Monitor vulnerabilities that affect your stack.
Sign up free to get alerts when software you use is affected.
CVE Vulnerabilities - 16 April 2026
RSS927 vulnerabilities published on 16 April 2026
Severity:
Debian Package Manager Allows Unintended Configuration Changes
DEBIAN-CVE-2026-6409
A security issue in the Debian package manager (apt) could allow an attacker to make unintended changes to system configurations. This could lead to system instability or unauthorized access. Update y...
Bouncy Castle Java Cryptography Library Uses Weak Signature Verification
DEBIAN-CVE-2026-5588
A widely used Java library for cryptography has a weakness in its verification process. This could allow an attacker to create fake digital signatures that are accepted as valid. Update to the latest ...
Debian Linux: Unprivileged User Privilege Escalation
DEBIAN-CVE-2026-41082
A security issue in Debian Linux allows an attacker to gain elevated privileges if they have an unprivileged user account. This could potentially allow the attacker to take control of the entire syste...
Bouncy Castle Java Cryptography Library Leaks Private Keys
DEBIAN-CVE-2026-5598
A security weakness in the Bouncy Castle Java library could allow attackers to steal private keys. This affects Bouncy Castle Java versions 2.17.3 and earlier. To protect your data, update to a fixed ...
Pillow: FITS Image Decompression Can Crash Your System
DEBIAN-CVE-2026-40192
Old versions of the Pillow library for Python don't limit how much data they read when unpacking compressed FITS images, which can cause a system crash or slow performance if you open a specially craf...
MINI-7ghq-frm6-qj8g
MINI-7ghq-frm6-qj8g
Cockpit: Unauthenticated Remote Code Execution via SSH Argument Injection
MGASA-2026-0099
Cockpit's SSH server may allow an attacker to execute arbitrary code without a password. This affects systems using Cockpit and SSH. Update Cockpit to the latest version to fix this vulnerability.
Linux Kernel: NVIDIA Driver Vulnerabilities Allow System Compromise
USN-8148-7
The Linux kernel's NVIDIA driver has security issues that could allow an attacker to take control of your system. This update fixes vulnerabilities in parts of the kernel that handle sensitive network...
Digital Knowledge KnowledgeDeliver: Hard-coded Machine Key Exposes ViewState Validation
CVE-2026-5426
A hard-coded security setting in older versions of Digital Knowledge KnowledgeDeliver makes it easier for hackers to bypass security checks and potentially take control of your system. This affects an...
Yamaha SR-B30A sound bar can be controlled without a password
CVE-2026-37100
Attackers within range can control your Yamaha sound bar without a password. This means they could change settings, turn it on or off, or even mute it. Update your sound bar's firmware to the latest v...
oFono Crashes or Executes Malicious Code
USN-8178-1
Use of oFono, a software for mobile network management, may leave systems open to crashes or malicious code execution if certain inputs are not handled correctly. This could allow an attacker to disru...
Python pyOpenSSL update prevents connection abandonment
SUSE-SU-2026:1416-1
An update to the Python pyOpenSSL library fixes a bug where a connection might not be properly closed, potentially causing issues. This update is recommended to ensure connections are handled correctl...
rootio-python3.11: Uncontrolled Memory Access in Root Environment
ROOT-OS-DEBIAN-12-CVE-2026-3479
An issue in the rootio-python3.11 package for Root:Debian:12 could allow an attacker to potentially access sensitive information or cause a denial of service. This has been fixed by Root in a software...
rootio-python3.11: Unrestricted File Access in Root Environment
ROOT-OS-DEBIAN-12-CVE-2025-8194
An update has been released for the rootio-python3.11 package to prevent unauthorized access to files in the root environment. This change will help protect sensitive data and prevent potential securi...
Rootio-Python3.11: Unauthenticated Remote Code Injection
ROOT-OS-DEBIAN-12-CVE-2026-0672
The Rootio-Python3.11 package has a vulnerability that allows an attacker to execute malicious code without needing a password. This could potentially let an attacker access your system and steal sens...
Python 3.11 on Root:Debian:12: Unsecured Data Exposure
ROOT-OS-DEBIAN-12-CVE-2025-69534
A security patch has been released for Python 3.11 on Root:Debian:12 to prevent sensitive data from being exposed. This affects users who rely on this package for critical operations. Update to the la...
rootio-python3.11: Unvalidated Input Allows Command Execution
ROOT-OS-DEBIAN-12-CVE-2026-3644
A software update has been released to fix a vulnerability in the rootio-python3.11 package that affects Root users. If exploited, this issue could allow an attacker to execute arbitrary commands on a...
rootio-python3.11: Unauthorized Access via Malicious Configuration
ROOT-OS-DEBIAN-12-CVE-2025-15367
A security issue in the rootio-python3.11 package on Root:Debian:12 allows an attacker to gain unauthorized access to the system by exploiting a vulnerability in the configuration. This could potentia...
Rootio Python 3.11 Allows Malicious Code Execution
ROOT-OS-DEBIAN-12-CVE-2025-12084
A security issue in Rootio Python 3.11 on Debian 12 allows attackers to execute malicious code on your system. This issue has been fixed by the Root developers, and you should update your package to t...
rootio-python3.11: Untrusted code execution through malicious configuration
ROOT-OS-DEBIAN-12-CVE-2025-4516
A security patch has been released for the rootio-python3.11 package in Root:Debian:12. This issue could allow an attacker to run malicious code on your system if they can trick you into installing a ...
rootio-python3.11: Malicious code execution via malicious input
ROOT-OS-DEBIAN-12-CVE-2026-0865
The rootio-python3.11 package has a security issue that allows attackers to inject malicious code. This could potentially allow hackers to take control of your system or steal sensitive information. U...
Rootio Python 3.11: Unauthorized Access to Sensitive Files
ROOT-OS-DEBIAN-12-CVE-2025-13837
The Rootio Python 3.11 package has a vulnerability that could allow an attacker to access sensitive files without permission. This could lead to unauthorized access to important data and potentially c...
Rootio Python 3.11 Package Security Issue
ROOT-OS-DEBIAN-12-CVE-2026-4519
A security patch has been released for Rootio's Python 3.11 package to fix a critical security issue. This affects Rootio users on Debian 12, who should update to the latest version to prevent potenti...
rootio-python3.11: Unrestricted File Access in Root Environment
ROOT-OS-DEBIAN-12-CVE-2025-12781
The rootio-python3.11 package in Root:Debian:12 has a bug that allows an attacker to access files they shouldn't be able to. This is a security risk because it could allow unauthorized access to sensi...
rootio-python3.11: Untrusted Code Execution Through Malicious Package
ROOT-OS-DEBIAN-12-CVE-2025-11468
An update has been released for rootio-python3.11 to prevent malicious packages from executing unauthorized code on your server. This update is crucial for maintaining the security of your system. Upd...