Red Hat Ansible Automation Platform 2是美国Red Hat公司的一款构建、部署和管理自动化的软件。 Red Hat Ansible Automation Platform 2存在安全漏洞,该漏洞源于AWX GitHub webhook集成在处理GitHub pull_request webhooks时,未验证pull_request.statuses_url值是否指向受信任的GitHub API端点,可能导致攻击者提交使用作业模板webhook_key正确签名的伪造we
| Vendor | Product | Version Range | Status |
|---|---|---|---|
| Red Hat | Red Hat Ansible Automation Platform 2 | any |
affected |
any |
affected | ||
any |
affected |
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| Vendor | Product | Affected Versions | CPE | Subscribe |
|---|---|---|---|---|
| Red Hat | Red Hat Ansible Automation Platform 2 | - |
cpe:/a:redhat:ansible_automation_platform:2
|
|
| Red Hat | Red Hat Ansible Automation Platform 2 | - |
cpe:/a:redhat:ansible_automation_platform:2
|
|
| Red Hat | Red Hat Ansible Automation Platform 2 | - |
cpe:/a:redhat:ansible_automation_platform:2
|
|
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POC| CVE-2026-56208 | 7.6 HIGH | Libaom: libaom: heap buffer overflow in av1 encoder first-pass stats buffer via lap mode |
| CVE-2026-56209 | 7.1 HIGH | Libaom: libaom: arbitrary address write via svc layer context oob and cyclic refresh map p |
| CVE-2026-56210 | 7.1 HIGH | Libaom: libaom: heap-buffer-overflow read via missing bounds check in ctrl_set_layer_id |
| CVE-2026-56211 | 7.1 HIGH | Libaom: libaom: remote code execution via svc layer context handling with attacker-control |
| CVE-2026-12706 | 6.5 MEDIUM | Ffmpeg: ffmpeg: heap use-after-free read in rasc decoder decode_move() |
No comments yet