92 Total CVEs
87 AI Analyzed
0 CISA KEV
14 Critical
All Vendors
Showing 1-92 of 92 CVEs
CVE-2026-9800
Analyzed
8.1
Red Hat Keycloak

A flaw was found in Keycloak Policy Enforcer

2026-06-27
CVE-2026-7374
Analyzed
9.9
Red Hat KubeVirt

A flaw in KubeVirt's `virt-handler` allows an authenticated user to hijack privileged connections, potentially leading to full cluster compromise.

2026-05-27
CVE-2026-72693
Analyzed
7.8
Red Hat Enterprise Linux

`openvt -u` is intended to identify the owner of the current VT and then execute `login` as that user from a privileged context

2026-08-11
CVE-2026-72526
Analyzed
9.9
Red Hat Red Hat Advanced Cluster Management for Kubernetes

A flaw in the multicloud-integrations component allows authenticated tenants to perform arbitrary code execution or privilege escalation on managed cl...

2026-08-13
CVE-2026-71472
Analyzed
9.1
Red Hat Red Hat Advanced Cluster Management for Kubernetes 2

An input validation flaw in the acm-search-v2-rhel9 component allows authenticated attackers to perform OS command or SQL injection, potentially leadi...

2026-08-18
CVE-2026-70496
Analyzed
9.9
Red Hat Advanced Cluster Management for Kubernetes

A flaw in the search-v2-operator allows for privilege escalation due to a ClusterRole granting excessive permissions, including the ability to manage...

2026-08-20
CVE-2026-70495
Analyzed
8.8
Red Hat Red Hat Advanced Cluster Management for Kubernetes

A flaw was found in search-v2-operator

2026-08-18
CVE-2026-6893
Analyzed
8.8
Red Hat dracut

A flaw was found in dracut

2026-06-11
CVE-2026-66795
Analyzed
9.1
Red Hat Multicluster Engine for Kubernetes

Improper validation of Certificate Signing Requests in the managedcluster-import-controller allows privileged service accounts to escalate privileges...

2026-08-18
CVE-2026-66792
Analyzed
9.9
Red Hat Multicluster Global Hub

A privilege escalation vulnerability in the multicloud-operators-subscription component allows users to deploy resources with elevated permissions via...

2026-08-18
CVE-2026-66780
Analyzed
9.9
Red Hat Advanced Cluster Management for Kubernetes

A flaw in the submariner-operator component allows a compromised cluster to perform MITM attacks across a cluster mesh by overwriting endpoint informa...

2026-08-19
CVE-2026-66758
Analyzed
7.8
Red Hat GIMP (file-fits plugin)

A flaw was found in the file-fits plugin in GIMP

2026-07-28
CVE-2026-63622
Analyzed
7.8
Red Hat libvirt

A flaw was found in libvirt

2026-08-11
CVE-2026-59091
Analyzed
7.3
Red Hat Red Hat Enterprise Linux (GIMP plugins)

A flaw was found in GIMP's file format plugins, including those for PSD and PAA files

2026-08-11
CVE-2026-59090
Analyzed
8.4
Red Hat Red Hat Enterprise Linux (GIMP PSD plugin)

A flaw was found in GIMP's PSD file format plugin

2026-08-11
CVE-2026-59087
Analyzed
7.8
Red Hat Image Manipulation Program

A flaw was found in the GIMP image manipulation program, specifically within its Seattle Filmworks file loader

2026-08-11
CVE-2026-58384
Analyzed
7.3
Red Hat GIMP

A flaw was found in GIMP's PSD parser

2026-07-07
CVE-2026-58380
Analyzed
7.3
Red Hat GIMP

A flaw was found in GIMP's PNM file format parser

2026-07-07
CVE-2026-58379
Analyzed
7.3
Red Hat GIMP

A flaw was found in GIMP's Paint Shop Pro (PSP) file format parser

2026-07-05
CVE-2026-58222
Analyzed
8.8
Red Hat Red Hat Enterprise Linux

A security flaw combining LDAP filter injection and improper authorization checks was found in Samba Active Directory Domain Controller (AD DC)

2026-07-31
CVE-2026-57231
Analyzed
7.5
Red Hat Podman

Podman is a tool for managing OCI containers and pods

2026-06-28
CVE-2026-5674
Analyzed
8.8
Red Hat PipeWire

A flaw was found in PipeWire, a multimedia server

2026-07-17
CVE-2026-5483
8.5
Red Hat Openshift AI

A flaw was found in odh-dashboard in Red Hat Openshift AI

2026-04-11
CVE-2026-5136
Analyzed
8.8
Red Hat Red Hat Satellite

A flaw was found in Foreman

2026-07-02
CVE-2026-49332
Analyzed
8.5
Red Hat OpenShift Container Platform 4

A flaw was found in openshift/oauth-proxy

2026-07-29
CVE-2026-4740
8.2
Red Hat Advanced Cluster

A flaw was found in Open Cluster Management (OCM), the technology underlying Red Hat Advanced Cluster Management (ACM)

2026-04-08
CVE-2026-44191
Analyzed
7.8
Red Hat Ansible Automation Platform 2

A flaw was found in the Visual Studio Code Ansible Lightspeed extension

2026-07-26
CVE-2026-44190
Analyzed
7.8
Red Hat Ansible Automation Platform

A flaw was found in the Ansible Lightspeed Visual Studio Code extension

2026-07-24
CVE-2026-44189
Analyzed
7.8
Red Hat Ansible Automation Platform

A flaw was found in the Visual Studio Code Ansible Lightspeed extension's AnsiblePlaybookRunProvider

2026-07-24
CVE-2026-42170
Analyzed
7.8
Red Hat Red Hat Enterprise Linux

A heap-based buffer overflow vulnerability exists in the GIMP DDS (DirectDraw Surface) file parser

2026-08-09
CVE-2026-3872
Analyzed
7.3
Red Hat Keycloak

A flaw was found in Keycloak

2026-04-04
CVE-2026-19546
Analyzed
8.8
Red Hat Red Hat Enterprise Linux

A flaw was found in DBI

2026-08-12
CVE-2026-19389
Analyzed
7.1
Red Hat Red Hat Enterprise Linux

Multiple integer overflow and underflow vulnerabilities were found in the GStreamer gst-plugins-ugly ASF demuxer (asfdemux) when parsing header object...

2026-08-10
CVE-2026-19387
Analyzed
7.6
Red Hat Red Hat Enterprise Linux

A heap out-of-bounds write vulnerability was found in the GStreamer gst-plugins-bad adpcmdec element when decoding IMA/DVI ADPCM audio

2026-08-10
CVE-2026-18982
Analyzed
8.8
Red Hat OpenShift AI

A flaw was found in the RHOAI training-operator

2026-08-11
CVE-2026-18951
Analyzed
8.8
Red Hat OpenShift AI

A flaw was found in the Red Hat OpenShift AI (RHOAI) overlay for the training operator

2026-08-11
CVE-2026-18950
Analyzed
8.8
Red Hat OpenShift AI

A flaw was found in odh-dashboard

2026-08-11
CVE-2026-18949
Analyzed
8.8
Red Hat OpenShift AI

A flaw was found in odh-dashboard

2026-08-11
CVE-2026-18948
Analyzed
9.9
Red Hat Red Hat OpenShift AI

A deserialization flaw in the Feast component of Red Hat OpenShift AI allows remote attackers to execute arbitrary code via malicious user-defined fun...

2026-08-11
CVE-2026-18947
Analyzed
8.5
Red Hat OpenShift AI

A flaw was found in Feast

2026-08-11
CVE-2026-18941
Analyzed
7.7
Red Hat OpenShift AI

A flaw was found in Feast and feast-operator

2026-08-11
CVE-2026-18621
Analyzed
7.6
Red Hat OpenShift AI

A flaw was found in Data Science Pipelines (DSP)

2026-08-11
CVE-2026-18618
Analyzed
7.5
Red Hat OpenShift AI

A flaw was found in ml-metadata

2026-08-11
CVE-2026-18617
Analyzed
8.8
Red Hat OpenShift AI

A flaw was found in the Data Science Pipelines Operator (DSPO)

2026-08-11
CVE-2026-18611
Analyzed
7.5
Red Hat OpenShift AI

A flaw was found in the Data Science Pipelines Operator

2026-08-11
CVE-2026-18608
Analyzed
8.7
Red Hat OpenShift AI

A flaw was found in the Data Science Pipelines Operator (DSPO)

2026-08-11
CVE-2026-18381
Analyzed
7.6
Red Hat Cost Management Metrics Operator

A flaw was found in the koku-metrics-operator for Red Hat OpenShift

2026-08-01
CVE-2026-18378
Analyzed
7.6
Red Hat Cost Management Metrics Operator

A flaw was found in koku-metrics-operator

2026-08-01
CVE-2026-18358
Analyzed
7.5
Red Hat gnome-remote-desktop

A flaw was found in gnome-remote-desktop as shipped in Red Hat Enterprise Linux

2026-08-01
CVE-2026-18157
Analyzed
7.8
Red Hat yggdrasil-worker-package-manager

A flaw was found in yggdrasil-worker-package-manager

2026-08-01
CVE-2026-18141
Analyzed
8.2
Red Hat Ansible Automation Platform 2

A flaw was found in aap-gateway, a component of Ansible Automation Platform's Event-Driven Ansible (EDA)

2026-08-01
CVE-2026-1784
Analyzed
8.8
Red Hat OpenShift Container Platform

The Route OpenShift resource allows to define routes to make pods reachable at a subdomain through HAProxy

2026-06-03
CVE-2026-17527
Analyzed
7.7
Red Hat OpenShift Virtualization 4

In containerized-data-importer (CDI), the aggregated cdi

2026-07-28
CVE-2026-17523
Analyzed
7.8
Red Hat Red Hat Enterprise Linux

A flaw was found in the kernel

2026-07-28
CVE-2026-16745
Analyzed
8.8
Red Hat Red Hat OpenShift AI (RHOAI)

A flaw was found in odh-dashboard, the web console component of Red Hat OpenShift AI (RHOAI)

2026-07-24
CVE-2026-16526
Analyzed
8.8
Red Hat Red Hat Enterprise Linux

A flaw in the PCP linux_sockets module exposes an unsecured internal connection

2026-07-30
CVE-2026-16242
Analyzed
9.4
Red Hat Logging Subsystem for Red Hat OpenShift

A flaw in the Konnectivity proxy-server configuration for hosted control planes allows unauthenticated remote attackers to connect as an agent and man...

2026-07-20
CVE-2026-16118
Analyzed
7.1
Red Hat Red Hat Enterprise Linux

A flaw was found in xdgmime

2026-07-19
CVE-2026-15816
Analyzed
7.5
Red Hat Enterprise Linux

A flaw was found in dracut

2026-08-09
CVE-2026-15722
Analyzed
7.5
Red Hat Directory Server

A stack buffer overflow flaw was found in 389 Directory Server (389-ds-base)

2026-08-01
CVE-2026-15584
Analyzed
7.5
Red Hat OpenShift

A privilege escalation vulnerability was found in the incluster-checks tool for OpenShift

2026-07-19
CVE-2026-15581
Analyzed
8
Red Hat OpenShift AI

A flaw was found in the TrustyAI Service (TAS) deployment

2026-08-11
CVE-2026-15574
Analyzed
7.5
Red Hat OpenShift AI (RHOAI)

A flaw was found in the vllm-orchestrator-gateway component

2026-07-16
CVE-2026-15572
Analyzed
8.8
Red Hat Red Hat build of Keycloak

A flaw was found in Keycloak's Dynamic Client Registration (DCR) security policy management

2026-08-06
CVE-2026-15555
Analyzed
8.8
Red Hat JBoss Enterprise Application Platform

A flaw was found in JBoss marshalling

2026-08-12
CVE-2026-15467
Analyzed
8.1
Red Hat OpenShift AI

A flaw was found in the trustyai-service-operator's LMEvalJob controller

2026-08-11
CVE-2026-15416
Analyzed
8.9
Red Hat argo-helm / Argo CD

A flaw was identified in Argo CD, the GitOps engine used by Red Hat OpenShift GitOps, that could allow an unauthenticated attacker with network access...

2026-07-15
CVE-2026-15378
Analyzed
9.3
Red Hat OpenShift AI (RHOAI)

A blind SSRF vulnerability in the Red Hat OpenShift AI guardrails-detectors component allows remote attackers to access sensitive internal metadata an...

2026-07-11
CVE-2026-15218
Analyzed
7.9
Red Hat OpenShift AI

A flaw was found in the maas-api and maas-controller ServiceAccounts within Red Hat OpenShift AI

2026-08-18
CVE-2026-15143
Analyzed
9.3
Red Hat OpenShift AI (RHOAI)

A Server-Side Request Forgery vulnerability in the Red Hat OpenShift AI guardrails-detectors component permits unauthorized internal network requests...

2026-07-11
CVE-2026-14476
Analyzed
8
Red Hat Red Hat Enterprise Linux (SSSD)

A path traversal flaw was found in SSSD's AD GPO provider

2026-07-08
CVE-2026-14474
Analyzed
8.8
Red Hat Red Hat Enterprise Linux (RHEL) / OpenShift

A flaw was found in SSSD's LDAP sudo provider

2026-07-08
CVE-2026-14164
Analyzed
7.5
Red Hat Red Hat Enterprise Linux 10

A double free issue has been identified in libarchive's RAR5 reader

2026-06-30
CVE-2026-13717
Analyzed
8.8
Red Hat OpenShift AI (RHOAI)

A flaw was found in the Red Hat OpenShift AI (RHOAI) MaaS Gateway

2026-08-11
CVE-2026-13622
Analyzed
8.8
Red Hat OpenShift Virtualization

A symlink following vulnerability was found in KubeVirt's virt-handler migration proxy

2026-08-13
CVE-2026-13325
Analyzed
8.5
Red Hat OpenShift Virtualization

A flaw was found in KubeVirt's migration proxy

2026-06-27
CVE-2026-12975
Analyzed
8.5
Red Hat Apicurio Registry

A flaw was found in Apicurio Registry

2026-06-26
CVE-2026-12912
Analyzed
7.3
Red Hat Red Hat Enterprise Linux 10

A flaw was found in libtiff

2026-06-30
CVE-2026-12856
Analyzed
8.8
Red Hat OpenShift Dev Spaces

A flaw was found in the vscode-java extension, which provides Java language support for Visual Studio Code

2026-06-30
CVE-2026-12383
Analyzed
7.5
Red Hat Red Hat Ansible Automation Platform 2

A flaw was found in the Event-Driven Ansible (EDA) server

2026-08-15
CVE-2026-12382
Analyzed
8.2
Red Hat Red Hat Ansible Automation Platform

A flaw was found in the AAP Gateway Envoy proxy configuration

2026-07-17
CVE-2026-12112
Analyzed
7.8
Red Hat Satellite

A flaw was found in the foreman-mcp-server

2026-06-24
CVE-2026-11807
Analyzed
9.6
Red Hat Ansible Automation Platform 2.5

A missing authorization vulnerability in the Event-Driven Ansible (EDA) websocket API allows authenticated users to access plaintext credentials, incl...

2026-06-24
CVE-2026-11800
Analyzed
8.1
Red Hat Keycloak

A flaw was found in Keycloak

2026-06-27
CVE-2026-11770
Analyzed
7.5
Red Hat Directory Server

A flaw was found in 389 Directory Server

2026-08-01
CVE-2026-11610
Analyzed
8.8
Red Hat Directory Server

A heap buffer overflow flaw was found in the SASL I/O layer of 389 Directory Server (389-ds-base)

2026-07-08
CVE-2026-10090
Analyzed
9.9
Red Hat Advanced Cluster Management for Kubernetes

A privilege escalation vulnerability in the Red Hat Advanced Cluster Management Application Subscription controller allows authenticated users to gain...

2026-08-06
CVE-2026-0980
8.3
Red Hat Satellite

A flaw was found in rubyipmi, a gem used in the Baseboard Management Controller (BMC) component of Red Hat Satellite

2026-02-27
CVE-2025-14443
Analyzed
8.5
Red Hat Multiple Products

A flaw was found in ose-openshift-apiserver

2025-12-17
CVE-2025-12805
8.1
Red Hat OpenShift AI

A flaw was found in Red Hat OpenShift AI (RHOAI) llama-stack-operator

2026-03-28
CVE-2025-10725
Analyzed
9.9
Red Hat Multiple Products

A flaw was found in Red Hat Openshift AI Service. A low-privileged attacker with access to an authenticated account, for example as a data scientist u...

2025-09-30
CVE-2025-10622
8
Red Hat Multiple Products

A flaw was found in Red Hat Satellite (Foreman component)

2025-11-06