redhat

5,618 tracked vulnerabilities.

CVE-2025-7424 HIGH
libxslt - Type Confusion via psvi Memory Field Reuse
Jul 10, 2025
CVSS 7.5
EPSS 0.00
CVE-2025-32990 MEDIUM
GnuTLS - Heap-based Buffer Overflow in Certtool Template Parsing
Jul 10, 2025
CVSS 6.5
EPSS 0.00
CVE-2025-32989 MEDIUM
GnuTLS - Heap-Buffer-Overread in Certificate Transparency SCT Extension Parsing
Jul 10, 2025
CVSS 5.3
EPSS 0.00
CVE-2025-32988 MEDIUM
GnuTLS < 3.8.10 - Double Free in Subject Alternative Name Export Logic
Jul 10, 2025
CVSS 6.5
EPSS 0.00
CVE-2025-5351 MEDIUM
libssh 0.10.0-0.11.2 - Double Free in Key Export Functionality
Jul 04, 2025
CVSS 6.5
EPSS 0.00
CVE-2025-5372 MEDIUM
Libssh <3.0 - Uninitialized Key Buffer
Jul 04, 2025
CVSS 5.0
EPSS 0.00
CVE-2025-6017 MEDIUM
Red Hat Advanced Cluster Management <2.10.7-2.12.4 - Info Disclosure
Jul 02, 2025
CVSS 5.5
EPSS 0.00
CVE-2025-6920 MEDIUM
Red Hat AI Inference Server - Unauthenticated API Access via /invocations Endpoint
Jul 01, 2025
CVSS 5.3
EPSS 0.00
CVE-2025-32463 CRITICAL KEVNUCLEI
Sudo <1.9.17p1 - Privilege Escalation
Jun 30, 2025
CVSS 9.3
EPSS 0.57
CVE-2025-5731 MEDIUM
Redhat Data Grid - Error Information Exposure
Jun 26, 2025
CVSS 5.5
EPSS 0.00
CVE-2025-5318 HIGH
Redhat Openshift Container Platform < 0.11.2 - Out-of-Bounds Read
Jun 24, 2025
CVSS 8.1
EPSS 0.00
CVE-2025-5416 LOW
Keycloak - Authenticated Sensitive Information Exposure via Admin Serverinfo Endpoint
Jun 20, 2025
CVSS 2.7
EPSS 0.00
CVE-2025-6170 LOW
Redhat Jboss Core Services - Stack Buffer Overflow
Jun 16, 2025
CVSS 2.5
EPSS 0.00
CVE-2025-6021 HIGH
libxml2 - Stack-based Buffer Overflow in xmlBuildQName
Jun 12, 2025
CVSS 7.5
EPSS 0.02
CVE-2025-5918 LOW
libarchive < 3.8.0 - Out-of-bounds Read via File Stream Piping
Jun 09, 2025
CVSS 3.9
EPSS 0.00
CVE-2025-5917 LOW
libarchive < 3.8.0 - Out-of-bounds Write via File Name Prefix/Suffix Handling
Jun 09, 2025
CVSS 2.8
EPSS 0.00
CVE-2025-5916 LOW
libarchive < 3.8.0 - Integer Overflow via Malicious WARC Archive
Jun 09, 2025
CVSS 3.9
EPSS 0.00
CVE-2025-5915 MEDIUM
libarchive < 3.8.0 - Heap-based Buffer Overflow via LZSS Decompression
Jun 09, 2025
CVSS 6.6
EPSS 0.00
CVE-2025-5914 HIGH
libarchive < 3.8.0 - Integer Overflow to Double-Free in RAR Data Seeking
Jun 09, 2025
CVSS 7.8
EPSS 0.00
CVE-2025-47711 MEDIUM
nbdkit - Denial of Service via Large Data Block Response
Jun 09, 2025
CVSS 6.5
EPSS 0.00
CVE-2025-35036 HIGH
Hibernate Validator < 6.2.0 - Code Injection via Expression Language Interpolation
Jun 03, 2025
CVSS 7.3
EPSS 0.02
CVE-2025-4598 MEDIUM
systemd-coredump - Privilege Escalation
May 30, 2025
CVSS 4.7
EPSS 0.00
CVE-2025-5198 MEDIUM
Red Hat Advanced Cluster Security - Stored Cross-Site Scripting via Kubernetes Role Name
May 27, 2025
CVSS 5.0
EPSS 0.00
CVE-2025-4478 MEDIUM
FreeRDP 3.0.0-3.15.9 - Denial of Service via Crafted RDP Packet
May 16, 2025
CVSS 6.5
EPSS 0.00
CVE-2025-4374 MEDIUM
Red Hat Quay < 3.14.0 - Incorrect Privilege Assignment via Proxy Cache Repository Creation
May 06, 2025
CVSS 6.5
EPSS 0.00