Vulnerabilities in Red Hat

2,125 results
Vexday analysis

Com 1.477 CVEs catalogadas e 232 surgidas apenas nos últimos 90 dias, o volume de vulnerabilidades associadas ao Red Hat exige monitoramento contínuo. A taxa de exploração ativa está abaixo da média geral do catálogo, com apenas 1 CVE confirmada no CISA KEV — a CVE-2023-4911, que apresenta EPSS de 0,7861, indicando probabilidade elevada de exploração e merecendo atenção prioritária de equipes de resposta. Das 34 vulnerabilidades de severidade crítica, 18 contam com prova de conceito pública disponível, o que reduz a barreira técnica para exploração e aumenta o risco operacional. O tipo de falha mais recorrente é CWE-125 (leitura fora dos limites), padrão que frequentemente viabiliza vazamento de dados ou corrupção de memória e deve orientar revisões de hardening e priorização de patches.

CVE-2026-3121MEDIUMKeycloak: org.keycloak/keycloak-services: keycloak: privilege escalation via manage-clients permissionEPSS 0.5%CVE-2026-13717HIGHRhoai maas: llm-d: maas/llm-d inference gateway: default allowedroutes.namespaces.from: all allows namespace users to hijack shared model-serving traffic (tokens, prompts, outputs)EPSS 0.5%CVE-2026-11807CRITICALEda-server: websocket missing authorization allows credential theft via activation_id spoofingEPSS 0.5%CVE-2026-49332HIGHOpenshift/oauth-proxy: openshift/oauth-proxy: underscore header smuggling enables identity impersonation on wsgi/php upstreamsEPSS 0.5%CVE-2023-32256HIGHKernel: ksmbd race issue from smb2 close and logoff with multichannelEPSS 0.5%CVE-2026-85150HIGHGstreamer1-plugins-base: gstreamer: null/invalid-pointer dereference in gst_rtsp_message_parse_auth_credentials() when parsing a crafted digest authorization/www-authenticate headerEPSS 0.5%CVE-2024-3049MEDIUMBooth: specially crafted hash can lead to invalid hmac being accepted by booth serverEPSS 0.5%CVE-2026-3234MEDIUMMod_proxy_cluster: mod_proxy_cluster: response body corruption via crlf injectionEPSS 0.5%CVE-2026-12725MEDIUMDnsmasq: dnsmasq: heap buffer overflow in log_query() when logging unsupported ds/dnskey repliesEPSS 0.5%CVE-2024-6535MEDIUMSkupper: potential authentication bypass to skupper console via forged cookiesEPSS 0.5%CVE-2026-88859MEDIUMEvolution: evolution: javascript execution via spoofed vcard control bypasses mail script-markup restrictionEPSS 0.5%CVE-2024-11483MEDIUMAutomation-gateway: aap-gateway: improper scope handling in oauth2 tokens for aap 2.5EPSS 0.5%CVE-2026-73137HIGHMulticloud-operators-subscription: multicloud-operators-subscription: cross-namespace secret exfiltration via helmrelease.repo.secretref.namespaceEPSS 0.5%CVE-2026-11770HIGH389-ds-base: 389-ds-base: pre-auth ldap filter injection in cleanallruv status checkEPSS 0.5%CVE-2026-15378CRITICALGuardrails-detectors: guardrails-detectors: ssrf and local file read via user-supplied xml schema (xml-with-schema:)EPSS 0.5%CVE-2023-6606HIGHKernel: out-of-bounds read vulnerability in smbcalcsizeEPSS 0.5%CVE-2019-3828MEDIUMAnsible fetch module before versions 2.5.15, 2.6.14, 2.7.8 has a path traversal vulnerability which allows copying and overwriting files outEPSS 0.5%CVE-2026-76827MEDIUMSearch-indexer: search-indexer: update/delete operations not scoped to caller's cluster (cross-tenant data tampering)EPSS 0.5%CVE-2026-34000MEDIUMXwayland: xorg: x.org x server: information disclosure and denial of service via out-of-bounds read in xkb geometry processing.EPSS 0.5%CVE-2026-34002MEDIUMXorg: xwayland: x.org x server: information disclosure or denial of service via out-of-bounds read in xkb modifier map handlingEPSS 0.5%