Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1336 CNY

100%

RED HAT — Vulnerabilities & Security Advisories 1143

Browse all 1143 CVE security advisories affecting RED HAT. AI-powered Chinese analysis, POCs, and references for each vulnerability.

Red Hat operates primarily as a provider of open-source enterprise software solutions, most notably its Linux operating system and container platforms. With 688 recorded Common Vulnerabilities and Exposures, the organization’s historical attack surface frequently involves remote code execution, cross-site scripting, and privilege escalation flaws within its middleware and management tools. These vulnerabilities often stem from complex codebases and third-party dependencies integrated into its distribution. Security characteristics are defined by a rigorous patching lifecycle and the Red Hat Security Response Team, which issues timely advisories for critical issues. While major public breaches directly attributed to Red Hat core infrastructure are rare, individual component flaws have occasionally allowed attackers to gain unauthorized access or execute arbitrary commands. The company maintains a strong reputation for transparency, providing detailed technical guidance to help administrators mitigate risks associated with its widely deployed enterprise technologies.

CVE IDTitleCVSSSeverityPublished
CVE-2026-10090 Multicluster-operators-subscription: multicluster-operators-subscription: namespace edit user can deploy cluster-scoped clusterrolebinding and become cluster-admin via application subscription — Red Hat Advanced Cluster Management for Kubernetes 2CWE-267 9.0 Critical2026-08-05
CVE-2026-10059 Cluster-curator-controller: cluster-curator-controller: namespace admin can escalate to cluster-wide curator authority via clustercurator serviceaccount token — Multicluster Engine for KubernetesCWE-266 9.1 Critical2026-08-05
CVE-2026-18103 Dhcp-server: dhcp-server: persistent denial of service due to buffer overflow via omapi — Red Hat Enterprise Linux 6CWE-120 4.9 Medium2026-08-04
CVE-2026-68743 Sssd: sssd: pam responder out-of-bounds read via unchecked auth_token_length in protocol v1 — Red Hat Enterprise Linux 10CWE-125 5.5 Medium2026-08-04
CVE-2026-68744 Sssd: sssd: nss responder uninitialized heap disclosure in initgroups reply — Red Hat Enterprise Linux 10CWE-908 3.3 Low2026-08-04
CVE-2026-18569 Keycloak-services: keycloak-services: oidc backchannel logout accepts unsigned forged logout tokens — Red Hat Build of KeycloakCWE-347 3.7 Low2026-08-04
CVE-2026-42169 Gimp: gimp apng loader heap-buffer-overflow when fctl width exceeds ihdr width (file-png.c) — Red Hat Enterprise Linux 9CWE-131 7.3 High2026-08-04
CVE-2026-17614 Wildfly-core: path traversal on wildfly domain controller — Red Hat JBoss Enterprise Application Platform 7CWE-22 4.4 Medium2026-08-04
CVE-2026-18477 Tar: tar: toctou in incremental dumpdir 'x' rename handling allows restore path escape — Red Hat Hardened ImagesCWE-367 4.4 Medium2026-08-03
CVE-2026-18651 389-ds-base: 389-ds-base: sasl plain bind installs connection credentials before account-lock check, allowing continued access as a locked account — Red Hat Directory Server 11CWE-287 5.4 Medium2026-08-03
CVE-2026-18508 Tar: tar: --one-top-level hardlink targets not confined to top-level directory enabling arbitrary file overwrite — Red Hat Hardened ImagesCWE-59 4.4 Medium2026-08-03
CVE-2026-68742 Sssd: sssd: nss responder out-of-bounds read via unchecked addrlen in gethostbyaddr — Red Hat Enterprise Linux 10CWE-125 5.5 Medium2026-08-03
CVE-2026-6695 Gimp: gimp: remote code execution via crafted paa file — Red Hat Enterprise Linux 6CWE-805 5.5 Medium2026-08-03
CVE-2026-6694 Gimp: gimp file-png plugin: denial of service via oversized apng trns chunk — Red Hat Enterprise Linux 6CWE-120 5.5 Medium2026-08-03
CVE-2026-18573 Keycloak-services: keycloak-services: client access-type policy condition bypass during client update — Red Hat Build of KeycloakCWE-862 6.5 Medium2026-08-02
CVE-2026-18572 Keycloak-services: keycloak-services: uma claim token can override authorization time-policy evaluation attributes — Red Hat Build of KeycloakCWE-863 6.5 Medium2026-08-02
CVE-2026-18571 Keycloak-services: keycloak-services: fgap v2 group assignment bypass during user creation — Red Hat Build of KeycloakCWE-862 6.6 Medium2026-08-02
CVE-2026-18570 Keycloak-services: keycloak-services: full-scope-disabled client policy validation bypass via omitted fullscopeallowed — Red Hat Build of KeycloakCWE-862 5.4 Medium2026-08-02
CVE-2026-18141 Aap-gateway: aap-gateway: authentication bypass in event-driven ansible via forged http header — Red Hat Ansible Automation Platform 2.6 for RHEL 9CWE-295 8.2 High2026-07-31
CVE-2026-11770 389-ds-base: 389-ds-base: pre-auth ldap filter injection in cleanallruv status check — Red Hat Directory Server 11.9 for RHEL 8CWE-90 7.5 High2026-07-31
CVE-2026-15722 389-ds-base: 389-ds-base: pre-authentication stack buffer overflow in get_ruvelement_from_berval() via unbounded replica id parsing — Red Hat Directory Server 11.9 for RHEL 8CWE-121 7.5 High2026-07-31
CVE-2026-10079 Stackrox: stackrox: deploy-time policy enforcement and visibility bypass via label injection — Red Hat Advanced Cluster Security 4CWE-345 8.5 High2026-07-31
CVE-2026-18209 Keycloak-services: keycloak-services: oidc redirect_uri fragment bypass in http parameter pollution check — Red Hat Build of KeycloakCWE-1288 3.4 Low2026-07-31
CVE-2026-18206 Keycloak-services: keycloak-services: client policy source-host wildcard domain matching bypass — Red Hat Build of KeycloakCWE-20 3.7 Low2026-07-31
CVE-2026-18203 Keycloak-services: keycloak-services: group policy extendchildren matches sibling group path prefixes — Red Hat Build of KeycloakCWE-863 6.5 Medium2026-07-31
CVE-2026-18214 Keycloak-services: keycloak-services: google external access-token exchange bypasses hosted-domain restriction — Red Hat Build of KeycloakCWE-862 6.8 Medium2026-07-31
CVE-2026-18211 Keycloak-services: keycloak-services: secure-client-uris policy bypass via localhost-prefixed domains — Red Hat Build of KeycloakCWE-20 4.2 Medium2026-07-31
CVE-2026-18208 Keycloak-services: keycloak-services: inactive out-of-audience token introspection leaks signed jwt claim — Red Hat Build of KeycloakCWE-862 6.5 Medium2026-07-31
CVE-2026-16105 Keycloak-services: keycloak-services: missing per-role authorization on rolecontainerresource composite endpoints — Red Hat Build of Keycloak 4.9 Medium2026-07-31
CVE-2026-18215 Keycloak-services: keycloak-services: microsoft external access-token exchange bypasses configured tenant — Red Hat Build of KeycloakCWE-287 6.8 Medium2026-07-31

This page lists every published CVE security advisory associated with RED HAT. Each entry links to a detailed page with CVSS scoring, CWE classification, affected products and references. AI-generated Chinese analysis is provided for fast triage.