26 CVEs affecting Rpm products, 0 known to be exploited (CISA KEV), with EPSS scores. Most affected: Rpm, DNF5, Libcomps, Libdnf, Package Manager.