redhat

5,618 tracked vulnerabilities.

CVE-2019-10906 HIGH
Pallets Jinja <2.10.1 - RCE
Apr 07, 2019
CVSS 8.6
EPSS 0.03
CVE-2019-10876 MEDIUM
OpenStack Neutron <11.0.7-13.0.3 - DoS
Apr 05, 2019
CVSS 6.5
EPSS 0.01
CVE-2019-3886 MEDIUM
libvirt >=4.8.0 <5.3.0 - Missing Authorization for Guest Agent APIs
Apr 04, 2019
CVSS 5.4
EPSS 0.00
CVE-2019-3876 MEDIUM
OpenShift Container Platform 3.0-3.11 - Cross-Site Request Forgery in OAuth Token Request Endpoint
Apr 01, 2019
CVSS 6.3
EPSS 0.00
CVE-2019-1002101 MEDIUM
Kubernetes < 1.11.9 - Arbitrary File Write via kubectl cp Tar Extraction
Apr 01, 2019
CVSS 6.4
EPSS 0.50
CVE-2019-1002100 MEDIUM
Kubernetes < 1.11.8, 1.12.6, 1.13.4 - Denial of Service via JSON Patch Request
Apr 01, 2019
CVSS 6.5
EPSS 0.03
CVE-2019-1003041 CRITICAL
Jenkins Pipeline: Groovy Plugin <2.64 - Privilege Escalation
Mar 28, 2019
CVSS 9.8
EPSS 0.02
CVE-2019-1003040 CRITICAL
Jenkins Script Security Plugin <1.55 - Privilege Escalation
Mar 28, 2019
CVSS 9.8
EPSS 0.02
CVE-2019-3869 HIGH
Ansible Tower < 3.3.5 - Sensitive Information Exposure via Environment Variables
Mar 28, 2019
CVSS 7.2
EPSS 0.00
CVE-2019-0160 CRITICAL
EDK II - Unauthenticated Buffer Overflow via Network Access
Mar 27, 2019
CVSS 9.8
EPSS 0.00
CVE-2019-5419 HIGH
Action View (Rails) <5.2.2.1-5.0.7.2 - DoS
Mar 27, 2019
CVSS 7.5
EPSS 0.12
CVE-2019-5418 HIGH KEVNUCLEI
Ruby On Rails File Content Disclosure (
Mar 27, 2019
CVSS 7.5
EPSS 0.94
CVE-2019-3877 MEDIUM
mod_auth_mellon < 0.14.2 - Open Redirect via Backslash URL Bypass
Mar 27, 2019
CVSS 5.8
EPSS 0.01
CVE-2019-3840 MEDIUM
libvirt < 5.0.0 - Denial of Service via QEMU Agent Interface Information
Mar 27, 2019
CVSS 5.8
EPSS 0.01
CVE-2019-3828 MEDIUM
Ansible < 2.5.15 - Path Traversal via Fetch Module Absolute Path
Mar 27, 2019
CVSS 4.2
EPSS 0.00
CVE-2019-3878 HIGH
mod_auth_mellon <0.14.2 - Auth Bypass
Mar 26, 2019
CVSS 8.1
EPSS 0.02
CVE-2019-3830 HIGH
OpenStack Ceilometer < 12.0.0.0rc1 - Sensitive Information Exposure in Log Files
Mar 26, 2019
CVSS 7.8
EPSS 0.00
CVE-2019-3826 MEDIUM
Prometheus < 2.7.1 - Stored DOM-Based Cross-Site Scripting via Crafted URL
Mar 26, 2019
CVSS 6.1
EPSS 0.02
CVE-2019-3804 HIGH
cockpit < 184 - Unauthenticated Denial of Service via Invalid Base64-Encoded Cookie
Mar 26, 2019
CVSS 7.5
EPSS 0.04
CVE-2019-0204 HIGH
Apache Mesos <1.4.x, 1.4.0-1.4.2, 1.5.0-1.5.2, 1.6.0-1.6.1, 1.7.0-1...
Mar 25, 2019
CVSS 7.8
EPSS 0.00
CVE-2019-7609 CRITICAL KEVNUCLEI
Kibana Timelion Prototype Pollution RCE
Mar 25, 2019
CVSS 10.0
EPSS 0.94
CVE-2019-3879 HIGH
ovirt < 4.3.2.1 - Unauthenticated Disk Deletion via RemoveDiskCommand
Mar 25, 2019
CVSS 8.1
EPSS 0.00
CVE-2019-3874 MEDIUM
Linux Kernel 3.10.1-3.10.107 - Denial of Service via SCTP Socket Buffer
Mar 25, 2019
CVSS 6.5
EPSS 0.00
CVE-2019-3857 HIGH
libssh2 < 1.8.1 - Remote Code Execution via SSH_MSG_CHANNEL_REQUEST Packet Parsing
Mar 25, 2019
CVSS 8.8
EPSS 0.05
CVE-2019-3856 HIGH
libssh2 < 1.8.1 - Remote Code Execution via Keyboard Prompt Request Parsing
Mar 25, 2019
CVSS 8.8
EPSS 0.05