 Impact, Exploitability, and Mitigation Steps | Wiz
## CVE-2026-34200 :
NixOS vulnerability analysis and mitigation
Nhost is an open source Firebase alternative with GraphQL. Prior to version 1.41.0, The Nhost CLI MCP server, when explicitly configured to listen on a network port, applies no inbound authentication and does not enforce strict CORS. This allows a malicious website visited on the same machine to issue cross-origin requests to the MCP server and invoke privileged tools using the developer's locally configured credentials. This vulnerability requires two explicit, non-default configuration steps to be exploitable. The default nhost mcp start configuration is not affected. This issue has been patched in version 1.41.0.
Source : NVD
## 7.7
Score
Published March 31, 2026
Severity HIGH
CNA Score 7.7
Affected Technologies
Wiz
CVE-2018-25225 Impact, Exploitability, and Mitigation Steps | Wiz
blogs_wiz·CVSS 8.6
CVE-2018-25225 [HIGH] CVE-2018-25225 Impact, Exploitability, and Mitigation Steps | Wiz
## CVE-2018-25225 :
NixOS vulnerability analysis and mitigation
SIPP 3.3 contains a stack-based buffer overflow vulnerability that allows local unauthenticated attackers to execute arbitrary code by supplying malicious input in the configuration file. Attackers can craft a configuration file with oversized values that overflow a stack buffer, overwriting the return address and executing arbitrary code through return-oriented programming gadgets.
Source : NVD
## 8.6
Score
Published March 28, 2026
Severity HIGH
CNA Score 8.6
Affected Technologies
NixOS
Homebrew
Has Public Exploit Yes
Has CISA KEV Exploit No
CISA KEV Release Date N/A
CISA KEV Due Date N/A
Exploitation Probability Percentile (EPSS) 8.1
Exploitation Probability (EPSS) N/A
Affected packages and libraries
sip
Wiz
CVE-2026-30285 Impact, Exploitability, and Mitigation Steps | Wiz
blogs_wiz·CVSS 9.8
CVE-2026-30285 [CRITICAL] CVE-2026-30285 Impact, Exploitability, and Mitigation Steps | Wiz
## CVE-2026-30285 :
NixOS vulnerability analysis and mitigation
An arbitrary file overwrite vulnerability in Zora: Post, Trade, Earn Crypto v2.60.0 allows attackers to overwrite critical internal files via the file import process, leading to arbitrary code execution or information exposure.
Source : NVD
## 9.8
Score
Published March 31, 2026
Severity CRITICAL
CNA Score 9.8
Affected Technologies
NixOS
Has Public Exploit Yes
Has CISA KEV Exploit No
CISA KEV Release Date N/A
CISA KEV Due Date N/A
Exploitation Probability Percentile (EPSS) 29.5
Exploitation Probability (EPSS) 0.1
Affected packages and libraries
zora
Sources
NVD
Nix Severity CRITICAL No Fix Added at: Apr 10, 2026
## Get a CVE risk assessment
Get a prioritized view of CVEs in your cloud—so you can focus
Wiz
CVE-2026-5735 Impact, Exploitability, and Mitigation Steps | Wiz
blogs_wiz·CVSS 8.4
CVE-2026-5735 [HIGH] CVE-2026-5735 Impact, Exploitability, and Mitigation Steps | Wiz
## CVE-2026-5735 :
NixOS vulnerability analysis and mitigation
Memory safety bugs present in Firefox 149.0.1 and Thunderbird 149.0.1. Some of these bugs showed evidence of memory corruption and we presume that with enough effort some of these could have been exploited to run arbitrary code. This vulnerability affects Firefox < 149.0.2 and Thunderbird < 149.0.2.
Source : NVD
## 9.8
Score
Published April 7, 2026
Severity CRITICAL
CNA Score N/A
Affected Technologies
NixOS
Mozilla Firefox
Has Public Exploit No
Has CISA KEV Exploit No
CISA KEV Release Date N/A
CISA KEV Due Date N/A
Exploitation Probability Percentile (EPSS) 12.1
Exploitation Probability (EPSS) N/A
Affected packages and libraries
firefox
thunderbird
Sources
Homebrew Severity CRITICAL Has Fix Added at: Apr
Wiz
CVE-2026-5733 Impact, Exploitability, and Mitigation Steps | Wiz
blogs_wiz·CVSS 8.4
CVE-2026-5733 [HIGH] CVE-2026-5733 Impact, Exploitability, and Mitigation Steps | Wiz
## CVE-2026-5733 :
NixOS vulnerability analysis and mitigation
Incorrect boundary conditions in the Graphics: WebGPU component. This vulnerability affects Firefox < 149.0.2 and Thunderbird < 149.0.2.
Source : NVD
## 8.8
Score
Published April 7, 2026
Severity HIGH
CNA Score 8.8
Affected Technologies
NixOS
Mozilla Firefox
Has Public Exploit No
Has CISA KEV Exploit No
CISA KEV Release Date N/A
CISA KEV Due Date N/A
Exploitation Probability Percentile (EPSS) 10.8
Exploitation Probability (EPSS) N/A
Affected packages and libraries
cpe:2.3:a:mozilla:firefox
cpe:2.3:a:mozilla:thunderbird
Sources
Homebrew Severity HIGH Has Fix Added at: Apr 10, 2026
Nix Severity HIGH Has Fix Added at: Apr 10, 2026
Ubuntu 22.04 Severity MEDIUM No Fix Added at: Apr 09, 2026
Linux Severity
Bugzilla
CVE-2026-5734 thunderbird: firefox: Memory safety bugs fixed in Firefox ESR 140.9.1, Thunderbird ESR 140.9.1, Firefox 149.0.2 and Thunderbird 149.0.2
bugzilla·2026-04-07·CVSS 9.8
CVE-2026-5734 [CRITICAL] CVE-2026-5734 thunderbird: firefox: Memory safety bugs fixed in Firefox ESR 140.9.1, Thunderbird ESR 140.9.1, Firefox 149.0.2 and Thunderbird 149.0.2
CVE-2026-5734 thunderbird: firefox: Memory safety bugs fixed in Firefox ESR 140.9.1, Thunderbird ESR 140.9.1, Firefox 149.0.2 and Thunderbird 149.0.2
Memory safety bugs present in Firefox ESR 140.9.0, Thunderbird ESR 140.9.0, Firefox 149.0.1 and Thunderbird 149.0.1. Some of these bugs showed evidence of memory corruption and we presume that with enough effort some of these could have been exploited to run arbitrary code. This vulnerability affects Firefox < 149.0.2 and Firefox ESR < 140.9.1.
https://bugzilla.mozilla.org/buglist.cgi?bug_id=2022369%2C2023026%2C2023545%2C2023555%2C2023958%2C2025422%2C2025468%2C2025492%2C2025505https://www.mozilla.org/security/advisories/mfsa2026-25/https://www.mozilla.org/security/advisories/mfsa2026-27/https://www.mozilla.org/security/advisories/mfsa2026-28/https://www.mozilla.org/security/advisories/mfsa2026-29/https://access.redhat.com/errata/RHSA-2026:11805https://access.redhat.com/errata/RHSA-2026:11813https://access.redhat.com/errata/RHSA-2026:12264https://access.redhat.com/errata/RHSA-2026:13342https://access.redhat.com/errata/RHSA-2026:13412https://access.redhat.com/errata/RHSA-2026:13533https://access.redhat.com/errata/RHSA-2026:13582https://access.redhat.com/errata/RHSA-2026:13583https://access.redhat.com/errata/RHSA-2026:13596https://access.redhat.com/errata/RHSA-2026:13600https://access.redhat.com/errata/RHSA-2026:13665https://access.redhat.com/errata/RHSA-2026:13682https://access.redhat.com/errata/RHSA-2026:13683https://access.redhat.com/errata/RHSA-2026:13922https://access.redhat.com/errata/RHSA-2026:13977https://access.redhat.com/errata/RHSA-2026:14223https://access.redhat.com/errata/RHSA-2026:14303https://access.redhat.com/errata/RHSA-2026:15889https://access.redhat.com/errata/RHSA-2026:7671https://access.redhat.com/errata/RHSA-2026:7672https://access.redhat.com/errata/RHSA-2026:8052https://access.redhat.com/errata/RHSA-2026:8459https://access.redhat.com/errata/RHSA-2026:9345https://access.redhat.com/errata/RHSA-2026:9638https://access.redhat.com/security/cve/CVE-2026-5734https://bugzilla.redhat.com/show_bug.cgi?id=2455897https://security.access.redhat.com/data/csaf/v2/vex/2026/cve-2026-5734.json
2026-04-07
Published