Canonical Security Advisories · January 2026 — Canonical Security Advisories
71 advisories 233 CVEs 7 EXPLOITED

Ubuntu Security Notices (USN-NNNN-N) for 2026-01. Mirrored into Vulnetix VDB.

Every advisory below is enriched with the Vulnetix VDB exploit-intelligence chip (hover a CVE ID in the interactive page to see CVSS, EPSS, KEV status, and PoC maturity). 7 are already weaponised in the wild — see the Exploited section.

What would you fix first?

The advisories below are ordered by the Vulnetix risk prioritization strategy: exploitation evidence first, scores second. On the interactive page you can switch to three other lenses.

Advisories

USN-7940-2

USNExploitedCISA KEV listedHIGH2026-01-09

linux-azure-nvidia vulnerabilities

CVEs:CVE-2023-53034CVE-2024-58092CVE-2025-21729CVE-2025-22018CVE-2025-22019CVE-2025-22020CVE-2025-22021CVE-2025-22025CVE-2025-22027CVE-2025-22028CVE-2025-22033CVE-2025-22035CVE-2025-22036CVE-2025-22038CVE-2025-22039CVE-2025-22040CVE-2025-22041CVE-2025-22042CVE-2025-22044CVE-2025-22045CVE-2025-22047CVE-2025-22050CVE-2025-22053CVE-2025-22054CVE-2025-22055CVE-2025-22056CVE-2025-22057CVE-2025-22058CVE-2025-22060CVE-2025-22062CVE-2025-22063CVE-2025-22064CVE-2025-22065CVE-2025-22066CVE-2025-22068CVE-2025-22070CVE-2025-22071CVE-2025-22072CVE-2025-22073CVE-2025-22075CVE-2025-22079CVE-2025-22080CVE-2025-22081CVE-2025-22083CVE-2025-22086CVE-2025-22089CVE-2025-22090CVE-2025-22095CVE-2025-22097CVE-2025-23136CVE-2025-23138CVE-2025-37838CVE-2025-37937CVE-2025-37958CVE-2025-38118CVE-2025-38152CVE-2025-38227CVE-2025-38240CVE-2025-38352CVE-2025-38575CVE-2025-38616CVE-2025-38637CVE-2025-38666CVE-2025-38678CVE-2025-39682CVE-2025-39728CVE-2025-39735CVE-2025-39964CVE-2025-39993CVE-2025-40018CVE-2025-40114CVE-2025-40157CVE-2025-40300

Affected products

ProductStatusVendorPackageEcosystem
linux-azure-nvidia affected Ubuntu:24.04:LTS linux-azure-nvidia —
Upstream advisory

USN-7922-4

USNExploitedCISA KEV listedNONE2026-01-06

linux-raspi, linux-raspi-5.4 vulnerabilities

CVEs:CVE-2022-49026CVE-2022-49390CVE-2024-47691CVE-2024-49935CVE-2024-50067CVE-2024-50095CVE-2024-50196CVE-2024-53090CVE-2024-53218CVE-2025-21855CVE-2025-37958CVE-2025-38666CVE-2025-39964CVE-2025-39993CVE-2025-40018

Affected products

ProductStatusVendorPackageEcosystem
linux-raspi affected Ubuntu:Pro:20.04:LTS linux-raspi —
linux-raspi-5.4 affected Ubuntu:Pro:18.04:LTS linux-raspi-5.4 —
Upstream advisory

USN-7944-1

USNActive exploitation (sightings)MEDIUM2026-01-07

net-snmp vulnerability

CVEs:CVE-2025-68615

Affected products

ProductStatusVendorPackageEcosystem
net-snmp affected Ubuntu:Pro:20.04:LTS net-snmp —
net-snmp affected Ubuntu:22.04:LTS net-snmp —
net-snmp affected Ubuntu:Pro:16.04:LTS net-snmp —
net-snmp affected Ubuntu:25.10 net-snmp —
net-snmp affected Ubuntu:24.04:LTS net-snmp —
net-snmp affected Ubuntu:Pro:18.04:LTS net-snmp —
net-snmp affected Ubuntu:Pro:14.04:LTS net-snmp —
Upstream advisory

USN-7958-1

USNActive exploitation (sightings)CRITICAL2026-01-14

angular.js vulnerabilities

CVEs:CVE-2019-14863CVE-2022-25844CVE-2023-26116CVE-2023-26117CVE-2023-26118CVE-2024-8372CVE-2024-8373CVE-2024-21490CVE-2025-0716CVE-2025-2336

Affected products

ProductStatusVendorPackageEcosystem
angular.js affected Ubuntu:24.04:LTS angular.js —
angular.js affected Ubuntu:Pro:18.04:LTS angular.js —
angular.js affected Ubuntu:Pro:20.04:LTS angular.js —
angular.js affected Ubuntu:Pro:16.04:LTS angular.js —
angular.js affected Ubuntu:22.04:LTS angular.js —
Upstream advisory

USN-7943-1

USNActive exploitation (sightings)HIGH2026-01-07

libcaca vulnerability

CVEs:CVE-2022-0856

Affected products

ProductStatusVendorPackageEcosystem
libcaca affected Ubuntu:24.04:LTS libcaca —
libcaca affected Ubuntu:Pro:14.04:LTS libcaca —
libcaca affected Ubuntu:Pro:18.04:LTS libcaca —
libcaca affected Ubuntu:Pro:20.04:LTS libcaca —
libcaca affected Ubuntu:Pro:16.04:LTS libcaca —
libcaca affected Ubuntu:22.04:LTS libcaca —
libcaca affected Ubuntu:25.10 libcaca —
Upstream advisory

USN-7977-1

USNActive exploitation (sightings)CRITICAL2026-01-26

git-lfs vulnerabilities

CVEs:CVE-2024-53263CVE-2025-26625

Affected products

ProductStatusVendorPackageEcosystem
git-lfs affected Ubuntu:Pro:22.04:LTS git-lfs —
git-lfs affected Ubuntu:25.10 git-lfs —
git-lfs affected Ubuntu:Pro:18.04:LTS git-lfs —
git-lfs affected Ubuntu:Pro:20.04:LTS git-lfs —
git-lfs affected Ubuntu:Pro:24.04:LTS git-lfs —
Upstream advisory

USN-7985-1

USNActive exploitation (sightings)HIGH2026-01-29

texlive-bin vulnerabilities

CVEs:CVE-2022-24106CVE-2022-24107CVE-2023-32668CVE-2024-25262

Affected products

ProductStatusVendorPackageEcosystem
texlive-bin affected Ubuntu:22.04:LTS texlive-bin —
texlive-bin affected Ubuntu:Pro:16.04:LTS texlive-bin —
texlive-bin affected Ubuntu:Pro:18.04:LTS texlive-bin —
texlive-bin affected Ubuntu:Pro:20.04:LTS texlive-bin —
Upstream advisory

USN-7948-1

USNActive exploitation (sightings)CRITICAL2026-01-08

gpsd vulnerabilities

CVEs:CVE-2025-67268CVE-2025-67269

Affected products

ProductStatusVendorPackageEcosystem
gpsd affected Ubuntu:22.04:LTS gpsd —
gpsd affected Ubuntu:25.10 gpsd —
gpsd affected Ubuntu:24.04:LTS gpsd —
Upstream advisory

USN-7973-1

USNActive exploitation (sightings)CRITICAL2026-01-23

cjson vulnerabilities

CVEs:CVE-2023-26819CVE-2023-53154CVE-2025-57052

Affected products

ProductStatusVendorPackageEcosystem
cjson affected Ubuntu:22.04:LTS cjson —
cjson affected Ubuntu:Pro:20.04:LTS cjson —
cjson affected Ubuntu:25.10 cjson —
cjson affected Ubuntu:Pro:24.04:LTS cjson —
Upstream advisory

USN-7952-1

USNActive exploitation (sightings)CRITICAL2026-01-12

libheif vulnerabilities

CVEs:CVE-2024-25269CVE-2025-68431

Affected products

ProductStatusVendorPackageEcosystem
libheif affected Ubuntu:25.10 libheif —
libheif affected Ubuntu:24.04:LTS libheif —
libheif affected Ubuntu:Pro:22.04:LTS libheif —
libheif affected Ubuntu:Pro:18.04:LTS libheif —
libheif affected Ubuntu:Pro:20.04:LTS libheif —
Upstream advisory

USN-7950-1

USNActive exploitation (sightings)CRITICAL2026-01-08

python-tornado vulnerabilities

CVEs:CVE-2025-67724CVE-2025-67725CVE-2025-67726

Affected products

ProductStatusVendorPackageEcosystem
python-tornado affected Ubuntu:Pro:18.04:LTS python-tornado —
python-tornado affected Ubuntu:24.04:LTS python-tornado —
python-tornado affected Ubuntu:Pro:22.04:LTS python-tornado —
python-tornado affected Ubuntu:Pro:20.04:LTS python-tornado —
python-tornado affected Ubuntu:Pro:16.04:LTS python-tornado —
python-tornado affected Ubuntu:25.10 python-tornado —
Upstream advisory

UBUNTU-CVE-2020-36969

USNActive exploitation (sightings)HIGH2026-01-28

CVEs:CVE-2020-36969

Affected products

ProductStatusVendorPackageEcosystem
monit affected Ubuntu:Pro:14.04:LTS monit —
monit affected Ubuntu:Pro:16.04:LTS monit —
monit affected Ubuntu:24.04:LTS monit —
monit affected Ubuntu:Pro:20.04:LTS monit —
monit affected Ubuntu:Pro:22.04:LTS monit —
monit affected Ubuntu:Pro:18.04:LTS monit —
monit affected Ubuntu:25.10 monit —
Upstream advisory

UBUNTU-CVE-2020-37011

USNActive exploitation (sightings)HIGH2026-01-29

CVEs:CVE-2020-37011

Affected products

ProductStatusVendorPackageEcosystem
gnome-font-viewer affected Ubuntu:18.04:LTS gnome-font-viewer —
gnome-font-viewer affected Ubuntu:20.04:LTS gnome-font-viewer —
gnome-font-viewer affected Ubuntu:16.04:LTS gnome-font-viewer —
gnome-font-viewer affected Ubuntu:22.04:LTS gnome-font-viewer —
gnome-font-viewer affected Ubuntu:24.04:LTS gnome-font-viewer —
gnome-font-viewer affected Ubuntu:25.10 gnome-font-viewer —
Upstream advisory

USN-7967-1

USNActive exploitation (sightings)CRITICAL2026-01-19

avahi vulnerabilities

CVEs:CVE-2025-68276CVE-2025-68468CVE-2025-68471

Affected products

ProductStatusVendorPackageEcosystem
avahi affected Ubuntu:24.04:LTS avahi —
avahi affected Ubuntu:25.10 avahi —
avahi affected Ubuntu:22.04:LTS avahi —
avahi affected Ubuntu:Pro:20.04:LTS avahi —
avahi affected Ubuntu:Pro:18.04:LTS avahi —
avahi affected Ubuntu:Pro:16.04:LTS avahi —
avahi affected Ubuntu:Pro:14.04:LTS avahi —
Upstream advisory

USN-7982-1

USNActive exploitation (sightings)CRITICAL2026-01-27

ffmpeg vulnerabilities

CVEs:CVE-2025-59728CVE-2025-59731CVE-2025-59732CVE-2025-59733CVE-2025-63757

Affected products

ProductStatusVendorPackageEcosystem
ffmpeg affected Ubuntu:Pro:22.04:LTS ffmpeg —
ffmpeg affected Ubuntu:25.10 ffmpeg —
ffmpeg affected Ubuntu:Pro:16.04:LTS ffmpeg —
ffmpeg affected Ubuntu:Pro:24.04:LTS ffmpeg —
ffmpeg affected Ubuntu:Pro:20.04:LTS ffmpeg —
ffmpeg affected Ubuntu:Pro:18.04:LTS ffmpeg —
Upstream advisory

USN-7965-1

USNActive exploitation (sightings)CRITICAL2026-01-15

simgear vulnerability

CVEs:CVE-2025-0781

Affected products

ProductStatusVendorPackageEcosystem
simgear affected Ubuntu:Pro:22.04:LTS simgear —
simgear affected Ubuntu:Pro:20.04:LTS simgear —
simgear affected Ubuntu:Pro:18.04:LTS simgear —
simgear affected Ubuntu:Pro:24.04:LTS simgear —
simgear affected Ubuntu:Pro:16.04:LTS simgear —
Upstream advisory

USN-7962-1

USNActive exploitation (sightings)NONE2026-01-14

cpp-httplib vulnerability

CVEs:CVE-2025-66570

Affected products

ProductStatusVendorPackageEcosystem
cpp-httplib affected Ubuntu:Pro:22.04:LTS cpp-httplib —
cpp-httplib affected Ubuntu:Pro:24.04:LTS cpp-httplib —
cpp-httplib affected Ubuntu:25.10 cpp-httplib —
Upstream advisory

USN-7961-1

USNActive exploitation (sightings)NONE2026-01-14

erlang vulnerability

CVEs:CVE-2024-53846

Affected products

ProductStatusVendorPackageEcosystem
erlang affected Ubuntu:24.04:LTS erlang —
Upstream advisory

USN-7972-1

USNActive exploitation (sightings)HIGH2026-01-21

opencc vulnerability

CVEs:CVE-2025-15536

Affected products

ProductStatusVendorPackageEcosystem
opencc affected Ubuntu:22.04:LTS opencc —
opencc affected Ubuntu:24.04:LTS opencc —
opencc affected Ubuntu:25.10 opencc —
Upstream advisory

USN-7981-1

USNActive exploitation (sightings)CRITICAL2026-01-27

wlc vulnerabilities

CVEs:CVE-2026-22250CVE-2026-22251

Affected products

ProductStatusVendorPackageEcosystem
wlc affected Ubuntu:Pro:22.04:LTS wlc —
wlc affected Ubuntu:25.10 wlc —
wlc affected Ubuntu:Pro:20.04:LTS wlc —
wlc affected Ubuntu:Pro:18.04:LTS wlc —
wlc affected Ubuntu:Pro:24.04:LTS wlc —
Upstream advisory

USN-7949-1

USNActive exploitation (sightings)2026-01-08

libsodium vulnerability

CVEs:CVE-2025-69277

Affected products

ProductStatusVendorPackageEcosystem
libsodium affected Ubuntu:25.10 libsodium —
libsodium affected Ubuntu:22.04:LTS libsodium —
libsodium affected Ubuntu:24.04:LTS libsodium —
Upstream advisory

USN-7959-1

USNPoC exploitCRITICAL2026-01-14

klibc vulnerabilities

CVEs:CVE-2016-9843

Affected products

ProductStatusVendorPackageEcosystem
klibc affected Ubuntu:25.10 klibc —
klibc affected Ubuntu:Pro:20.04:LTS klibc —
klibc affected Ubuntu:Pro:16.04:LTS klibc —
klibc affected Ubuntu:24.04:LTS klibc —
klibc affected Ubuntu:Pro:14.04:LTS klibc —
klibc affected Ubuntu:22.04:LTS klibc —
klibc affected Ubuntu:Pro:18.04:LTS klibc —
Upstream advisory

USN-7955-2

USNPoC exploitCRITICAL2026-01-19

python-urllib3 regression

CVEs:CVE-2026-21441

Affected products

ProductStatusVendorPackageEcosystem
python-urllib3 affected Ubuntu:Pro:20.04:LTS python-urllib3 —
python-urllib3 affected Ubuntu:22.04:LTS python-urllib3 —
Upstream advisory

USN-7955-1

USNPoC exploitCRITICAL2026-01-12

python-urllib3 vulnerability

CVEs:CVE-2026-21441

Affected products

ProductStatusVendorPackageEcosystem
python-urllib3 affected Ubuntu:25.10 python-urllib3 —
python-urllib3 affected Ubuntu:24.04:LTS python-urllib3 —
python-urllib3 affected Ubuntu:Pro:20.04:LTS python-urllib3 —
python-urllib3 affected Ubuntu:22.04:LTS python-urllib3 —
Upstream advisory

USN-7954-1

USNPoC exploitHIGH2026-01-12

libtasn1-6 vulnerabilities

CVEs:CVE-2021-46848CVE-2025-13151

Affected products

ProductStatusVendorPackageEcosystem
libtasn1-6 affected Ubuntu:25.10 libtasn1-6 —
libtasn1-6 affected Ubuntu:24.04:LTS libtasn1-6 —
libtasn1-6 affected Ubuntu:22.04:LTS libtasn1-6 —
Upstream advisory

USN-7976-1

USNPoC exploitNONE2026-01-26

node-form-data vulnerability

CVEs:CVE-2025-7783

Affected products

ProductStatusVendorPackageEcosystem
node-form-data affected Ubuntu:24.04:LTS node-form-data —
node-form-data affected Ubuntu:Pro:18.04:LTS node-form-data —
node-form-data affected Ubuntu:Pro:16.04:LTS node-form-data —
node-form-data affected Ubuntu:Pro:20.04:LTS node-form-data —
node-form-data affected Ubuntu:Pro:14.04:LTS node-form-data —
node-form-data affected Ubuntu:Pro:22.04:LTS node-form-data —
Upstream advisory

USN-7951-1

USNPoC exploit2026-01-12

python3.8, python3.9, python3.10, python3.11, python3.12, python3.13, python3.14 vulnerability

CVEs:CVE-2025-13836

Affected products

ProductStatusVendorPackageEcosystem
python3.10 affected Ubuntu:22.04:LTS python3.10 —
python3.11 affected Ubuntu:Pro:22.04:LTS python3.11 —
python3.12 affected Ubuntu:24.04:LTS python3.12 —
python3.13 affected Ubuntu:25.10 python3.13 —
python3.14 affected Ubuntu:25.10 python3.14 —
python3.8 affected Ubuntu:Pro:20.04:LTS python3.8 —
python3.8 affected Ubuntu:Pro:18.04:LTS python3.8 —
python3.9 affected Ubuntu:Pro:20.04:LTS python3.9 —
Upstream advisory

USN-7945-1

USNPoC exploitHIGH2026-01-07

libxslt vulnerability

CVEs:CVE-2025-7424

Affected products

ProductStatusVendorPackageEcosystem
libxslt affected Ubuntu:22.04:LTS libxslt —
libxslt affected Ubuntu:Pro:20.04:LTS libxslt —
libxslt affected Ubuntu:24.04:LTS libxslt —
libxslt affected Ubuntu:Pro:14.04:LTS libxslt —
libxslt affected Ubuntu:Pro:16.04:LTS libxslt —
libxslt affected Ubuntu:Pro:18.04:LTS libxslt —
Upstream advisory

USN-7974-1

USNPoC exploitCRITICAL2026-01-22

libxml2 vulnerabilities

CVEs:CVE-2025-8732CVE-2026-0989CVE-2026-0990CVE-2026-0992

Affected products

ProductStatusVendorPackageEcosystem
libxml2 affected Ubuntu:22.04:LTS libxml2 —
libxml2 affected Ubuntu:Pro:20.04:LTS libxml2 —
libxml2 affected Ubuntu:Pro:18.04:LTS libxml2 —
libxml2 affected Ubuntu:Pro:16.04:LTS libxml2 —
libxml2 affected Ubuntu:Pro:14.04:LTS libxml2 —
libxml2 affected Ubuntu:24.04:LTS libxml2 —
libxml2 affected Ubuntu:25.10 libxml2 —
Upstream advisory

USN-7980-2

USNPoC exploitHIGH2026-01-27

openssl, openssl1.0 vulnerabilities

CVEs:CVE-2025-68160CVE-2025-69418CVE-2025-69419CVE-2025-69420CVE-2025-69421CVE-2026-22795CVE-2026-22796

Affected products

ProductStatusVendorPackageEcosystem
openssl affected Ubuntu:Pro:14.04:LTS openssl —
openssl affected Ubuntu:Pro:20.04:LTS openssl —
openssl affected Ubuntu:Pro:16.04:LTS openssl —
openssl affected Ubuntu:Pro:18.04:LTS openssl —
openssl1.0 affected Ubuntu:Pro:18.04:LTS openssl1.0 —
Upstream advisory

USN-7960-1

USNPoC exploitHIGH2026-01-14

ruby-rack vulnerabilities

CVEs:CVE-2025-59830CVE-2025-61770CVE-2025-61771CVE-2025-61772CVE-2025-61780CVE-2025-61919

Affected products

ProductStatusVendorPackageEcosystem
ruby-rack affected Ubuntu:24.04:LTS ruby-rack —
ruby-rack affected Ubuntu:Pro:20.04:LTS ruby-rack —
ruby-rack affected Ubuntu:22.04:LTS ruby-rack —
ruby-rack affected Ubuntu:Pro:16.04:LTS ruby-rack —
ruby-rack affected Ubuntu:Pro:18.04:LTS ruby-rack —
ruby-rack affected Ubuntu:25.10 ruby-rack —
Upstream advisory

USN-7975-1

USNPoC exploitHIGH2026-01-22

pyasn1 vulnerability

CVEs:CVE-2026-23490

Affected products

ProductStatusVendorPackageEcosystem
pyasn1 affected Ubuntu:24.04:LTS pyasn1 —
pyasn1 affected Ubuntu:25.10 pyasn1 —
pyasn1 affected Ubuntu:22.04:LTS pyasn1 —
Upstream advisory

LSN-0117-1

USNPoC exploit2026-01-29

Kernel Live Patch Security Notice

CVEs:CVE-2022-49026CVE-2022-49390CVE-2024-46827CVE-2024-50090CVE-2024-53217CVE-2024-58083CVE-2025-21647CVE-2025-21692CVE-2025-21704CVE-2025-21715CVE-2025-22036

Affected products

ProductStatusVendorPackageEcosystem
linux affected Ubuntu:Pro:18.04:LTS linux —
linux affected Ubuntu:Pro:22.04:LTS linux —
linux affected Ubuntu:Pro:24.04:LTS linux —
linux affected Ubuntu:Pro:20.04:LTS linux —
linux-aws affected Ubuntu:Pro:18.04:LTS linux-aws —
linux-aws affected Ubuntu:Pro:22.04:LTS linux-aws —
linux-aws affected Ubuntu:Pro:20.04:LTS linux-aws —
linux-aws affected Ubuntu:Pro:24.04:LTS linux-aws —
linux-aws-5.15 affected Ubuntu:Pro:20.04:LTS linux-aws-5.15 —
linux-azure affected Ubuntu:Pro:24.04:LTS linux-azure —
linux-azure affected Ubuntu:Pro:22.04:LTS linux-azure —
linux-azure-4.15 affected Ubuntu:Pro:18.04:LTS linux-azure-4.15 —
linux-azure-5.15 affected Ubuntu:Pro:20.04:LTS linux-azure-5.15 —
linux-gcp affected Ubuntu:Pro:24.04:LTS linux-gcp —
linux-gcp affected Ubuntu:Pro:22.04:LTS linux-gcp —
linux-gcp-4.15 affected Ubuntu:Pro:18.04:LTS linux-gcp-4.15 —
linux-gcp-5.15 affected Ubuntu:Pro:20.04:LTS linux-gcp-5.15 —
linux-hwe-5.15 affected Ubuntu:Pro:20.04:LTS linux-hwe-5.15 —
linux-hwe-5.4 affected Ubuntu:Pro:18.04:LTS linux-hwe-5.4 —
linux-ibm affected Ubuntu:Pro:24.04:LTS linux-ibm —
linux-ibm-5.15 affected Ubuntu:Pro:20.04:LTS linux-ibm-5.15 —
linux-lowlatency-hwe-5.15 affected Ubuntu:Pro:20.04:LTS linux-lowlatency-hwe-5.15 —
linux-oracle affected Ubuntu:Pro:24.04:LTS linux-oracle —
linux-oracle affected Ubuntu:Pro:18.04:LTS linux-oracle —
linux-oracle affected Ubuntu:Pro:22.04:LTS linux-oracle —
linux-oracle-5.15 affected Ubuntu:Pro:20.04:LTS linux-oracle-5.15 —
Upstream advisory

USN-7953-1

USNPoC exploitHIGH2026-01-12

php7.2, php7.4, php8.1, php8.3, php8.4 vulnerabilities

CVEs:CVE-2025-14177CVE-2025-14178CVE-2025-14180

Affected products

ProductStatusVendorPackageEcosystem
php7.2 affected Ubuntu:Pro:18.04:LTS php7.2 —
php7.4 affected Ubuntu:Pro:20.04:LTS php7.4 —
php8.1 affected Ubuntu:22.04:LTS php8.1 —
php8.3 affected Ubuntu:24.04:LTS php8.3 —
php8.4 affected Ubuntu:25.10 php8.4 —
Upstream advisory

USN-7927-3

USNPoC exploitCRITICAL2026-01-13

python-urllib3 regression

CVEs:CVE-2025-66471

Affected products

ProductStatusVendorPackageEcosystem
python-urllib3 affected Ubuntu:25.10 python-urllib3 —
python-urllib3 affected Ubuntu:24.04:LTS python-urllib3 —
Upstream advisory

USN-7927-2

USNPoC exploitCRITICAL2026-01-12

python-urllib3 regression

CVEs:CVE-2025-66471

Affected products

ProductStatusVendorPackageEcosystem
python-urllib3 affected Ubuntu:25.10 python-urllib3 —
python-urllib3 affected Ubuntu:24.04:LTS python-urllib3 —
Upstream advisory

USN-7956-1

USNPoC exploitHIGH2026-01-13

google-guest-agent vulnerability

CVEs:CVE-2025-58181

Affected products

ProductStatusVendorPackageEcosystem
google-guest-agent affected Ubuntu:22.04:LTS google-guest-agent —
google-guest-agent affected Ubuntu:Pro:20.04:LTS google-guest-agent —
google-guest-agent affected Ubuntu:24.04:LTS google-guest-agent —
google-guest-agent affected Ubuntu:Pro:18.04:LTS google-guest-agent —
google-guest-agent affected Ubuntu:25.10 google-guest-agent —
google-guest-agent affected Ubuntu:Pro:16.04:LTS google-guest-agent —
Upstream advisory

USN-7971-1

USNPoC exploitCRITICAL2026-01-21

glib2.0 vulnerability

CVEs:CVE-2026-0988

Affected products

ProductStatusVendorPackageEcosystem
glib2.0 affected Ubuntu:22.04:LTS glib2.0 —
glib2.0 affected Ubuntu:24.04:LTS glib2.0 —
glib2.0 affected Ubuntu:25.10 glib2.0 —
Upstream advisory

USN-7990-2

USNPoC exploit2026-01-30

linux-aws-fips, linux-fips, linux-gcp-fips vulnerabilities

CVEs:CVE-2022-49698CVE-2025-21726CVE-2025-40019

Affected products

ProductStatusVendorPackageEcosystem
linux-aws-fips affected Ubuntu:Pro:FIPS-updates:20.04:LTS linux-aws-fips —
linux-fips affected Ubuntu:Pro:FIPS-updates:20.04:LTS linux-fips —
linux-gcp-fips affected Ubuntu:Pro:FIPS-updates:20.04:LTS linux-gcp-fips —
Upstream advisory

USN-7990-1

USNPoC exploit2026-01-30

linux, linux-aws, linux-aws-5.4, linux-gcp, linux-gcp-5.4, linux-hwe-5.4, linux-ibm, linux-ibm-5.4, linux-iot, linux-kvm vulnerabilities

CVEs:CVE-2022-49698CVE-2025-21726CVE-2025-40019

Affected products

ProductStatusVendorPackageEcosystem
linux affected Ubuntu:Pro:20.04:LTS linux —
linux-aws affected Ubuntu:Pro:20.04:LTS linux-aws —
linux-aws-5.4 affected Ubuntu:Pro:18.04:LTS linux-aws-5.4 —
linux-gcp affected Ubuntu:Pro:20.04:LTS linux-gcp —
linux-gcp-5.4 affected Ubuntu:Pro:18.04:LTS linux-gcp-5.4 —
linux-hwe-5.4 affected Ubuntu:Pro:18.04:LTS linux-hwe-5.4 —
linux-ibm affected Ubuntu:Pro:20.04:LTS linux-ibm —
linux-ibm-5.4 affected Ubuntu:Pro:18.04:LTS linux-ibm-5.4 —
linux-iot affected Ubuntu:Pro:20.04:LTS linux-iot —
linux-kvm affected Ubuntu:Pro:20.04:LTS linux-kvm —
Upstream advisory

USN-7988-1

USNPoC exploit2026-01-29

linux, linux-aws, linux-aws-hwe, linux-hwe, linux-kvm, linux-oracle vulnerabilities

CVEs:CVE-2022-48986CVE-2024-27078CVE-2024-49959CVE-2024-50195CVE-2024-56606CVE-2024-56756CVE-2025-39993

Affected products

ProductStatusVendorPackageEcosystem
linux affected Ubuntu:Pro:18.04:LTS linux —
linux-aws affected Ubuntu:Pro:18.04:LTS linux-aws —
linux-aws-hwe affected Ubuntu:Pro:16.04:LTS linux-aws-hwe —
linux-hwe affected Ubuntu:Pro:16.04:LTS linux-hwe —
linux-kvm affected Ubuntu:Pro:18.04:LTS linux-kvm —
linux-oracle affected Ubuntu:Pro:18.04:LTS linux-oracle —
linux-oracle affected Ubuntu:Pro:16.04:LTS linux-oracle —
Upstream advisory

USN-7987-1

USNPoC exploitNONE2026-01-29

linux, linux-aws, linux-kvm, linux-lts-xenial vulnerabilities

CVEs:CVE-2021-47485CVE-2024-49959CVE-2024-50195CVE-2024-53164CVE-2024-56606CVE-2025-39993

Affected products

ProductStatusVendorPackageEcosystem
linux affected Ubuntu:Pro:16.04:LTS linux —
linux-aws affected Ubuntu:Pro:14.04:LTS linux-aws —
linux-aws affected Ubuntu:Pro:16.04:LTS linux-aws —
linux-kvm affected Ubuntu:Pro:16.04:LTS linux-kvm —
linux-lts-xenial affected Ubuntu:Pro:14.04:LTS linux-lts-xenial —
Upstream advisory

USN-7983-1

USNPoC exploitHIGH2026-01-29

containerd, containerd-app vulnerabilities

CVEs:CVE-2024-25621CVE-2025-64329

Affected products

ProductStatusVendorPackageEcosystem
containerd affected Ubuntu:22.04:LTS containerd —
containerd affected Ubuntu:Pro:16.04:LTS containerd —
containerd affected Ubuntu:Pro:18.04:LTS containerd —
containerd affected Ubuntu:Pro:20.04:LTS containerd —
containerd affected Ubuntu:25.10 containerd —
containerd affected Ubuntu:Pro:24.04:LTS containerd —
containerd-app affected Ubuntu:Pro:22.04:LTS containerd-app —
containerd-app affected Ubuntu:24.04:LTS containerd-app —
containerd-app affected Ubuntu:Pro:20.04:LTS containerd-app —
containerd-app affected Ubuntu:25.10 containerd-app —
Upstream advisory

USN-7946-2

USNPoC exploitCRITICAL2026-01-08

gnupg vulnerability

CVEs:CVE-2025-68973

Affected products

ProductStatusVendorPackageEcosystem
gnupg affected Ubuntu:Pro:14.04:LTS gnupg —
gnupg affected Ubuntu:Pro:16.04:LTS gnupg —
Upstream advisory

USN-7946-1

USNPoC exploitCRITICAL2026-01-08

gnupg2 vulnerability

CVEs:CVE-2025-68973

Affected products

ProductStatusVendorPackageEcosystem
gnupg2 affected Ubuntu:Pro:18.04:LTS gnupg2 —
gnupg2 affected Ubuntu:Pro:20.04:LTS gnupg2 —
gnupg2 affected Ubuntu:25.10 gnupg2 —
gnupg2 affected Ubuntu:22.04:LTS gnupg2 —
gnupg2 affected Ubuntu:Pro:16.04:LTS gnupg2 —
gnupg2 affected Ubuntu:24.04:LTS gnupg2 —
Upstream advisory

USN-7969-1

USNCoalition ESS < 30%CRITICAL2026-01-19

crawl vulnerability

CVEs:CVE-2020-11722

Affected products

ProductStatusVendorPackageEcosystem
crawl affected Ubuntu:Pro:20.04:LTS crawl —
crawl affected Ubuntu:Pro:18.04:LTS crawl —
crawl affected Ubuntu:Pro:16.04:LTS crawl —
Upstream advisory

UBUNTU-CVE-2020-36968

USNCoalition ESS < 30%HIGH2026-01-28

CVEs:CVE-2020-36968

Affected products

ProductStatusVendorPackageEcosystem
monit affected Ubuntu:Pro:14.04:LTS monit —
monit affected Ubuntu:Pro:16.04:LTS monit —
monit affected Ubuntu:24.04:LTS monit —
monit affected Ubuntu:Pro:20.04:LTS monit —
monit affected Ubuntu:Pro:22.04:LTS monit —
monit affected Ubuntu:Pro:18.04:LTS monit —
monit affected Ubuntu:25.10 monit —
Upstream advisory

UBUNTU-CVE-2020-37038

USNCoalition ESS < 30%HIGH2026-01-30

CVEs:CVE-2020-37038

Affected products

ProductStatusVendorPackageEcosystem
codeblocks affected Ubuntu:25.10 codeblocks —
codeblocks affected Ubuntu:18.04:LTS codeblocks —
codeblocks affected Ubuntu:22.04:LTS codeblocks —
codeblocks affected Ubuntu:24.04:LTS codeblocks —
codeblocks affected Ubuntu:20.04:LTS codeblocks —
codeblocks affected Ubuntu:16.04:LTS codeblocks —
Upstream advisory

UBUNTU-CVE-2020-37040

USNCoalition ESS < 30%HIGH2026-01-30

CVEs:CVE-2020-37040

Affected products

ProductStatusVendorPackageEcosystem
codeblocks affected Ubuntu:25.10 codeblocks —
codeblocks affected Ubuntu:18.04:LTS codeblocks —
codeblocks affected Ubuntu:22.04:LTS codeblocks —
codeblocks affected Ubuntu:24.04:LTS codeblocks —
codeblocks affected Ubuntu:20.04:LTS codeblocks —
codeblocks affected Ubuntu:16.04:LTS codeblocks —
Upstream advisory

USN-7916-2

USNCoalition ESS < 30%HIGH2026-01-15

python-apt regression

CVEs:CVE-2025-6966

Affected products

ProductStatusVendorPackageEcosystem
python-apt affected Ubuntu:Pro:20.04:LTS python-apt —
Upstream advisory

USN-7984-1

USNAll remaining2026-01-29

pagure vulnerabilities

Affected products

ProductStatusVendorPackageEcosystem
pagure affected Ubuntu:24.04:LTS pagure —
pagure affected Ubuntu:22.04:LTS pagure —
pagure affected Ubuntu:Pro:20.04:LTS pagure —
Upstream advisory

USN-7979-1

USNAll remaining2026-01-27

jaraco.context vulnerability

Affected products

ProductStatusVendorPackageEcosystem
jaraco.context affected Ubuntu:25.10 jaraco.context —
Upstream advisory

Need live exploit intelligence?

Every CVE above is indexed in the Vulnetix VDB with KEV, EPSS, and PoC maturity. The interactive page surfaces that on hover.