redhat
5,618 tracked vulnerabilities.
CVE-2019-10906
HIGH
Pallets Jinja <2.10.1 - RCE
Apr 07, 2019
CVSS 8.6
EPSS 0.03
CVE-2019-10876
MEDIUM
OpenStack Neutron <11.0.7-13.0.3 - DoS
Apr 05, 2019
CVSS 6.5
EPSS 0.01
CVE-2019-3886
MEDIUM
libvirt >=4.8.0 <5.3.0 - Missing Authorization for Guest Agent APIs
Apr 04, 2019
CVSS 5.4
EPSS 0.00
CVE-2019-3876
MEDIUM
OpenShift Container Platform 3.0-3.11 - Cross-Site Request Forgery in OAuth Token Request Endpoint
Apr 01, 2019
CVSS 6.3
EPSS 0.00
CVE-2019-1002101
MEDIUM
Kubernetes < 1.11.9 - Arbitrary File Write via kubectl cp Tar Extraction
Apr 01, 2019
CVSS 6.4
EPSS 0.50
CVE-2019-1002100
MEDIUM
Kubernetes < 1.11.8, 1.12.6, 1.13.4 - Denial of Service via JSON Patch Request
Apr 01, 2019
CVSS 6.5
EPSS 0.03
CVE-2019-1003041
CRITICAL
Jenkins Pipeline: Groovy Plugin <2.64 - Privilege Escalation
Mar 28, 2019
CVSS 9.8
EPSS 0.02
CVE-2019-1003040
CRITICAL
Jenkins Script Security Plugin <1.55 - Privilege Escalation
Mar 28, 2019
CVSS 9.8
EPSS 0.02
CVE-2019-3869
HIGH
Ansible Tower < 3.3.5 - Sensitive Information Exposure via Environment Variables
Mar 28, 2019
CVSS 7.2
EPSS 0.00
CVE-2019-0160
CRITICAL
EDK II - Unauthenticated Buffer Overflow via Network Access
Mar 27, 2019
CVSS 9.8
EPSS 0.00
CVE-2019-5419
HIGH
Action View (Rails) <5.2.2.1-5.0.7.2 - DoS
Mar 27, 2019
CVSS 7.5
EPSS 0.12
CVE-2019-5418
HIGH
KEVNUCLEI
Ruby On Rails File Content Disclosure (
Mar 27, 2019
CVSS 7.5
EPSS 0.94
CVE-2019-3877
MEDIUM
mod_auth_mellon < 0.14.2 - Open Redirect via Backslash URL Bypass
Mar 27, 2019
CVSS 5.8
EPSS 0.01
CVE-2019-3840
MEDIUM
libvirt < 5.0.0 - Denial of Service via QEMU Agent Interface Information
Mar 27, 2019
CVSS 5.8
EPSS 0.01
CVE-2019-3828
MEDIUM
Ansible < 2.5.15 - Path Traversal via Fetch Module Absolute Path
Mar 27, 2019
CVSS 4.2
EPSS 0.00
CVE-2019-3878
HIGH
mod_auth_mellon <0.14.2 - Auth Bypass
Mar 26, 2019
CVSS 8.1
EPSS 0.02
CVE-2019-3830
HIGH
OpenStack Ceilometer < 12.0.0.0rc1 - Sensitive Information Exposure in Log Files
Mar 26, 2019
CVSS 7.8
EPSS 0.00
CVE-2019-3826
MEDIUM
Prometheus < 2.7.1 - Stored DOM-Based Cross-Site Scripting via Crafted URL
Mar 26, 2019
CVSS 6.1
EPSS 0.02
CVE-2019-3804
HIGH
cockpit < 184 - Unauthenticated Denial of Service via Invalid Base64-Encoded Cookie
Mar 26, 2019
CVSS 7.5
EPSS 0.04
CVE-2019-0204
HIGH
Apache Mesos <1.4.x, 1.4.0-1.4.2, 1.5.0-1.5.2, 1.6.0-1.6.1, 1.7.0-1...
Mar 25, 2019
CVSS 7.8
EPSS 0.00
CVE-2019-7609
CRITICAL
KEVNUCLEI
Kibana Timelion Prototype Pollution RCE
Mar 25, 2019
CVSS 10.0
EPSS 0.94
CVE-2019-3879
HIGH
ovirt < 4.3.2.1 - Unauthenticated Disk Deletion via RemoveDiskCommand
Mar 25, 2019
CVSS 8.1
EPSS 0.00
CVE-2019-3874
MEDIUM
Linux Kernel 3.10.1-3.10.107 - Denial of Service via SCTP Socket Buffer
Mar 25, 2019
CVSS 6.5
EPSS 0.00
CVE-2019-3857
HIGH
libssh2 < 1.8.1 - Remote Code Execution via SSH_MSG_CHANNEL_REQUEST Packet Parsing
Mar 25, 2019
CVSS 8.8
EPSS 0.05
CVE-2019-3856
HIGH
libssh2 < 1.8.1 - Remote Code Execution via Keyboard Prompt Request Parsing
Mar 25, 2019
CVSS 8.8
EPSS 0.05
Products
enterprise_linux_desktop 1,928
enterprise_linux_server 1,891
enterprise_linux_workstation 1,845
enterprise_linux 1,780
enterprise_linux_server_aus 1,059
enterprise_linux_eus 780
enterprise_linux_server_tus 768
enterprise_linux_server_eus 622
openshift_container_platform 291
jboss_enterprise_application_platform 243
linux 229
satellite 222
openstack 210
enterprise_linux_hpc_node 146
openshift 146
software_collections 137
virtualization 128
enterprise_linux_for_ibm_z_systems 112
single_sign-on 108
enterprise_linux_for_power_little_endian 106
keycloak 98
enterprise_linux_for_power_little_endian_eus 93
enterprise_linux_for_ibm_z_systems_eus 87
enterprise_linux_workstation_supplementary 86
enterprise_linux_desktop_supplementary 84
enterprise_linux_server_supplementary 84
virtualization_host 84
enterprise_linux_server_supplementary_eus 83
enterprise_linux_hpc_node_eus 81
fedora_core 77
Quick Filters