redhat
5,618 tracked vulnerabilities.
CVE-2024-6535
MEDIUM
Skupper - Auth Bypass
Jul 17, 2024
CVSS 5.3
EPSS 0.00
CVE-2024-6237
MEDIUM
389 Directory Server - Unauthenticated Denial of Service via Extended Search Request
Jul 09, 2024
CVSS 6.5
EPSS 0.01
CVE-2024-6505
MEDIUM
QEMU - Out-of-bounds Read in virtio-net RSS indirections_table
Jul 05, 2024
CVSS 6.8
EPSS 0.00
CVE-2024-6387
HIGH
OpenSSH - DoS
Jul 01, 2024
CVSS 8.1
EPSS 0.63
CVE-2024-6239
HIGH
Poppler - Denial of Service via Pdfinfo -dests Parameter
Jun 21, 2024
CVSS 7.5
EPSS 0.00
CVE-2024-5891
MEDIUM
Quay - Weak Authentication via OAuth Token
Jun 12, 2024
CVSS 4.2
EPSS 0.00
CVE-2024-5742
MEDIUM
GNU Nano 2.2.0-8.0 - Privilege Escalation via Emergency File Symlink
Jun 12, 2024
CVSS 6.7
EPSS 0.00
CVE-2024-5154
HIGH
cri-o - Path Traversal via Symbolic Link
Jun 12, 2024
CVSS 8.1
EPSS 0.02
CVE-2024-3183
HIGH
Red Hat Enterprise Linux - Use of Password Hash With Insufficient Computational Effort in FreeIPA
Jun 12, 2024
CVSS 8.1
EPSS 0.21
CVE-2024-3049
MEDIUM
Booth < 1.1 - Insufficient Verification of Data Authenticity
Jun 06, 2024
CVSS 5.9
EPSS 0.01
CVE-2024-5037
HIGH
Red Hat OpenShift Container Platform 4.12-4.16 - Authentication Bypass via Forged JWT Token
Jun 05, 2024
CVSS 7.5
EPSS 0.00
CVE-2024-4812
MEDIUM
Katello - Stored Cross-Site Scripting in User Description Field
Jun 05, 2024
CVSS 4.8
EPSS 0.00
CVE-2024-3716
MEDIUM
Red Hat Satellite - Exposure of Sensitive Information via Candlepin Password Leak in Process List
Jun 05, 2024
CVSS 6.2
EPSS 0.00
CVE-2024-3623
MEDIUM
Red Hat Mirror Registry - Plaintext Storage of Database Secret Key
Apr 25, 2024
CVSS 6.5
EPSS 0.00
CVE-2024-3622
HIGH
Red Hat Mirror Registry - Plaintext Password Storage in Configuration Template
Apr 25, 2024
CVSS 8.8
EPSS 0.00
CVE-2024-3508
MEDIUM
Trusted Profile Analyzer - Authenticated Unrestricted Upload of Compressed SBOM Files
Apr 25, 2024
CVSS 4.3
EPSS 0.00
CVE-2024-1102
MEDIUM
jberet < 2.2.1 - Unprotected Credential Exposure via Exception Logging
Apr 25, 2024
CVSS 6.5
EPSS 0.00
CVE-2024-1132
HIGH
Keycloak >=21.1.0 <22.0.10 - Open Redirect via Wildcard Valid Redirect URIs
Apr 17, 2024
CVSS 8.1
EPSS 0.00
CVE-2024-3567
MEDIUM
QEMU 8.1.0-8.2.3 - Denial of Service via SCTP Checksum Calculation
Apr 10, 2024
CVSS 5.5
EPSS 0.00
CVE-2024-0406
MEDIUM
mholt/archiver 3.0.0-4.0.0 - Path Traversal and Arbitrary File Write via Crafted Tar Archive
Apr 06, 2024
CVSS 6.1
EPSS 0.22
CVE-2024-2496
MEDIUM
libvirt - Denial of Service via udevConnectListAllInterfaces NULL Pointer Dereference
Mar 18, 2024
CVSS 5.0
EPSS 0.00
CVE-2024-2002
HIGH
libdwarf >=0.1.0 <0.9.2 - Double Free
Mar 18, 2024
CVSS 7.5
EPSS 0.00
CVE-2024-1725
MEDIUM
OpenShift Virtualization < - Privilege Escalation
Mar 07, 2024
CVSS 6.5
EPSS 0.00
CVE-2024-1722
LOW
Keycloak - Unauthenticated Account Lockout Bypass
Feb 29, 2024
CVSS 3.7
EPSS 0.00
CVE-2024-0560
MEDIUM
3scale - Improper Handling of Insufficient Permissions or Privileges in Token Introspection Policy
Feb 28, 2024
CVSS 6.3
EPSS 0.00
Products
enterprise_linux_desktop 1,928
enterprise_linux_server 1,891
enterprise_linux_workstation 1,845
enterprise_linux 1,780
enterprise_linux_server_aus 1,059
enterprise_linux_eus 780
enterprise_linux_server_tus 768
enterprise_linux_server_eus 622
openshift_container_platform 291
jboss_enterprise_application_platform 243
linux 229
satellite 222
openstack 210
enterprise_linux_hpc_node 146
openshift 146
software_collections 137
virtualization 128
enterprise_linux_for_ibm_z_systems 112
single_sign-on 108
enterprise_linux_for_power_little_endian 106
keycloak 98
enterprise_linux_for_power_little_endian_eus 93
enterprise_linux_for_ibm_z_systems_eus 87
enterprise_linux_workstation_supplementary 86
enterprise_linux_desktop_supplementary 84
enterprise_linux_server_supplementary 84
virtualization_host 84
enterprise_linux_server_supplementary_eus 83
enterprise_linux_hpc_node_eus 81
fedora_core 77
Quick Filters