Vulnerability Overview
Exploitation Activity
Exploitation Intelligence
A significant authorization bypass vulnerability (CVE-2026-33186) has been identified in multiple SUSE Elemental systems, including the elemental-system-agent, elemental-toolkit, and elemental-register. This flaw arises from improper validation of the HTTP/2 path pseudo-header, allowing unauthorized...
On September 11, 2026, SUSE announced security updates for Helm and Curl, addressing several vulnerabilities. The Helm update (SUSE-SU-2026:23506-1) resolves eight vulnerabilities, including CVE-2026-50151 and CVE-2026-84303, with CVSS scores up to 9.1. The Curl update (SUSE-SU-2026:23498-1) address...
Recent updates for SUSE Linux Micro 6.0 and mcphost address multiple vulnerabilities, including CVE-2026-41178, which allows denial-of-service (DoS) attacks through oversized inputs in baggage parsing. Additionally, CVE-2026-48978 enables malicious registries to exfiltrate credentials via hijacked B...