Patch Window

v2.0.0  ·  97 patches  ·  uptime 65d

BRIEF

Vault 2.0.2 drops cap_ipc_lock in containers

Vault 2.0.2 removes cap_ipc_lock from the binary at build time, reversing a change made in 2.0.1. Without action, vault mlock container workloads can no longer pin secrets in memory -- check your securityContext and Helm values before upgrading.

BRIEF

Android CVE-2025-48595: patch now, active

Google's June 2026 Android Security Bulletin includes CVE-2025-48595, an integer overflow in Framework that enables local privilege escalation. Google confirms active targeted exploitation. CISA added it to KEV on June 2 with a federal remediation deadline of June 5.

BRIEF

Docker cp Was a Root Hole: Three CVEs Fixed

Docker Engine 29.5.1 patches three vulnerabilities in docker cp, including one that let a malicious container execute arbitrary code as root on the host by hijacking the decompression binary lookup.

BRIEF

Drupal SQL Injection CVE-2026-9082: Patch Now

CVE-2026-9082 is an unauthenticated SQL injection in Drupal core affecting all PostgreSQL-backed installations from 8.9 through 11.3.9. CISA added it to the KEV catalog on May 22 — active exploitation confirmed.