redhat

5,618 tracked vulnerabilities.

CVE-2025-3910 MEDIUM
Red Hat build of Keycloak 26.0-26.0.10 and Keycloak Services < 26.2.2 - Authentication Bypass
Apr 29, 2025
CVSS 5.4
EPSS 0.00
CVE-2025-3891 HIGH
Apache HTTP Server - Denial of Service via Empty POST Request with OIDCPreservePost Enabled
Apr 29, 2025
CVSS 7.5
EPSS 0.01
CVE-2025-46400 MEDIUM
fig2dev - Denial of Service via read_arcobject Function
Apr 23, 2025
CVSS 5.5
EPSS 0.00
CVE-2025-46399 MEDIUM
fig2dev - Denial of Service via genge_itp_spline Function
Apr 23, 2025
CVSS 5.5
EPSS 0.00
CVE-2025-46398 MEDIUM
fig2dev - Stack-based Buffer Overflow in read_objects Function
Apr 23, 2025
CVSS 5.5
EPSS 0.00
CVE-2025-46397 HIGH
fig2dev - Buffer Overflow via Bezier Spline Function
Apr 23, 2025
CVSS 7.8
EPSS 0.00
CVE-2025-3155 HIGH
Yelp - Arbitrary Script Execution via Help Document
Apr 03, 2025
CVSS 7.4
EPSS 0.01
CVE-2025-2784 HIGH
libsoup < 3.6.5 - Heap Buffer Over-Read via skip_insight_whitespace()
Apr 03, 2025
CVSS 7.0
EPSS 0.00
CVE-2025-23368 HIGH
Wildfly Core < 31.0.3 & Elytron 32.0.0.Beta1-3 - CLI Auth Brute Force
Mar 04, 2025
CVSS 8.1
EPSS 0.00
CVE-2025-0678 HIGH
GRUB2 < 2.12 - Integer Overflow to Heap-Based Buffer Overflow in Squash4 Filesystem Module
Mar 03, 2025
CVSS 7.8
EPSS 0.00
CVE-2025-1756 HIGH
mongosh <2.3.0 - Privilege Escalation
Feb 27, 2025
CVSS 7.5
EPSS 0.00
CVE-2025-1755 HIGH
MongoDB Compass <1.42.1 - Privilege Escalation
Feb 27, 2025
CVSS 7.5
EPSS 0.00
CVE-2025-26601 HIGH
Tigervnc < 21.1.16 - Use After Free
Feb 25, 2025
CVSS 7.8
EPSS 0.00
CVE-2025-26600 HIGH
Tigervnc < 21.1.16 - Use After Free
Feb 25, 2025
CVSS 7.8
EPSS 0.00
CVE-2025-26599 HIGH
X.Org - Use After Free
Feb 25, 2025
CVSS 7.8
EPSS 0.00
CVE-2025-26598 HIGH
TigerVNC - Out-of-bounds Write in GetBarrierDevice Function
Feb 25, 2025
CVSS 7.8
EPSS 0.00
CVE-2025-26597 HIGH
TigerVNC - Buffer Overflow via XkbChangeTypesOfKey Group Handling
Feb 25, 2025
CVSS 7.8
EPSS 0.00
CVE-2025-26596 HIGH
X.Org X Server < 21.1.16 and Xwayland < 24.1.6 - Heap-Based Buffer Overflow in XkbWriteKeySyms
Feb 25, 2025
CVSS 7.8
EPSS 0.00
CVE-2025-26595 HIGH
TigerVNC - Stack-based Buffer Overflow in XkbVModMaskText
Feb 25, 2025
CVSS 7.8
EPSS 0.00
CVE-2025-26594 HIGH
Tigervnc < 21.1.16 - Use After Free
Feb 25, 2025
CVSS 7.8
EPSS 0.00
CVE-2025-26465 MEDIUM
OpenSSH 6.9-9.7 - Machine-in-the-Middle Attack via VerifyHostKeyDNS Error Handling
Feb 18, 2025
CVSS 6.8
EPSS 0.65
CVE-2025-23367 MEDIUM
Red Hat JBoss Enterprise Application Platform 7.4 - Improper Access Control in Suspend and Resume Handlers
Jan 30, 2025
CVSS 6.5
EPSS 0.00
CVE-2025-0752 HIGH
OpenShift Service Mesh <2.6.3, <2.5.6 - SSRF
Jan 28, 2025
CVSS 7.1
EPSS 0.00
CVE-2025-23366 MEDIUM
HAL Management Console < 3.7.7 - Authenticated Stored Cross-Site Scripting
Jan 14, 2025
CVSS 6.5
EPSS 0.00
CVE-2024-47866 HIGH
Ceph <= 19.2.3 - Denial of Service via Empty Content in x-amz-copy-source Argument
Nov 12, 2025
CVSS 7.5
EPSS 0.00