VUMETRIC
CYBER PORTAL
Dashboard
Security News
Latest Vulnerabilities
Browse Vulnerabilities
by Vendors
by Products
by Categories
Weekly Reports
Vulnerabilities
>
Redhat
> Critical
Exclude new CVEs:
DATE
CVE
VULNERABILITY TITLE
RISK
2024-01-18
CVE-2023-6816
Out-of-bounds Write vulnerability in multiple products
A flaw was found in X.Org server.
network
low complexity
x-org
fedoraproject
redhat
debian
CWE-787
critical
9.8
9.8
2023-12-09
CVE-2023-6394
Missing Authorization vulnerability in multiple products
A flaw was found in Quarkus.
network
low complexity
quarkus
redhat
CWE-862
critical
9.1
9.1
2023-11-03
CVE-2023-3961
Path Traversal vulnerability in multiple products
A path traversal vulnerability was identified in Samba when processing client pipe names connecting to Unix domain sockets within a private directory.
network
low complexity
samba
redhat
fedoraproject
CWE-22
critical
9.8
9.8
2023-09-22
CVE-2022-4039
Incorrect Default Permissions vulnerability in Redhat products
A flaw was found in Red Hat Single Sign-On for OpenShift container images, which are configured with an unsecured management interface enabled.
network
low complexity
redhat
CWE-276
critical
9.8
9.8
2023-09-22
CVE-2022-3874
OS Command Injection vulnerability in multiple products
A command injection flaw was found in foreman.
network
low complexity
redhat
theforeman
CWE-78
critical
9.1
9.1
2023-09-20
CVE-2023-0118
OS Command Injection vulnerability in multiple products
An arbitrary code execution flaw was found in Foreman.
network
low complexity
theforeman
redhat
CWE-78
critical
9.1
9.1
2023-09-20
CVE-2023-0462
Code Injection vulnerability in multiple products
An arbitrary code execution flaw was found in Foreman.
network
low complexity
theforeman
redhat
CWE-94
critical
9.1
9.1
2023-09-15
CVE-2023-0923
Missing Authorization vulnerability in Redhat Openshift Data Science
A flaw was found in the Kubernetes service for notebooks in RHODS, where it does not prevent pods from other namespaces and applications from making requests to the Jupyter API.
network
low complexity
redhat
CWE-862
critical
9.8
9.8
2023-05-30
CVE-2023-34152
OS Command Injection vulnerability in multiple products
A vulnerability was found in ImageMagick.
network
low complexity
imagemagick
fedoraproject
redhat
CWE-78
critical
9.8
9.8
2023-05-17
CVE-2023-2319
It was discovered that an update for PCS package in RHBA-2023:2151 erratum released as part of Red Hat Enterprise Linux 9.2 failed to include the fix for the Webpack issue CVE-2023-28154 (for PCS package), which was previously addressed in Red Hat Enterprise Linux 9.1 via erratum RHSA-2023:1591.
network
low complexity
clusterlabs
redhat
critical
9.8
9.8
«
1
(current)
2
3
4
5
...
50
51
»
Next