Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1359 CNY

100%

Red Hat — Vulnerabilities & Security Advisories 1426

Browse all 1426 CVE security advisories affecting Red Hat. AI-powered Chinese analysis, POCs, and references for each vulnerability.

Red Hat operates primarily as a provider of open-source enterprise software solutions, most notably its Linux operating system and container platforms. With 688 recorded Common Vulnerabilities and Exposures, the organization’s historical attack surface frequently involves remote code execution, cross-site scripting, and privilege escalation flaws within its middleware and management tools. These vulnerabilities often stem from complex codebases and third-party dependencies integrated into its distribution. Security characteristics are defined by a rigorous patching lifecycle and the Red Hat Security Response Team, which issues timely advisories for critical issues. While major public breaches directly attributed to Red Hat core infrastructure are rare, individual component flaws have occasionally allowed attackers to gain unauthorized access or execute arbitrary commands. The company maintains a strong reputation for transparency, providing detailed technical guidance to help administrators mitigate risks associated with its widely deployed enterprise technologies.

CVE ID Title CVSS Severity Published
CVE-2026-24330 Wildfly-core: wildfly: arbitrary file read via malicious archive deployment — Red Hat Fuse 7 CWE-434 6.5 Medium 2026-08-11
CVE-2026-6426 Qemu-kvm: vhost inflight migration vmstate integer type mismatch causes out-of-bounds access — Red Hat Enterprise Linux 10 CWE-681 4.4 Medium 2026-08-10
CVE-2026-19411 Shim/dp.c library: null-pointer dereference in is_removable_media_path() when devicepathtostr() returns null — Red Hat Enterprise Linux 7 CWE-476 3.9 Low 2026-08-10
CVE-2026-18620 Data-sciences-pipeline: user-controlled serviceaccount for workflow pods without authorization check — confused deputy — Red Hat OpenShift AI 2.25 CWE-639 7.1 High 2026-08-10
CVE-2026-18618 Ml-metdata: bundled grpc 1.46.3 (2022) with published http/2 dos cves — directly reachable on listener — Red Hat OpenShift AI 2.25 CWE-770 7.5 High 2026-08-10
CVE-2026-18611 Data-science-pipelines-operator: dspo: cryptographically weak secret generation (math/rand) for db and s3 credentials — Red Hat OpenShift AI 2.25 CWE-338 7.5 High 2026-08-10
CVE-2026-63622 Libvirt: swtpm privilege escalation via symlink following — Red Hat Enterprise Linux 10.0 Extended Update Support CWE-59 7.8 High 2026-08-10
CVE-2026-18982 Odh-training-operator-rhel9: rhoai fork aggregates training job create onto native edit/admin clusterroles — Red Hat OpenShift AI 2.25 CWE-250 8.8 High 2026-08-10
CVE-2026-18951 Odh-training-operator-rhel9: [trainer v2 security] trn-02: rhoai overlay aggregates trainjobs crud into standard edit clusterrole — Red Hat OpenShift AI 3.3 CWE-267 8.8 High 2026-08-10
CVE-2026-18950 Odh-dashboard: odh-dashboard: confused-deputy privilege escalation via unchecked roleref in rolebinding creation — Red Hat OpenShift AI 2.25 CWE-266 8.8 High 2026-08-10
CVE-2026-18949 Odh-dashboard: odh-dashboard: clusterrole grants cluster-wide crud on secrets and rbac management resources — Red Hat OpenShift AI 2.25 CWE-250 8.8 High 2026-08-10
CVE-2026-18948 Feast: feast: unsafe dill deserialization of registry-stored udfs — rce on feature server and registry server — Red Hat OpenShift AI 2.25 CWE-502 9.9 Critical 2026-08-10
CVE-2026-18947 Feast: feast: authorization bypass in /materialize endpoints enables dos via unauthorized full re-materialization — Red Hat OpenShift AI 2.25 8.5 High 2026-08-10
CVE-2026-18942 Feast-operator: feast: feast apply cronjob runs user python with feature-server sa — tenant code to sa token escalation — Red Hat OpenShift AI 2.25 5.5 Medium 2026-08-10
CVE-2026-18941 Feast: feast-operator: feast: default authentication mode is no_auth — shared multi-tenant instances deployed without authentication — Red Hat OpenShift AI 2.25 CWE-306 7.7 High 2026-08-10
CVE-2026-18621 Data-sciences-pipeline: dsp: v1 argo template path accepts arbitrary workflow spec, bypassing all v2 security hardening — Red Hat OpenShift AI 2.25 CWE-266 7.6 High 2026-08-10
CVE-2026-18617 Data-science-pipelines-operator: dspo: mysql dsn parameter injection via customextraparams enables local infile file exfiltration from operator pod — Red Hat OpenShift AI 2.25 CWE-915 8.8 High 2026-08-10
CVE-2026-18608 Data-science-pipelines-operator: dspo: operator clusterrole grants pods/exec:*, kubeflow.org */*, and clusterrole/binding crud cluster-wide — Red Hat OpenShift AI 2.25 CWE-250 8.7 High 2026-08-10
CVE-2026-16456 Odh-model-controller: odh-model-controller: cross-namespace secret read via nim account crd confused deputy — Red Hat OpenShift AI 2.25 CWE-441 6.5 Medium 2026-08-10
CVE-2026-15581 Trustyai-service-operator: trustyai-service-operator: tas internal service bypasses kube-rbac-proxy, exposing unauthenticated quarkus api cluster-wide — Red Hat OpenShift AI 2.25 CWE-306 8.0 High 2026-08-10
CVE-2026-15467 Trustyai-service-operator: trustyai-service-operator: lmevaljob sidecar containers bypass protected environment variable filtering, allowing trust_remote_code policy override — Red Hat OpenShift AI 2.25 CWE-266 8.1 High 2026-08-10
CVE-2026-14450 Maas-billing: maas api: privilege escalation via forged http headers due to missing authentication — Red Hat OpenShift AI 3.4 CWE-290 9.9 Critical 2026-08-10
CVE-2026-71577 Multicluster-global-hub: multicluster-global-hub: spec-topic read acl leaks bootstrap kubeconfigs to all managed hubs during migration — Multicluster Global Hub 1.4.9 CWE-522 6.3 Medium 2026-08-10
CVE-2026-63623 Libvirt: information disclosure via world-readable storage volume images during clone/convert — Red Hat Enterprise Linux 10 CWE-732 5.5 Medium 2026-08-10
CVE-2026-71576 Multicluster-global-hub: multicluster-global-hub: manager trusts self-asserted evt.source() for leaf-hub identity in all status handlers — Multicluster Global Hub 1.4.9 CWE-345 8.5 High 2026-08-10
CVE-2026-19278 Stackrox: stackrox: privilege escalation via unanchored regular expressions in auth m2m role mappings — Red Hat Advanced Cluster Security 4 CWE-625 6.8 Medium 2026-08-10
CVE-2026-19404 389-ds-base: 389-ds-base: missing authorization allows anonymous clients to start or abort cleanallruv replication maintenance — Red Hat Directory Server 11 CWE-862 6.5 Medium 2026-08-10
CVE-2026-19389 Gstreamer: gstreamer1-plugins-ugly-free: gstreamer: integer overflow/underflow in asfdemux bounds checks leading to out-of-bounds read — Red Hat Enterprise Linux 10 CWE-190 7.1 High 2026-08-10
CVE-2026-19387 Gstreamer: gstreamer1-plugins-bad-free: gstreamer: heap out-of-bounds write in adpcmdec ima/dvi adpcm decoder — Red Hat Enterprise Linux 10 CWE-787 7.6 High 2026-08-10
CVE-2026-42170 Gimp: gimp dds plug-in heap-based buffer overflow via bpp mismatch in load_layer() (ddsread.c) — Red Hat Enterprise Linux 6 CWE-131 7.8 High 2026-08-08

This page lists every published CVE security advisory associated with Red Hat. Each entry links to a detailed page with CVSS scoring, CWE classification, affected products and references. AI-generated Chinese analysis is provided for fast triage.