Red Hat Quay是美国红帽(Red Hat)公司的一款分布式容器镜像仓库,它主要用于构建、分布和部署容器。 Red Hat Quay 3存在代码问题漏洞,该漏洞源于在执行敏感操作请求密码重新验证时,可绕过重新身份验证提示,导致会话超时或空闲会话的攻击者无需提供有效凭据即可执行特权操作。
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| Vendor | Product | Affected Versions | CPE | Subscribe |
|---|---|---|---|---|
| Red Hat | Red Hat Quay 3 | - |
cpe:/a:redhat:quay:3
|
|
| Red Hat | Red Hat Quay 3 | - |
cpe:/a:redhat:quay:3
|
|
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POC| CVE-2026-6859 | 8.8 HIGH | Instructlab: instructlab: arbitrary code execution due to hardcoded `trust_remote_code=tru |
| CVE-2026-6855 | 7.1 HIGH | Instructlab: instructlab: path traversal allows arbitrary directory creation and file writ |
| CVE-2026-6861 | 6.1 MEDIUM | Emacs: emacs: memory corruption vulnerability when processing svg css |
| CVE-2026-6862 | 5.5 MEDIUM | Efivar: efivar: denial of service due to stack overflow in device path node parsing |
| CVE-2026-6844 | 5.5 MEDIUM | Binutils: binutils: denial of service vulnerabilities in readelf via crafted elf files |
| CVE-2026-6843 | 5.5 MEDIUM | Nano: nano: format string vulnerability leads to denial of service |
| CVE-2026-6845 | 5.0 MEDIUM | Binutils: binutils: denial of service via crafted elf file |
No comments yet