| alma_linux ALSA-2026:20693: ALSA-2026:20693: mysql8.4 security update (Medium) | CVE-2026-35239, CVE-2026-22002, CVE-2026-34276, CVE-2026-22004, CVE-2026-34271, CVE-2026-22001, CVE-2026-22009, CVE-2026-34304, CVE-2026-22005, CVE-2026-21998, CVE-2026-22015, CVE-2026-34270, CVE-2026-35237, CVE-2026-34303, CVE-2026-35240, CVE-2026-22017, CVE-2026-35236, CVE-2026-35238, CVE-2026-34308 | 2026/5/28 | testing |
| alma_linux ALSA-2026:20566: ALSA-2026:20566: firefox security update (High) | CVE-2026-8090, CVE-2026-8092, CVE-2026-8094 | 2026/5/28 | testing |
| alma_linux ALSA-2026:20587: ALSA-2026:20587: glibc security update (Medium) | CVE-2026-4046 | 2026/5/28 | testing |
| alma_linux ALSA-2026:20611: ALSA-2026:20611: gnutls security update (High) | CVE-2026-42009, CVE-2026-42013, CVE-2026-3833, CVE-2026-42015, CVE-2026-42011, CVE-2026-33845, CVE-2026-42012, CVE-2026-33846, CVE-2026-42010, CVE-2026-42014, CVE-2026-5260 | 2026/5/28 | testing |
| alma_linux ALSA-2026:20594: ALSA-2026:20594: glibc security update (Medium) | CVE-2026-4046 | 2026/5/28 | testing |
| alma_linux ALSA-2026:20596: ALSA-2026:20596: ruby:4.0 security update (High) | CVE-2026-41316, CVE-2026-33210 | 2026/5/28 | testing |
| alma_linux ALSA-2026:20929: ALSA-2026:20929: libexif security update (Medium) | CVE-2026-40385, CVE-2026-40386 | 2026/5/28 | testing |
| alma_linux ALSA-2026:20614: ALSA-2026:20614: ruby:3.3 security update (High) | CVE-2026-41316 | 2026/5/28 | testing |
| redhat RHSA-2026:21298: RHSA-2026:21298: openssh security update (Important) | CVE-2026-35385, CVE-2026-35388, CVE-2026-35387, CVE-2026-35414, CVE-2026-35386 | 2026/5/28 | testing |
| redhat RHSA-2026:21293: RHSA-2026:21293: .NET 8.0 security update (Important) | CVE-2026-34043, CVE-2026-42899 | 2026/5/28 | testing |
| redhat RHSA-2026:21286: RHSA-2026:21286: .NET 8.0 security update (Important) | CVE-2026-34043, CVE-2026-42899 | 2026/5/28 | testing |
| redhat RHSA-2026:21297: RHSA-2026:21297: .NET 10.0 security update (Important) | CVE-2026-42899 | 2026/5/28 | testing |
| redhat RHSA-2026:21382: RHSA-2026:21382: firefox security update (Important) | CVE-2026-8957, CVE-2026-8954, CVE-2026-8962, CVE-2026-8950, CVE-2026-8974, CVE-2026-8946, CVE-2026-8958, CVE-2026-8388, CVE-2026-8401, CVE-2026-8953, CVE-2026-8955, CVE-2026-8956, CVE-2026-8391, CVE-2026-8947, CVE-2026-8968, CVE-2026-8961, CVE-2026-8975, CVE-2026-8970 | 2026/5/28 | testing |
| redhat RHSA-2026:21381: RHSA-2026:21381: thunderbird security update (Important) | CVE-2026-8962, CVE-2026-8959, CVE-2026-8958, CVE-2026-8388, CVE-2026-8947, CVE-2026-8970, CVE-2026-8974, CVE-2026-8950, CVE-2026-8946, CVE-2026-8956, CVE-2026-8957, CVE-2026-8954, CVE-2026-8401, CVE-2026-8955, CVE-2026-8968, CVE-2026-8975, CVE-2026-8953, CVE-2026-8391, CVE-2026-8961 | 2026/5/28 | testing |
| redhat RHSA-2026:21390: RHSA-2026:21390: cockpit security update (Important) | CVE-2026-4802 | 2026/5/28 | testing |
| redhat RHSA-2026:21294: RHSA-2026:21294: .NET 9.0 security update (Important) | CVE-2026-42899 | 2026/5/28 | testing |
| redhat RHSA-2026:21394: RHSA-2026:21394: cockpit security update (Important) | CVE-2026-4802 | 2026/5/28 | testing |
| redhat RHSA-2026:21291: RHSA-2026:21291: .NET 8.0 security update (Important) | CVE-2026-34043, CVE-2026-42899 | 2026/5/28 | testing |
| ubuntu_linux USN-8309-1: Ubuntu 24.04 LTS / Ubuntu 25.10 / Ubuntu 26.04 LTS : libssh2 vulnerability (USN-8309-1) | CVE-2026-7598 | 2026/5/28 | testing |
| ubuntu_linux USN-8306-1: Ubuntu 22.04 LTS / Ubuntu 24.04 LTS / Ubuntu 25.10 / Ubuntu 26.04 LTS : Samba vulnerabilities (USN-8306-1) | CVE-2026-3012, CVE-2026-2340, CVE-2026-4408, CVE-2026-1933, CVE-2026-3238, CVE-2026-4480 | 2026/5/28 | testing |
| ubuntu_linux USN-8303-1: Ubuntu 14.04 LTS / Ubuntu 16.04 LTS / Ubuntu 18.04 LTS / Ubuntu 20.04 LTS / Ubuntu 22.04 LTS / Ubuntu 24.04 LTS / Ubuntu 26.04 LTS : GitPython vulnerabilities (USN-8303-1) | CVE-2026-44244, CVE-2026-44243, CVE-2023-41040, CVE-2026-42215, CVE-2026-42284 | 2026/5/28 | testing |
| ubuntu_linux USN-8307-1: Ubuntu 24.04 LTS : ONNX vulnerability (USN-8307-1) | CVE-2024-5187 | 2026/5/28 | testing |
| ubuntu_linux USN-8310-1: Ubuntu 24.04 LTS / Ubuntu 25.10 : Linux kernel (Azure) vulnerabilities (USN-8310-1) | CVE-2025-71090, CVE-2026-23351, CVE-2025-71141, CVE-2025-71142, CVE-2026-23454, CVE-2025-71155, CVE-2026-43033, CVE-2026-31431, CVE-2025-71139, CVE-2026-31504, CVE-2025-71134, CVE-2025-71144, CVE-2026-31533, CVE-2025-71127, CVE-2026-31419, CVE-2025-71088, CVE-2026-43078, CVE-2026-23274, CVE-2026-23394, CVE-2026-43276, CVE-2025-71152, CVE-2026-43077 | 2026/5/28 | testing |
| ubuntu_linux USN-8308-1: Ubuntu 26.04 LTS : Dnsmasq vulnerability (USN-8308-1) | CVE-2026-6507 | 2026/5/28 | testing |
| redhat RHSA-2026:20570: RHSA-2026:20570: podman security update (Important) | CVE-2026-32283, CVE-2026-32280, CVE-2026-32281 | 2026/5/28 | testing |
| redhat RHSA-2026:20607: RHSA-2026:20607: buildah security update (Important) | CVE-2026-32283, CVE-2026-32280, CVE-2026-34986 | 2026/5/28 | testing |
| redhat RHSA-2026:21468: RHSA-2026:21468: cockpit security update (Important) | CVE-2026-4802 | 2026/5/28 | development |
| redhat RHSA-2026:21398: RHSA-2026:21398: openssh security update (Important) | CVE-2026-35385, CVE-2026-35388, CVE-2026-35387, CVE-2026-35414, CVE-2026-35386 | 2026/5/28 | development |
| redhat RHSA-2026:21515: RHSA-2026:21515: cockpit security update (Important) | CVE-2026-4802 | 2026/5/28 | development |
| redhat RHSA-2026:21431: RHSA-2026:21431: fence-agents security update (Important) | CVE-2026-32597, CVE-2026-26007 | 2026/5/28 | development |
| redhat RHSA-2026:21433: RHSA-2026:21433: httpd security update (Important) | CVE-2026-34032, CVE-2026-28780, CVE-2026-34059, CVE-2026-33007, CVE-2026-33857 | 2026/5/28 | development |
| redhat RHSA-2026:21391: RHSA-2026:21391: httpd security update (Important) | CVE-2026-34032, CVE-2026-28780, CVE-2026-34059, CVE-2026-33007, CVE-2026-33857 | 2026/5/28 | development |
| amazon_alas ALAS2023-2026-1711: Amazon Linux 2023 Security Advisory:ALAS2023-2026-1711 | CVE-2026-6477, CVE-2026-6478 | 2026/5/28 | development |
| fedora FEDORA-2026-f8487121bd: python-uv-build-0.11.15-1.fc43 rust-astral-tokio-tar-0.6.2-1.fc43 rust-astral_async_http_range_reader-0.11.0-2.fc43 rust-astral_async_zip-0.0.18~rc4-2.fc43 uv-0.11.15-1.fc43 | | 2026/5/28 | development |
| fedora FEDORA-2026-bc20b091a8: kernel-7.0.10-201.fc44 | | 2026/5/28 | development |
| debian_linux dsa-6302: Debian dsa-6302 : python3-starlette - security update | CVE-2024-47874, CVE-2025-54121, CVE-2023-29159, CVE-2026-48710 | 2026/5/28 | development |
| debian_linux dsa-6301: Debian dsa-6301 : roundcube - security update | CVE-2026-48846, CVE-2026-48845, CVE-2026-48849, CVE-2026-48847, CVE-2026-48843, CVE-2026-48848, CVE-2026-48844, CVE-2026-48842 | 2026/5/28 | development |
| debian_linux dsa-6304: Debian dsa-6304 : libunbound-dev - security update | CVE-2026-42959, CVE-2026-41292, CVE-2026-42944, CVE-2026-33278, CVE-2026-42960, CVE-2026-44390, CVE-2026-42923, CVE-2026-32792, CVE-2026-44608, CVE-2026-40622, CVE-2026-42534 | 2026/5/28 | development |
| oracle_linux ELSA-2026-20587: ELSA-2026-20587: glibc security update (MODERATE) | CVE-2026-4046 | 2026/5/28 | testing |
| oracle_linux ELSA-2026-20614: ELSA-2026-20614: ruby:3.3 security update (IMPORTANT) | CVE-2026-41316 | 2026/5/28 | testing |
| redhat RHSA-2026:21296: RHSA-2026:21296: .NET 9.0 security update (Important) | CVE-2026-42899 | 2026/5/28 | testing |
| Multiple Vulnerabilities in IBM DB2 | CVE-2026-6052, CVE-2025-13755, CVE-2026-6051, CVE-2026-1718, CVE-2026-6053 | 2026/5/28 | development |
| miracle_linux AXBA:2026-723:38: AXBA:2026-723:38: kernel-4.18.0-553.125.1.el8_10 | CVE-2026-46333, CVE-2026-46300 | 2026/5/28 | testing |
| freebsd 9bcc3279-5901-11f1-b525-3c7c3fba4204: Grafana -- Grafana MSSQL Data Source Plugin: Restriction Bypass Leading to OOM DoS | CVE-2026-33375 | 2026/5/28 | testing |
| freebsd f45ad940-58ff-11f1-b525-3c7c3fba4204: Grafana -- RCE on Grafana via sqlExpressions | CVE-2026-27876 | 2026/5/28 | testing |
| freebsd 6cc28c49-58fe-11f1-b525-3c7c3fba4204: Grafana -- XSS in Grafana Explore stack trace | CVE-2025-41117 | 2026/5/28 | testing |
| freebsd 6b2bf8e9-5900-11f1-b525-3c7c3fba4204: Grafana -- Public dashboards discloses all direct mode datasources | CVE-2026-27877 | 2026/5/28 | testing |
| freebsd 83cd53f7-58ff-11f1-b525-3c7c3fba4204: Grafana -- Public Dashboards time range restriction on annotations can be bypassed | CVE-2026-21722 | 2026/5/28 | testing |
| freebsd c079e809-5900-11f1-b525-3c7c3fba4204: Grafana -- Query resampling can cause unbounded memory allocations | CVE-2026-27879 | 2026/5/28 | testing |
| freebsd 62717c0f-5901-11f1-b525-3c7c3fba4204: Grafana -- Grafana Testdata datasource can issue unbounded memory allocations | CVE-2026-28375 | 2026/5/28 | testing |