Vulnerabilities > Redhat

DATE CVE VULNERABILITY TITLE RISK
2023-10-05 CVE-2022-4145 Injection vulnerability in Redhat Openshift Container Platform 4.0
A content spoofing flaw was found in OpenShift's OAuth endpoint.
network
low complexity
redhat CWE-74
5.3
2023-10-04 CVE-2023-39191 An improper input validation flaw was found in the eBPF subsystem in the Linux kernel.
local
low complexity
linux fedoraproject redhat
8.2
2023-10-04 CVE-2023-3576 Memory Leak vulnerability in multiple products
A memory leak flaw was found in Libtiff's tiffcrop utility.
local
low complexity
libtiff fedoraproject redhat CWE-401
5.5
2023-10-04 CVE-2023-3971 Cross-site Scripting vulnerability in Redhat products
An HTML injection flaw was found in Controller in the user interface settings.
network
low complexity
redhat CWE-79
5.4
2023-10-04 CVE-2023-4237 Unspecified vulnerability in Redhat Ansible Automation Platform and Ansible Collection
A flaw was found in the Ansible Automation Platform.
local
low complexity
redhat
7.8
2023-10-04 CVE-2023-4380 Information Exposure Through Log Files vulnerability in Redhat products
A logic flaw exists in Ansible Automation platform.
network
low complexity
redhat CWE-532
6.3
2023-10-04 CVE-2023-1832 Incorrect Authorization vulnerability in multiple products
An improper access control flaw was found in Candlepin.
network
low complexity
candlepinproject redhat CWE-863
8.1
2023-10-04 CVE-2022-4132 Memory Leak vulnerability in multiple products
A flaw was found in JSS.
network
high complexity
dogtagpki redhat CWE-401
5.9
2023-10-04 CVE-2023-3153 Allocation of Resources Without Limits or Throttling vulnerability in multiple products
A flaw was found in Open Virtual Network where the service monitor MAC does not properly rate limit.
network
low complexity
ovn redhat CWE-770
5.3
2023-10-04 CVE-2023-3361 Cleartext Transmission of Sensitive Information vulnerability in multiple products
A flaw was found in Red Hat OpenShift Data Science.
network
low complexity
opendatahub redhat CWE-319
7.5