redhat

5,618 tracked vulnerabilities.

CVE-2019-16056 HIGH
Python < 2.7.16, 3.x < 3.5.8, 3.6.x < 3.6.10, 3.7.x < 3.7.5 - Email Address Parsing Bypass via Multiple @ Characters
Sep 06, 2019
CVSS 7.5
EPSS 0.01
CVE-2019-14813 CRITICAL
Ghostscript 9.00-9.49 - Unauthenticated Privilege Escalation via setsystemparams Procedure
Sep 06, 2019
CVSS 9.8
EPSS 0.08
CVE-2019-6648 MEDIUM
F5 Container Ingress Service 1.9.0 - Sensitive Information Disclosure in Log Files
Sep 04, 2019
CVSS 4.4
EPSS 0.00
CVE-2019-15718 MEDIUM
systemd 240 - Unauthenticated D-Bus Access Control Bypass via sd_bus_set_trusted
Sep 04, 2019
CVSS 4.4
EPSS 0.00
CVE-2019-1125 MEDIUM
CPU Speculative Access - Info Disclosure
Sep 03, 2019
CVSS 5.6
EPSS 0.19
CVE-2019-14817 HIGH
Ghostscript < 9.50 - Privilege Escalation via Unsecured Privileged API Calls
Sep 03, 2019
CVSS 7.8
EPSS 0.00
CVE-2019-14811 HIGH
Ghostscript < 9.50 - Privilege Escalation via .pdf_hook_DSC_Creator Bypass
Sep 03, 2019
CVSS 7.8
EPSS 0.02
CVE-2019-15807 MEDIUM
Linux kernel <5.1.13 - Memory Corruption
Aug 29, 2019
CVSS 4.7
EPSS 0.00
CVE-2019-11250 MEDIUM
Kubernetes < 1.16.0-beta.1 - Sensitive Information Disclosure in Logs via High Verbosity Level
Aug 29, 2019
CVSS 6.5
EPSS 0.01
CVE-2019-11249 MEDIUM
Kubernetes < 1.12.10, 1.13.0-1.13.8, 1.14.0-1.14.4, 1.15.0-1.15.1 - Path Traversal via kubectl cp
Aug 29, 2019
CVSS 6.5
EPSS 0.03
CVE-2019-11247 HIGH
Kubernetes < 1.13.9, < 1.14.5, < 1.15.2 - Unauthorized Cluster-Scoped Custom Resource Access via Namespace Impersonation
Aug 29, 2019
CVSS 8.1
EPSS 0.00
CVE-2019-10384 HIGH
Jenkins < 2.176.3 - Cross-Site Request Forgery via Non-Expiring CSRF Tokens
Aug 28, 2019
CVSS 8.8
EPSS 0.00
CVE-2019-10383 MEDIUM
Jenkins < 2.176.3 - Authenticated Stored Cross-Site Scripting via Update Site URL Configuration
Aug 28, 2019
CVSS 4.8
EPSS 0.00
CVE-2019-12400 MEDIUM
Apache Santuario XML Security for Java <2.0.3 - Info Disclosure
Aug 23, 2019
CVSS 5.5
EPSS 0.01
CVE-2019-10086 HIGH
Apache Commons Beanutils 1.9.2 - Info Disclosure
Aug 20, 2019
CVSS 7.3
EPSS 0.01
CVE-2019-10140 MEDIUM
Linux Kernel < 3.10 - Denial of Service via NULL Pointer Dereference in overlayfs
Aug 15, 2019
CVSS 5.5
EPSS 0.00
CVE-2019-9506 HIGH
Android - Bluetooth BR/EDR Encryption Key Length Downgrade via KNOB Attack
Aug 14, 2019
CVSS 8.1
EPSS 0.04
CVE-2019-10201 HIGH
Keycloak < 6.0.1 - Authentication Bypass via SAML Response Signature Removal
Aug 14, 2019
CVSS 8.1
EPSS 0.00
CVE-2019-10199 HIGH
Keycloak < 6.0.1 - Cross-Site Request Forgery via Inadequate Header Checks
Aug 14, 2019
CVSS 8.8
EPSS 0.00
CVE-2019-9518 HIGH
SwiftNIO 1.0.0-1.3.9 - Denial of Service via HTTP/2 Empty Frame Flood
Aug 13, 2019
CVSS 7.5
EPSS 0.04
CVE-2019-9517 HIGH
SwiftNIO 1.0.0-1.3.9 - Denial of Service via HTTP/2 Window Manipulation
Aug 13, 2019
CVSS 7.5
EPSS 0.05
CVE-2019-9516 MEDIUM
SwiftNIO 1.0.0-1.3.9 - Denial of Service via HTTP/2 Header Leak
Aug 13, 2019
CVSS 6.5
EPSS 0.02
CVE-2019-9515 HIGH
SwiftNIO 1.0.0-1.3.9 - Denial of Service via HTTP/2 Settings Flood
Aug 13, 2019
CVSS 7.5
EPSS 0.09
CVE-2019-9514 HIGH
SwiftNIO 1.0.0-1.3.9 - Denial of Service via HTTP/2 Reset Flood
Aug 13, 2019
CVSS 7.5
EPSS 0.09
CVE-2019-9513 HIGH
SwiftNIO 1.0.0-1.3.9 - Denial of Service via HTTP/2 Priority Tree Manipulation
Aug 13, 2019
CVSS 7.5
EPSS 0.07