Vulnerabilidades en RED HAT
2125 resultadosAnálisis Vexday
Red Hat apresenta footprint mínimo na base Vexday com apenas 1 CVE registrado, sem incidentes sob exploração ativa no momento. A vulnerabilidade identificada relaciona-se a deficiências em armazenamento de credenciais (CWE-522), mas não figura entre as críticas e permanece sem atividade recente de ataque.
CVE-2019-3891MEDIUMIt was discovered that a world-readable log file belonging to Candlepin component of Red Hat Satellite 6.4 leaked the credentials of the CanEPSS 0.7%CVE-2019-10146MEDIUMA Reflected Cross Site Scripting flaw was found in all pki-core 10.x.x versions module from the pki-core server due to the CA Agent Service EPSS 0.7%CVE-2025-6395MEDIUMGnutls: null pointer dereference in _gnutls_figure_common_ciphersuite()EPSS 0.7%CVE-2019-3876MEDIUMA flaw was found in the /oauth/token/request custom endpoint of the OpenShift OAuth server allowing for XSS generation of CLI tokens due to EPSS 0.7%CVE-2024-12401MEDIUMCert-manager: potential dos when parsing specially crafted pem inputsEPSS 0.7%CVE-2024-6508HIGHOpenshift-console: oauth2 insufficient state parameter entropyEPSS 0.7%CVE-2023-39176MEDIUMKernel: ksmbd: transform header out-of-bounds read information disclosure vulnerabilityEPSS 0.7%CVE-2025-4945LOWLibsoup: integer overflow in cookie expiration date handling in libsoupEPSS 0.7%CVE-2023-5349MEDIUMDraw while calling getdrawinfo()EPSS 0.7%CVE-2026-14476HIGHSssd: sssd: gpo cache path traversal via unsanitized gpcfilesyspath allows kerberos authentication bypassEPSS 0.7%CVE-2024-2698HIGHFreeipa: delegation rules allow a proxy service to impersonate any user to access another target serviceEPSS 0.7%CVE-2024-6861HIGHForeman: foreman: oauth secret exposure via unauthenticated access to the graphql apiEPSS 0.7%CVE-2026-71218MEDIUMIperf3: unbounded peer-controlled allocation in iperf3 json_read() allows unauthenticated remote memory exhaustionEPSS 0.7%CVE-2024-52616MEDIUMAvahi: avahi wide-area dns predictable transaction idsEPSS 0.7%CVE-2023-4727HIGHCa: token authentication bypass vulnerabilityEPSS 0.7%CVE-2020-1732MEDIUMA flaw was found in Soteria before 1.0.1, in a way that multiple requests occurring concurrently causing security identity corruption acrossEPSS 0.7%CVE-2026-93575HIGHIo.netty/netty-codec-mqtt: netty: resource exhaustion in mqttdecoderEPSS 0.7%CVE-2026-2575MEDIUMKeycloak: keycloak: denial of service due to excessive samlrequest decompressionEPSS 0.7%CVE-2017-2627HIGHA flaw was found in openstack-tripleo-common as shipped with Red Hat Openstack Enterprise 10 and 11. The sudoers file as installed with OSP'EPSS 0.7%CVE-2026-5265MEDIUMOvn: ovn: heap over-read in icmp error response generationEPSS 0.7%