Vulnerabilities > Redhat

DATE CVE VULNERABILITY TITLE RISK
2023-01-17 CVE-2022-3650 Unspecified vulnerability in Redhat Ceph 16.2.9
A privilege escalation flaw was found in Ceph.
local
low complexity
redhat
7.8
2023-01-13 CVE-2022-3143 Information Exposure Through Discrepancy vulnerability in Redhat products
wildfly-elytron: possible timing attacks via use of unsafe comparator.
network
high complexity
redhat CWE-203
7.4
2023-01-13 CVE-2022-3782 Path Traversal vulnerability in Redhat Keycloak 20.0.2
keycloak: path traversal via double URL encoding.
network
low complexity
redhat CWE-22
critical
9.1
2023-01-13 CVE-2022-3841 Server-Side Request Forgery (SSRF) vulnerability in Redhat Advanced Cluster Management for Kubernetes 2.0
RHACM: unauthenticated SSRF in console API endpoint.
local
low complexity
redhat CWE-918
7.8
2023-01-13 CVE-2023-0091 Incorrect Authorization vulnerability in Redhat Keycloak
A flaw was found in Keycloak, where it did not properly check client tokens for possible revocation in its client credential flow.
network
low complexity
redhat CWE-863
3.8
2023-01-13 CVE-2023-0105 Improper Authentication vulnerability in Redhat Keycloak
A flaw was found in Keycloak.
network
low complexity
redhat CWE-287
6.5
2023-01-12 CVE-2022-4743 Memory Leak vulnerability in multiple products
A potential memory leak issue was discovered in SDL2 in GLES_CreateTexture() function in SDL_render_gles.c.
network
low complexity
libsdl redhat CWE-401
7.5
2023-01-05 CVE-2022-3715 Out-of-bounds Write vulnerability in multiple products
A flaw was found in the bash package, where a heap-buffer overflow can occur in valid parameter_transform.
local
low complexity
gnu redhat CWE-787
7.8
2022-12-28 CVE-2021-4294 Information Exposure Through Discrepancy vulnerability in Redhat Openshift Container Platform and Openshift Osin
A vulnerability was found in OpenShift OSIN.
network
high complexity
redhat CWE-203
5.9
2022-12-21 CVE-2022-38065 Improper Privilege Management vulnerability in Redhat Openstack
A privilege escalation vulnerability exists in the oslo.privsep functionality of OpenStack git master 05194e7618 and prior.
network
low complexity
redhat CWE-269
8.8