Vulnerabilities > Redhat > Enterprise Linux Update Services FOR SAP Solutions > 9.0

DATE CVE VULNERABILITY TITLE RISK
2025-02-27 CVE-2025-1755 Untrusted Search Path vulnerability in multiple products
MongoDB Compass may be susceptible to local privilege escalation under certain conditions potentially enabling unauthorized actions on a user's system with elevated privileges, when a crafted file is stored in C:\node_modules\.
local
low complexity
mongodb redhat CWE-426
7.8
2024-10-09 CVE-2024-9675 A vulnerability was found in Buildah.
local
low complexity
buildah-project redhat
7.8
2024-01-10 CVE-2023-5455 Cross-Site Request Forgery (CSRF) vulnerability in multiple products
A Cross-site request forgery vulnerability exists in ipa/session/login_password in all supported versions of IPA.
network
low complexity
freeipa fedoraproject redhat CWE-352
6.5