redhat

5,618 tracked vulnerabilities.

CVE-2022-1245 CRITICAL
Keycloak < 18.0.0 - Missing Authorization in Token Exchange
Jul 08, 2022
CVSS 9.8
EPSS 0.00
CVE-2022-2078 MEDIUM
Linux Kernel < 5.19 - Stack-based Buffer Overflow in nft_set_desc_concat_parse
Jun 30, 2022
CVSS 5.5
EPSS 0.01
CVE-2022-1852 MEDIUM
Linux Kernel < 5.19 - Denial of Service via KVM x86 Emulation NULL Pointer Dereference
Jun 30, 2022
CVSS 5.5
EPSS 0.00
CVE-2022-0987 LOW
PackageKit - Information Disclosure via Transaction Interface File Existence Timing
Jun 28, 2022
CVSS 3.3
EPSS 0.00
CVE-2022-1833 HIGH
AMQ Broker Operator 7.9.4 - Incorrect Default Permissions via Service Account
Jun 21, 2022
CVSS 8.8
EPSS 0.00
CVE-2022-1665 HIGH
Red Hat Enterprise Linux for IBM Power - Privilege Escalation
Jun 21, 2022
CVSS 8.2
EPSS 0.00
CVE-2022-32547 HIGH
ImageMagick < 6.9.12-45 - Denial of Service via Misaligned Address Load in Property Handling
Jun 16, 2022
CVSS 7.8
EPSS 0.00
CVE-2022-32546 HIGH
ImageMagick < 6.9.12-44 - Integer Overflow in PCL Coder
Jun 16, 2022
CVSS 7.8
EPSS 0.00
CVE-2022-32545 HIGH
ImageMagick < 6.9.12-43 - Integer Overflow in PSD Coder
Jun 16, 2022
CVSS 7.8
EPSS 0.00
CVE-2022-1998 HIGH
Linux Kernel 5.10.46-5.10.97 - Use-After-Free in File System Notify
Jun 09, 2022
CVSS 7.8
EPSS 0.00
CVE-2022-1708 HIGH
CRI-O <1.19.7 and >=1.24.0 <1.24.1 - Denial of Service via ExecSync Output Handling
Jun 07, 2022
CVSS 7.5
EPSS 0.00
CVE-2022-1949 HIGH
389 Directory Server - Unauthenticated Access Control Bypass via Filter Mishandling
Jun 02, 2022
CVSS 7.5
EPSS 0.01
CVE-2022-1789 MEDIUM
Linux Kernel < 5.8 - NULL Pointer Dereference via INVPCID Instruction with CR0.PG=0
Jun 02, 2022
CVSS 6.8
EPSS 0.00
CVE-2022-1652 HIGH
Linux Kernel 2.6.12-4.9.315 - Use-After-Free in bad_flp_intr Function
Jun 02, 2022
CVSS 7.8
EPSS 0.01
CVE-2022-1462 MEDIUM
Linux Kernel - Out-of-Bounds Read via TeleTYpe Subsystem Race Condition
Jun 02, 2022
CVSS 6.3
EPSS 0.00
CVE-2022-30600 CRITICAL
Moodle 3.9-3.9.13 and 4.0 - Account Lockout Bypass via Incorrect Failed Login Calculation
May 18, 2022
CVSS 9.8
EPSS 0.07
CVE-2022-30599 CRITICAL
Moodle 3.9-3.9.13 and 4.0 - SQL Injection in Badges Criteria Configuration
May 18, 2022
CVSS 9.8
EPSS 0.02
CVE-2022-30598 MEDIUM
Moodle 3.9-3.9.13 and 4.0 - Exposure of Sensitive Information via Global Search
May 18, 2022
CVSS 4.3
EPSS 0.00
CVE-2022-30597 MEDIUM
Moodle - Info Disclosure
May 18, 2022
CVSS 5.3
EPSS 0.00
CVE-2022-30596 MEDIUM
Moodle 3.9-3.9.13 and 4.0 - Stored Cross-Site Scripting in Bulk Marker Allocation
May 18, 2022
CVSS 5.4
EPSS 0.01
CVE-2022-1706 MEDIUM
Ignition < 2.14.0 - Unauthenticated Information Disclosure via VMware VM Container Access
May 17, 2022
CVSS 6.5
EPSS 0.01
CVE-2022-1587 CRITICAL
PCRE2 < 10.40 - Out-of-bounds Read in get_recurse_data_length()
May 16, 2022
CVSS 9.1
EPSS 0.00
CVE-2022-1586 CRITICAL
PCRE2 < 10.40 - Out-of-bounds Read in JIT Unicode Property Matching
May 16, 2022
CVSS 9.1
EPSS 0.01
CVE-2022-0866 MEDIUM
JBoss EAP >=7.1.0 and WildFly >=11.0.0 <26.1.1 - Incorrect Authorization via Concurrent RunAs Principal Handling
May 10, 2022
CVSS 5.3
EPSS 0.00
CVE-2022-0984 MEDIUM
Moodle 3.9.0-3.9.12 and 3.11.0-3.11.5 - Incorrect Authorization in Badge Criteria Configuration
Apr 29, 2022
CVSS 4.3
EPSS 0.00