Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1359 CNY

100%

Red Hat — Vulnerabilities & Security Advisories 1426

Browse all 1426 CVE security advisories affecting Red Hat. AI-powered Chinese analysis, POCs, and references for each vulnerability.

Red Hat operates primarily as a provider of open-source enterprise software solutions, most notably its Linux operating system and container platforms. With 688 recorded Common Vulnerabilities and Exposures, the organization’s historical attack surface frequently involves remote code execution, cross-site scripting, and privilege escalation flaws within its middleware and management tools. These vulnerabilities often stem from complex codebases and third-party dependencies integrated into its distribution. Security characteristics are defined by a rigorous patching lifecycle and the Red Hat Security Response Team, which issues timely advisories for critical issues. While major public breaches directly attributed to Red Hat core infrastructure are rare, individual component flaws have occasionally allowed attackers to gain unauthorized access or execute arbitrary commands. The company maintains a strong reputation for transparency, providing detailed technical guidance to help administrators mitigate risks associated with its widely deployed enterprise technologies.

CVE ID Title CVSS Severity Published
CVE-2026-70398 Multicloud-integrations: multicloud-integrations: gitopscluster.spec.argoserver.argonamespace writes spoke bearer tokens to attacker-chosen namespace — Red Hat Advanced Cluster Management for Kubernetes 2.11 CWE-441 9.6 Critical 2026-08-12
CVE-2026-72526 Multicloud-integrations: multicloud-integrations: pull-model propagation allows hub tenant to target arbitrary spoke cluster via unvalidated ocm-managed-cluster annotation — Red Hat Advanced Cluster Management for Kubernetes 2.11 CWE-441 9.9 Critical 2026-08-12
CVE-2026-19550 Freeipa: ipa: freeipa: trust-fetch-domains uses trust-read aci to gate a privileged ad trust refresh, allowing unauthorized ldap writes — Red Hat Enterprise Linux 10 CWE-863 8.2 High 2026-08-11
CVE-2026-71474 Insights-client-rhel9: insights-client: pull-secret bearer token written to logs on non-200 ccx response — Red Hat Advanced Cluster Management for Kubernetes 2.11 CWE-532 7.1 High 2026-08-11
CVE-2026-71468 Acm-search-v2-api-rhel9: search-v2-api: cross-user bearer-token reuse via global federation-config cache — Red Hat Advanced Cluster Management for Kubernetes 2.11 CWE-266 5.3 Medium 2026-08-11
CVE-2026-71475 Insights-client-rhel9: insights-client: spoke-controlled clusterid injected unencoded into insights api url path — Red Hat Advanced Cluster Management for Kubernetes 2.13 CWE-22 6.8 Medium 2026-08-11
CVE-2026-71845 Insights-client: insights-client: ccx_token bearer credential logged in clear text at startup via setdefault() — Red Hat Advanced Cluster Management for Kubernetes 2.11 CWE-532 6.3 Medium 2026-08-11
CVE-2026-71467 Acm-search-v2-api-rhel9: search-v2-api: authentication bypass on /federated via upgrade: websocket header spoofing — Red Hat Advanced Cluster Management for Kubernetes 2.17 CWE-287 7.5 High 2026-08-11
CVE-2026-19078 Ose-oauth-server: oauth-server: open redirect vulnerability enables phishing via unvalidated parameter. — Red Hat OpenShift Container Platform 4 CWE-601 4.3 Medium 2026-08-11
CVE-2026-14180 Undertow-core: undertow:http request smuggling via oversized chunk-size bit overlap — Red Hat JBoss Enterprise Application Platform 8.1 for RHEL 10 CWE-444 5.3 Medium 2026-08-11
CVE-2026-19546 Dbi: incomplete fix for cve-2026-14380 dbi: arbitrary code execution via caller-influenced profile attribute — Red Hat Enterprise Linux 10 CWE-94 8.8 High 2026-08-11
CVE-2026-50236 Openshift/console: authenticated ssrf with full response reflection and path neutralization via dev console webhook helpers in openshift console — Red Hat OpenShift Container Platform 4.14 CWE-918 7.4 High 2026-08-11
CVE-2026-50237 Openshift/console: namespace tenant ssrf with egress bypass, catalog poisoning, and admin-mediated supply chain escalation via projecthelmchartrepository in openshift console — Red Hat OpenShift Container Platform 4.12 CWE-918 7.4 High 2026-08-11
CVE-2026-71218 Iperf3: unbounded peer-controlled allocation in iperf3 json_read() allows unauthenticated remote memory exhaustion — Red Hat Enterprise Linux 10 CWE-789 5.3 Medium 2026-08-11
CVE-2026-71217 Iperf3: iperf3 server accepts unbounded peer-controlled json parameters enabling remote denial of service via resource exhaustion — Red Hat Enterprise Linux 10 CWE-20 7.5 High 2026-08-11
CVE-2026-15567 Wildfly: wildfly-iiop: wildfly-jacorb: wildfly: pre-auth denial of service on the iiop listener — Red Hat JBoss Enterprise Application Platform 7.4.25 7.5 High 2026-08-11
CVE-2026-15565 Undertow: undertow-websockets: undertow: pre-auth dos on websocket endpoint with @serverendpoint class with any @onmessage method — Red Hat JBoss Enterprise Application Platform 7.4.25 CWE-120 7.5 High 2026-08-11
CVE-2026-15563 Wildfly-iiop-openjdk: missing authentication on eap's iiop nameservice leads to mitm or dos — Red Hat JBoss Enterprise Application Platform 7.4.25 CWE-306 7.4 High 2026-08-11
CVE-2026-15562 Jboss-remoting: jboss-remoting: integer overflow in messagereader leads to pre-authentication denial of service — Red Hat JBoss Enterprise Application Platform 7.4.25 CWE-190 7.5 High 2026-08-11
CVE-2026-15561 Undertow-core: oom via missing limits in chunked trailer in eap's undertow — Red Hat JBoss Enterprise Application Platform 7.4.25 CWE-770 7.5 High 2026-08-11
CVE-2026-15560 Openjdk-orb: unauthed class loading via iiop in eap — Red Hat JBoss Enterprise Application Platform 7.4.25 CWE-829 8.1 High 2026-08-11
CVE-2026-15556 Picketlink-federation: picketlink saml 2.0 auth bypass via missing assertions — Red Hat JBoss Enterprise Application Platform 7.4.25 CWE-347 8.1 High 2026-08-11
CVE-2026-15555 Jboss-marshalling-river: wildfly-clustering-infinispan-marshalling: jboss deserialization rce via unfiltered river unmarshaller — Red Hat JBoss Enterprise Application Platform 7.4.25 CWE-502 8.8 High 2026-08-11
CVE-2026-15554 Undertow-core: undertow: authentication bypass via ajp ssl_cert/is_ssl forgery — Red Hat JBoss Enterprise Application Platform 7.4.25 CWE-295 7.4 High 2026-08-11
CVE-2026-10579 Picketlink-federation: auth bypass in picketlink saml unsolicited-response — Red Hat JBoss Enterprise Application Platform 7.4.25 CWE-347 9.8 Critical 2026-08-11
CVE-2026-72693 Kbd: local privilege escalation in openvt via incorrect process owner verification allowing passwordless root login — Red Hat Enterprise Linux 10 CWE-284 7.8 High 2026-08-11
CVE-2026-72694 Mrtg: mrtg daemon symlink-following chown allows local privilege escalation via pid file path manipulation — Red Hat Enterprise Linux 10 CWE-59 7.1 High 2026-08-11
CVE-2026-19519 Claircore: claircore: denial of service via unchecked type assertion in rpm header parser — Red Hat Advanced Cluster Security 4 CWE-617 4.3 Medium 2026-08-11
CVE-2026-19391 Insights-core: insights-core: incomplete credential redaction exposes sssd bind passwords and pacemaker fence credentials in uploaded archives — Pen Drive Powered by Red Hat Lightspeed CWE-312 6.5 Medium 2026-08-11
CVE-2026-24329 Wildfly-core: wildfly core: denial of service via malformed payload injection by an authenticated administrative user. — Red Hat Fuse 7 CWE-91 4.9 Medium 2026-08-11

This page lists every published CVE security advisory associated with Red Hat. Each entry links to a detailed page with CVSS scoring, CWE classification, affected products and references. AI-generated Chinese analysis is provided for fast triage.