RHSA-2026:57590
Advisory lineage Upstream: 24 Downstream: 0
Published: 21 Aug 2026, 10:14
Last modified:19 Sept 2026, 10:12
Vulnerability Summary
Overall Risk (default)
medium
34/100 CVSS Score
8.6 HIGH
3.1 (osv_red_hat)
EPSS Score
No data
KEV
Not listed
Ransomware
No reports
Public exploits
None found
Dark Web
Not detected
Timeline
21 Aug 2026, 10:14
Published
Vulnerability first disclosed
19 Sept 2026, 10:12
Last Modified
Vulnerability information updated
Description
Red Hat Security Advisory: rh-podman-desktop security, bug fix, and enhancement update
CVSS Metrics
- v3.1•HIGH•Score: 8.6CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:C/C:H/I:N/A:N
Affected Systems
- redhat•rh-podman-desktop
< 0:1.1.2-1.el10_2
References (169)
- https://access.redhat.com/errata/RHSA-2026:57590
- https://access.redhat.com/security/updates/classification/#important
- https://bugzilla.redhat.com/show_bug.cgi?id=2455470
- https://bugzilla.redhat.com/show_bug.cgi?id=2476810
- https://bugzilla.redhat.com/show_bug.cgi?id=2477081
- https://bugzilla.redhat.com/show_bug.cgi?id=2477914
- https://bugzilla.redhat.com/show_bug.cgi?id=2487050
- https://bugzilla.redhat.com/show_bug.cgi?id=2487946
- https://bugzilla.redhat.com/show_bug.cgi?id=2488480
- https://bugzilla.redhat.com/show_bug.cgi?id=2488934
- https://bugzilla.redhat.com/show_bug.cgi?id=2489661
- https://bugzilla.redhat.com/show_bug.cgi?id=2493633
- https://bugzilla.redhat.com/show_bug.cgi?id=2494197
- https://bugzilla.redhat.com/show_bug.cgi?id=2494813
- https://bugzilla.redhat.com/show_bug.cgi?id=2498116
- https://bugzilla.redhat.com/show_bug.cgi?id=2498120
- https://bugzilla.redhat.com/show_bug.cgi?id=2498122
- https://bugzilla.redhat.com/show_bug.cgi?id=2498127
- https://bugzilla.redhat.com/show_bug.cgi?id=2499682
- https://bugzilla.redhat.com/show_bug.cgi?id=2500656
- https://bugzilla.redhat.com/show_bug.cgi?id=2500695
- https://bugzilla.redhat.com/show_bug.cgi?id=2506433
- https://bugzilla.redhat.com/show_bug.cgi?id=2507595
- https://bugzilla.redhat.com/show_bug.cgi?id=2510719
- https://bugzilla.redhat.com/show_bug.cgi?id=2510722
- https://bugzilla.redhat.com/show_bug.cgi?id=2510801
- https://issues.redhat.com/browse/RHEL-238929
- https://security.access.redhat.com/data/csaf/v2/advisories/2026/rhsa-2026_57590.json
- https://access.redhat.com/security/cve/CVE-2026-9595
- https://www.cve.org/CVERecord?id=CVE-2026-9595
- https://nvd.nist.gov/vuln/detail/CVE-2026-9595
- https://cna.openjsf.org/security-advisories.html
- https://github.com/facebook/create-react-app/pull/7444
- https://github.com/vuejs/vue-cli/commit/72ba7505aff2a8314e82aa5082379a77504a1fcb
- https://github.com/webpack/webpack-dev-server/pull/4316
- https://github.com/webpack/webpack-dev-server/security/advisories/GHSA-mx8g-39q3-5c79
- https://access.redhat.com/security/cve/CVE-2026-12143
- https://www.cve.org/CVERecord?id=CVE-2026-12143
- https://nvd.nist.gov/vuln/detail/CVE-2026-12143
- https://cwe.mitre.org/data/definitions/93.html
- https://github.com/form-data/form-data/commit/64190db548c0179e37206858e39f27cf513e9435
- https://github.com/form-data/form-data/commit/be3f3cf553978bac15a5182f1f3c3d2d38ccf229
- https://github.com/form-data/form-data/commit/c7133499c2ee1b80c678e411244f4442bf902045
- https://github.com/form-data/form-data/security/advisories/GHSA-hmw2-7cc7-3qxx
- https://html.spec.whatwg.org/multipage/form-control-infrastructure.html#multipart-form-data
- https://www.npmjs.com/package/form-data
- https://access.redhat.com/security/cve/CVE-2026-13149
- https://www.cve.org/CVERecord?id=CVE-2026-13149
- https://nvd.nist.gov/vuln/detail/CVE-2026-13149
- https://github.com/juliangruber/brace-expansion/commit/c7e33ec13ac1a684c116720843ce24e208611754
- https://www.npmjs.com/package/brace-expansion
- https://access.redhat.com/security/cve/CVE-2026-13676
- https://www.cve.org/CVERecord?id=CVE-2026-13676
- https://nvd.nist.gov/vuln/detail/CVE-2026-13676
- https://github.com/fastify/fast-uri/security/advisories/GHSA-4c8g-83qw-93j6
- https://access.redhat.com/security/cve/CVE-2026-14257
- https://www.cve.org/CVERecord?id=CVE-2026-14257
- https://nvd.nist.gov/vuln/detail/CVE-2026-14257
- https://github.com/juliangruber/brace-expansion
- https://github.com/juliangruber/brace-expansion/commit/a1bd33999ea75262c4749fff3bbb0d1372bd07b5
- https://access.redhat.com/security/cve/CVE-2026-34986
- https://www.cve.org/CVERecord?id=CVE-2026-34986
- https://nvd.nist.gov/vuln/detail/CVE-2026-34986
- https://github.com/go-jose/go-jose/security/advisories/GHSA-78h2-9frx-2jm8
- https://pkg.go.dev/github.com/go-jose/go-jose/v4#pkg-constants
- https://access.redhat.com/security/cve/CVE-2026-42338
- https://www.cve.org/CVERecord?id=CVE-2026-42338
- https://nvd.nist.gov/vuln/detail/CVE-2026-42338
- https://github.com/beaugunderson/ip-address/security/advisories/GHSA-v2v4-37r5-5v8g
- https://access.redhat.com/security/cve/CVE-2026-42570
- https://www.cve.org/CVERecord?id=CVE-2026-42570
- https://nvd.nist.gov/vuln/detail/CVE-2026-42570
- https://github.com/sveltejs/devalue/commit/206ca6712fbc380a4571c59de9ab04b91110792d
- https://github.com/sveltejs/devalue/releases/tag/v5.8.1
- https://github.com/sveltejs/devalue/security/advisories/GHSA-77vg-94rm-hx3p
- https://access.redhat.com/security/cve/CVE-2026-44705
- https://www.cve.org/CVERecord?id=CVE-2026-44705
- https://nvd.nist.gov/vuln/detail/CVE-2026-44705
- https://github.com/raszi/node-tmp/security/advisories/GHSA-ph9p-34f9-6g65
- https://access.redhat.com/security/cve/CVE-2026-45623
- https://www.cve.org/CVERecord?id=CVE-2026-45623
- https://nvd.nist.gov/vuln/detail/CVE-2026-45623
- https://github.com/postcss/postcss/security/advisories/GHSA-6g55-p6wh-862q
- https://access.redhat.com/security/cve/CVE-2026-45736
- https://www.cve.org/CVERecord?id=CVE-2026-45736
- https://nvd.nist.gov/vuln/detail/CVE-2026-45736
- https://github.com/websockets/ws/commit/c0327ec15a54d701eb6ccefaa8bef328cfc03086
- https://github.com/websockets/ws/security/advisories/GHSA-58qx-3vcg-4xpx
- https://access.redhat.com/security/cve/CVE-2026-45740
- https://www.cve.org/CVERecord?id=CVE-2026-45740
- https://nvd.nist.gov/vuln/detail/CVE-2026-45740
- https://github.com/protobufjs/protobuf.js/security/advisories/GHSA-jggg-4jg4-v7c6
- https://access.redhat.com/security/cve/CVE-2026-48068
- https://www.cve.org/CVERecord?id=CVE-2026-48068
- https://nvd.nist.gov/vuln/detail/CVE-2026-48068
- https://github.com/grpc/grpc-node/security/advisories/GHSA-5375-pq7m-f5r2
- https://access.redhat.com/security/cve/CVE-2026-48779
- https://www.cve.org/CVERecord?id=CVE-2026-48779
- https://nvd.nist.gov/vuln/detail/CVE-2026-48779
- https://github.com/websockets/ws/commit/86d3e8a5fb0246ed373860c5fbb0de88824a27f7
- https://github.com/websockets/ws/commit/b5372ac67bb97a773727b8e9f5035a8123556d53
- https://github.com/websockets/ws/commit/bca91adf15677e47dbe4f959653452727be28b94
- https://github.com/websockets/ws/commit/fd36cd864fcdf62a08273a99e19a7d975401fee8
- https://github.com/websockets/ws/security/advisories/GHSA-96hv-2xvq-fx4p
- https://access.redhat.com/security/cve/CVE-2026-48801
- https://www.cve.org/CVERecord?id=CVE-2026-48801
- https://nvd.nist.gov/vuln/detail/CVE-2026-48801
- https://github.com/markdown-it/linkify-it/commit/6be6d15e0641bf1daeaa977d500cabc743166159
- https://github.com/markdown-it/linkify-it/security/advisories/GHSA-22p9-wv53-3rq4
- https://access.redhat.com/security/cve/CVE-2026-49978
- https://www.cve.org/CVERecord?id=CVE-2026-49978
- https://nvd.nist.gov/vuln/detail/CVE-2026-49978
- https://github.com/cure53/DOMPurify/commit/ca30f070c360df162a3e3848e80e6fd3c9e74bff
- https://github.com/cure53/DOMPurify/releases/tag/3.4.7
- https://github.com/cure53/DOMPurify/security/advisories/GHSA-rp9w-3fw7-7cwq
- https://access.redhat.com/security/cve/CVE-2026-56876
- https://www.cve.org/CVERecord?id=CVE-2026-56876
- https://nvd.nist.gov/vuln/detail/CVE-2026-56876
- https://github.com/ziad626/extract-zip-security-research/security/advisories/GHSA-x7jf-2287-qcpf
- https://raw.githubusercontent.com/cisagov/CSAF/develop/csaf_files/IT/white/2026/va-26-177-01.json
- https://access.redhat.com/security/cve/CVE-2026-59869
- https://www.cve.org/CVERecord?id=CVE-2026-59869
- https://nvd.nist.gov/vuln/detail/CVE-2026-59869
- https://github.com/nodeca/js-yaml/commit/24f13e79ee1343a7e30bd6f6c9d9cdbf0ac9b2b7
- https://github.com/nodeca/js-yaml/commit/59423c6f8cdc78742ac00e25a4dd39ef16b702e4
- https://github.com/nodeca/js-yaml/releases/tag/3.15.0
- https://github.com/nodeca/js-yaml/releases/tag/4.3.0
- https://github.com/nodeca/js-yaml/security/advisories/GHSA-52cp-r559-cp3m
- https://access.redhat.com/security/cve/CVE-2026-59873
- https://www.cve.org/CVERecord?id=CVE-2026-59873
- https://nvd.nist.gov/vuln/detail/CVE-2026-59873
- https://github.com/isaacs/node-tar/commit/2812e9338665659b183aa7226518c307044957d3
- https://github.com/isaacs/node-tar/releases/tag/v7.5.19
- https://github.com/isaacs/node-tar/security/advisories/GHSA-23hp-3jrh-7fpw
- https://access.redhat.com/security/cve/CVE-2026-59874
- https://www.cve.org/CVERecord?id=CVE-2026-59874
- https://nvd.nist.gov/vuln/detail/CVE-2026-59874
- https://github.com/isaacs/node-tar/commit/9e78bf058b2c22dd4d52e00d8922d5c06fc2f7b5
- https://github.com/isaacs/node-tar/releases/tag/v7.5.18
- https://github.com/isaacs/node-tar/security/advisories/GHSA-8x88-c5mf-7j5w
- https://access.redhat.com/security/cve/CVE-2026-59877
- https://www.cve.org/CVERecord?id=CVE-2026-59877
- https://nvd.nist.gov/vuln/detail/CVE-2026-59877
- https://github.com/protobufjs/protobuf.js/commit/10fba6d54815ceecca8a06b9a6db490c8f5d2217
- https://github.com/protobufjs/protobuf.js/commit/fa5c73add738ceb471e74da8cc2f3727c3d0a69f
- https://github.com/protobufjs/protobuf.js/pull/2352
- https://github.com/protobufjs/protobuf.js/releases/tag/protobufjs-v7.6.5
- https://github.com/protobufjs/protobuf.js/releases/tag/protobufjs-v8.6.6
- https://github.com/protobufjs/protobuf.js/security/advisories/GHSA-j3f2-48v5-ccww
- https://access.redhat.com/security/cve/CVE-2026-69152
- https://www.cve.org/CVERecord?id=CVE-2026-69152
- https://nvd.nist.gov/vuln/detail/CVE-2026-69152
- https://github.com/juliangruber/brace-expansion/commit/139d015104e71433ad52a41d19467c48ecbb2c7d
- https://github.com/juliangruber/brace-expansion/commit/1e30c930238d7162802d88a94189182def178dac
- https://github.com/juliangruber/brace-expansion/commit/688a99eeaab02627c2b89ba8ba4821fecfa659cf
- https://github.com/juliangruber/brace-expansion/commit/cb4b9e47cc2ec777c14b2b4492fb431a56f6a031
- https://github.com/juliangruber/brace-expansion/security/advisories/GHSA-rgw5-rvv9-x895
- https://access.redhat.com/security/cve/CVE-2026-69153
- https://www.cve.org/CVERecord?id=CVE-2026-69153
- https://nvd.nist.gov/vuln/detail/CVE-2026-69153
- https://github.com/postcss/postcss/commit/7beca139e70f9075c6b19700fcb00dd8033e5da8
- https://github.com/postcss/postcss/releases/tag/8.5.19
- https://github.com/postcss/postcss/security/advisories/GHSA-fxqj-rqcc-2cmp
- https://access.redhat.com/security/cve/CVE-2026-69192
- https://www.cve.org/CVERecord?id=CVE-2026-69192
- https://nvd.nist.gov/vuln/detail/CVE-2026-69192
- https://github.com/beaugunderson/ip-address/commit/56368cb3d66c73ba0ee9b6b834fd31b22c2fd71e
- https://github.com/beaugunderson/ip-address/releases/tag/v10.3.1
- https://github.com/beaugunderson/ip-address/security/advisories/GHSA-mwp4-54f8-5fhr