Linuxsecurity openCryptoki Vulnerabilities Addressed in openSUSE Updates
Article Content
Browse articles
openSUSE has released updates for openCryptoki to address two critical vulnerabilities. CVE-2026-22791, published on January 13, 2026, can lead to heap corruption or denial-of-service, while CVE-2026-23893, published on January 22, 2026, allows for privilege escalation or data exposure via symlink following. Users of openSUSE Linux Micro 7.1 and openSUSE 16.0 are affected.
Ask AI about this cluster
Answers cite the sources they use
Updated 193d ago How this analysis works
Timeline
2026-01-13
CVE-2026-22791 published
2026-01-22
CVE-2026-23893 published
2026-02-15
openSUSE 16.0 update released
2026-02-16
openSUSE Linux Micro 7.1 update released
More articles in this cluster (2)
Following this threat?
Track CVE-2026-22791 in your own feed — you're alerted when they show up in new reporting, leak sites or exploitation.
Free account · no card needed
Continue Reading
Critical WSO2 API Manager Vulnerability Under Active Exploitation A critical vulnerability (CVE-2026-5430) in WSO2 API Manager is being actively exploited, allowing unauthenticated attackers to forge admin tokens via JWT authentication bypass. This flaw, which has a CVSS score of 10.0, affects multiple WSO2 products including API Manager, Universal Gateway, Traffic Manager, and API…
Red Heron Exploits Gitea RCE Flaw in Multinational Campaign A Chinese-speaking threat actor, tracked as Red Heron, exploited the CVE-2026-60004 remote code execution vulnerability in Gitea, compromising 1,386 instances across seven countries. The campaign involved source-code theft, credential collection, and lateral movement, affecting organizations in Canada, Argentina…