VULNERABILITY REMEDIATION

CVE remediation guides

Move from asset identification to supported remediation and post-change verification while keeping source evidence visible.

These defensive guides do not provide exploit reproduction or bypass instructions.
01

Confirm exposure first

Match the product, version, installation path, and external exposure before treating a score as an action order.

02

Prefer supported fixes

Use vendor advisories and supported update paths. An unverified fixed-version field stays visibly unresolved.

03

Verify and retain rollback

Confirm version state, service health, access paths, logs, and rollback readiness after the change.

19,287 guide candidatesPage 1061 of 1608
Review reviewHighFixed-version data
CVE-2025-13914

Juniper Networks Apstra, apstra

Affected
< 6.1.1
Fixed
6.1.1
Review reviewHighFixed-version data
CVE-2026-34734

HDFGroup hdf5, Red Hat Enterprise Linux AI (RHEL AI) 3

Affected
<= 1.14.1-2, < 1.14.1-2
Fixed
1.14.1-2
Known exploitedHighResearch in progress
CVE-2026-34486

Apache Software Foundation Apache Tomcat, Red Hat Enterprise Linux 10, Red Hat Enterprise Linux 10.0 Extended Update Support

Affected
>= 11.0.20, >= 10.1.53, >= 9.0.116, 9.0.116, 10.1.53, 11.0.20, 7.0.0, 8.0, 9.0, 10.0, 7.0, 8.8, 9.2, 9.4, 9.6
Fixed
No verified fixed-version field is available yet
Review reviewHighFixed-version data
CVE-2026-29146

Apache Software Foundation Apache Tomcat, Red Hat Enterprise Linux 10, Red Hat Enterprise Linux 10.0 Extended Update Support

Affected
>= 11.0.0-M1 <= 11.0.18, >= 10.0.0-M1 <= 10.1.52, >= 9.0.13 <= 9.0.115, >= 8.5.38 <= 8.5.100, >= 7.0.100 <= 7.0.109, >= 9.0.13 < 9.0.116, >= 10.0.0 < 10.1.53, >= 11.0.0 < 11.0.20
Fixed
9.0.116, 10.1.53, 11.0.20
Review reviewCriticalResearch in progress
CVE-2026-39912

v2board v2board, Xboard

Affected
>= 1.6.1 <= 1.7.4, >= bdb10bed32c5f37df2f0872c3cb354e9b7a293bd <= 0ca47622a50116d0ddd7ffb316b157afb57d25e8, <= 0.1.9
Fixed
No verified fixed-version field is available yet
Review reviewCriticalFixed-version data
CVE-2026-34971

bytecodealliance wasmtime, Red Hat Connectivity Link 1, Red Hat Enterprise Linux 10

Affected
>= >= 32.0.0, >= >= 37.0.0, >= >= 43.0.0, < 44.0.1, >= 32.0.0 < 36.0.7, >= 37.0.0 < 42.0.2, 43.0.0
Fixed
36.0.7, 42.0.2
Known exploitedCriticalFixed-version data
CVE-2026-39987

Marimo

Affected
< 0.23.0
Fixed
0.23.0
Review reviewHighFixed-version data
CVE-2026-39983

patrickjuchli basic-ftp, Red Hat Developer Hub 1.8, Red Hat Developer Hub 1.9

Affected
< 5.2.1
Fixed
5.2.1
Review reviewHighResearch in progress
CVE-2026-39911

hashgraph guardian

Affected
<= 3.5.1, <= 3.5.0
Fixed
No verified fixed-version field is available yet
Review reviewHighResearch in progress
CVE-2026-1584

Red Hat Red Hat Hardened Images, Red Hat Enterprise Linux 10, Red Hat Enterprise Linux 6

Affected
See the vendor advisory and NVD configuration data
Fixed
No verified fixed-version field is available yet
Review reviewHighFixed-version data
CVE-2026-39962

MISP MISP, misp

Affected
< 2.5.36
Fixed
2.5.36
Review reviewHighResearch in progress
CVE-2026-4878

Red Hat Red Hat Enterprise Linux 10, Red Hat Enterprise Linux 10.0 Extended Update Support, Red Hat Enterprise Linux 8

Affected
4.0, 8.0, 9.0, 10.0
Fixed
No verified fixed-version field is available yet