Vulnerabilities > Redhat > High

DATE CVE VULNERABILITY TITLE RISK
2024-11-04 CVE-2024-51127 Unspecified vulnerability in Redhat Hornetq
An issue in the createTempFile method of hornetq v2.4.9 allows attackers to arbitrarily overwrite files or access sensitive information.
local
low complexity
redhat
7.1
2024-10-29 CVE-2024-50074 Out-of-bounds Read vulnerability in multiple products
In the Linux kernel, the following vulnerability has been resolved: parport: Proper fix for array out-of-bounds access The recent fix for array out-of-bounds accesses replaced sprintf() calls blindly with snprintf().
local
low complexity
linux redhat CWE-125
7.8
2024-10-22 CVE-2024-10234 Cross-site Scripting vulnerability in Redhat products
A vulnerability was found in Wildfly, where a user may perform Cross-site scripting in the Wildfly deployment system.
network
low complexity
redhat CWE-79
7.3
2024-09-10 CVE-2023-6841 Unspecified vulnerability in Redhat Keycloak and Single Sign-On
A denial of service vulnerability was found in keycloak where the amount of attributes per object is not limited,an attacker by sending repeated HTTP requests could cause a resource exhaustion when the application send back rows with long attribute values.
network
low complexity
redhat
7.5
2024-09-09 CVE-2024-7341 Session Fixation vulnerability in Redhat Keycloak
A session fixation issue was discovered in the SAML adapters provided by Keycloak.
network
high complexity
redhat CWE-384
7.1
2024-08-21 CVE-2024-7885 Unspecified vulnerability in Redhat products
A vulnerability was found in Undertow where the ProxyProtocolReadListener reuses the same StringBuilder instance across multiple requests.
network
low complexity
redhat
7.5
2024-08-21 CVE-2024-8007 Improper Certificate Validation vulnerability in Redhat Openstack Platform 16.1/16.2/17.1
A flaw was found in the openstack-tripleo-common component of the Red Hat OpenStack Platform (RHOSP) director.
network
high complexity
redhat CWE-295
8.1
2024-08-19 CVE-2024-44070 An issue was discovered in FRRouting (FRR) through 10.1.
network
low complexity
frrouting redhat
7.5
2024-08-12 CVE-2024-7006 NULL Pointer Dereference vulnerability in multiple products
A null pointer dereference flaw was found in Libtiff via `tif_dirinfo.c`.
network
low complexity
libtiff redhat CWE-476
7.5
2024-08-12 CVE-2024-7557 Unspecified vulnerability in Redhat Openshift AI and Openshift Data Science
A vulnerability was found in OpenShift AI that allows for authentication bypass and privilege escalation across models within the same namespace.
network
low complexity
redhat
8.8