VULNERABILITY REMEDIATION

CVE remediation guides

Move from asset identification to supported remediation and post-change verification while keeping source evidence visible.

These defensive guides do not provide exploit reproduction or bypass instructions.
01

Confirm exposure first

Match the product, version, installation path, and external exposure before treating a score as an action order.

02

Prefer supported fixes

Use vendor advisories and supported update paths. An unverified fixed-version field stays visibly unresolved.

03

Verify and retain rollback

Confirm version state, service health, access paths, logs, and rollback readiness after the change.

18,947 guide candidatesPage 1140 of 1579
Known exploitedHighFixed-version data
CVE-2026-1603

Ivanti Endpoint Manager (EPM)

Affected
< 2024, 2024
Fixed
2024
Known exploitedMediumFixed-version data
CVE-2025-68686

Fortinet FortiOS, fortios

Affected
>= 7.6.0 <= 7.6.1, >= 7.4.0 <= 7.4.6, >= 7.2.0 <= 7.2.13, >= 7.0.0 <= 7.0.19, >= 6.4.0 <= 6.4.16, >= 6.4.0 < 7.4.7, >= 7.6.0 < 7.6.2
Fixed
7.4.7, 7.6.2
Review reviewHighFixed-version data
CVE-2026-25639

axios axios, Red Hat Ansible Automation Platform 2.6 for RHEL 9, multicluster engine for Kubernetes 2.1

Affected
>= >= 1.0.0, < 0.30.3, >= 1.0.0 < 1.13.5
Fixed
0.30.3, 1.13.5
Review reviewHighResearch in progress
CVE-2026-1529

Red Hat Red Hat build of Keycloak 26.2, Red Hat build of Keycloak 26.2.13, Red Hat build of Keycloak 26.4

Affected
See the vendor advisory and NVD configuration data
Fixed
No verified fixed-version field is available yet
Review reviewHighResearch in progress
CVE-2026-1486

Red Hat Red Hat build of Keycloak 26.4, Red Hat build of Keycloak 26.4.9

Affected
See the vendor advisory and NVD configuration data
Fixed
No verified fixed-version field is available yet
Review reviewHighFixed-version data
CVE-2026-24678

FreeRDP FreeRDP, Red Hat Enterprise Linux 10, Red Hat Enterprise Linux 10.0 Extended Update Support

Affected
< 3.22.0
Fixed
3.22.0
Review reviewHighResearch in progress
CVE-2026-1615

jsonpath, org.webjars.npm:jsonpath, Red Hat Ansible Automation Platform 2.5

Affected
< 1.3.0
Fixed
No verified fixed-version field is available yet
Review reviewHighFixed-version data
CVE-2026-25859

WeKan WeKan, wekan

Affected
< 8.20
Fixed
8.20
Review reviewCriticalResearch in progress
CVE-2026-25858

macrozheng mall

Affected
<= 1.0.3
Fixed
No verified fixed-version field is available yet
Review reviewHighFixed-version data
CVE-2026-25568

WeKan WeKan, wekan

Affected
< 8.19
Fixed
8.19
Review reviewHighFixed-version data
CVE-2026-25566

WeKan WeKan, wekan

Affected
< 8.19
Fixed
8.19
Review reviewHighFixed-version data
CVE-2026-25565

WeKan WeKan, wekan

Affected
< 8.19
Fixed
8.19