Overly broad permissions can turn one compromised account into a much larger security problem. Learn how to reduce unnecessary access, review privileges, and apply least privilege across modern Linux systems. Review Linux Privileges×
Nuclei is a fast, customizable vulnerability scanner powered by the global
security community and built on a simple YAML-based DSL, enabling collaboration
to tackle trending vulnerabilities on the internet. It helps you find
vulnerabilities in your applications, APIs, networks, DNS, and cloud
configurations.
Update Information:
Update to 3.11.0
* Mon Jul 13 2026 Emir Akdag
[ 1 ] Bug #2458978 - CVE-2026-5160 nuclei: github.com/yuin/goldmark/renderer/html: Cross-site Scripting due to improper URL validation [epel-all]
https://bugzilla.redhat.com/show_bug.cgi?id=2458978
[ 2 ] Bug #2458996 - CVE-2026-5160 nuclei: github.com/yuin/goldmark/renderer/html: Cross-site Scripting due to improper URL validation [fedora-all]
https://bugzilla.redhat.com/show_bug.cgi?id=2458996
[ 3 ] Bug #2459399 - nuclei-3.8.0 is available
https://bugzilla.redhat.com/show_bug.cgi?id=2459399
[ 4 ] Bug #2476565 - CVE-2026-41646 nuclei: Nuclei: Information disclosure via JavaScript template local file access bypass [fedora-all]
https://bugzilla.redhat.com/show_bug.cgi?id=2476565
[ 5 ] Bug #2476566 - CVE-2026-41646 nuclei: Nuclei: Information disclosure via JavaScript template local file access bypass [epel-all]
https://bugzilla.redhat.com/show_bug.cgi?id=2476566
[ 6 ] Bug #2486214 - CVE-2026-45287 nuclei: OpenTelemetry-Go: ...
This update can be installed with the "dnf" update program. Use su -c 'dnf upgrade --advisory FEDORA-2026-3a8abe43fb' at the command line. For more information, refer to the dnf documentation available at http://dnf.readthedocs.io/en/latest/command_ref.html#upgrade-command-label
Get the latest Linux and open source security news straight to your inbox.