redhat

5,618 tracked vulnerabilities.

CVE-2022-3697 HIGH
Ansible amazon.aws Collection - Sensitive Information Exposure via tower_callback Parameter
Oct 28, 2022
CVSS 7.5
EPSS 0.00
CVE-2022-3644 MEDIUM
pulp_ansible - Insufficiently Protected Credentials via Plaintext Token Storage
Oct 25, 2022
CVSS 5.5
EPSS 0.00
CVE-2022-2805 MEDIUM
Red Hat Virtualization - Cleartext Storage of Sensitive Information in Log Files
Oct 19, 2022
CVSS 6.5
EPSS 0.00
CVE-2022-1414 HIGH
3scale API Management 2 - Authenticated Cross-Site Scripting via Inadequate Input Sanitization
Oct 19, 2022
CVSS 8.8
EPSS 0.01
CVE-2022-2963 HIGH
jasper - Use-After-Free in cmdopts_parse
Oct 14, 2022
CVSS 7.5
EPSS 0.00
CVE-2022-2850 MEDIUM
389-ds-base - Denial of Service
Oct 14, 2022
CVSS 6.5
EPSS 0.00
CVE-2022-3205 MEDIUM
Red Hat Ansible Automation Platform <2.0 - XSS
Sep 13, 2022
CVSS 4.6
EPSS 0.01
CVE-2022-2990 HIGH
buildah < 1.27.1 - Incorrect Supplementary Group Assignment
Sep 13, 2022
CVSS 7.1
EPSS 0.00
CVE-2022-2989 HIGH
Podman - Incorrect Supplementary Group Assignment
Sep 13, 2022
CVSS 7.1
EPSS 0.00
CVE-2022-1278 HIGH
WildFly < 27.0.0 - Information Exposure via Trace Payload
Sep 13, 2022
CVSS 7.5
EPSS 0.00
CVE-2022-2964 HIGH
Linux Kernel >=4.20 <5.4.180 - Memory Corruption in ASIX AX88179_178A USB Ethernet Driver
Sep 09, 2022
CVSS 7.8
EPSS 0.00
CVE-2022-2905 MEDIUM
Linux Kernel < 6.0 - Out-of-bounds Read in BPF Tail Call Function
Sep 09, 2022
CVSS 5.5
EPSS 0.00
CVE-2022-25310 MEDIUM
Fribidi < 1.0.12 - Denial of Service via fribidi_remove_bidi_marks()
Sep 06, 2022
CVSS 5.5
EPSS 0.00
CVE-2022-25309 MEDIUM
Fribidi < 1.0.12 - Heap-based Buffer Overflow in fribidi_cap_rtl_to_unicode
Sep 06, 2022
CVSS 5.5
EPSS 0.00
CVE-2022-25308 HIGH
Fribidi < 1.0.12 - Stack-based Buffer Overflow
Sep 06, 2022
CVSS 7.8
EPSS 0.00
CVE-2022-23451 HIGH
openstack-barbican < 14.0.0 - Authenticated Incorrect Authorization in Secret Metadata API
Sep 06, 2022
CVSS 8.1
EPSS 0.00
CVE-2022-2764 MEDIUM
Redhat Integration Camel K < 2.2.19 - Denial of Service
Sep 01, 2022
CVSS 4.9
EPSS 0.00
CVE-2022-2739 MEDIUM
Red Hat Enterprise Linux 7 Extras Podman - Exposure of Sensitive Information via Environment Variables
Sep 01, 2022
CVSS 5.3
EPSS 0.00
CVE-2022-2738 HIGH
Red Hat Enterprise Linux Server and Workstation - Use-After-Free in Podman GPGME Wrapper
Sep 01, 2022
CVSS 7.5
EPSS 0.01
CVE-2022-2639 HIGH
Openvswitch kernel module - Memory Corruption
Sep 01, 2022
CVSS 7.8
EPSS 0.01
CVE-2022-2447 MEDIUM
Keystone - Time-of-Check Time-of-Use Race Condition in Token Revocation
Sep 01, 2022
CVSS 6.6
EPSS 0.00
CVE-2022-2403 MEDIUM
OpenShift >=4.9 - Authenticated Credentials Leak via oauth-serving-cert ConfigMap
Sep 01, 2022
CVSS 6.5
EPSS 0.00
CVE-2022-2256 LOW
Red Hat Single Sign-On 7 - Stored Cross-Site Scripting in Admin Console via Default Roles
Sep 01, 2022
CVSS 3.8
EPSS 0.01
CVE-2022-2238 MEDIUM
Red Hat Advanced Cluster Management for Kubernetes - Denial of Service via Search Filter Query Parsing
Sep 01, 2022
CVSS 6.5
EPSS 0.01
CVE-2022-23452 MEDIUM
OpenStack Barbican < 14.0.0 - Incorrect Authorization via Admin Role
Sep 01, 2022
CVSS 4.9
EPSS 0.00