Redhat
17,638 known vulnerabilities
Top Products
NVIDIA GPU Display Driver for Linux contains a vulnerability in a kernel mode layer handler, which may lead to denial of
A use-after-free flaw was found in nfsd4_ssc_setup_dul in fs/nfsd/nfs4proc.c in the NFS filesystem in the Linux Kernel.
A vulnerability was found in the device-mapper-multipath. The device-mapper-multipath allows local users to obtain root
A flaw was found in Keycloak in the execute-actions-email endpoint. This issue allows arbitrary HTML to be injected into
A flaw was found in the QEMU Guest Agent service for Windows. A local unprivileged user may be able to manipulate the QE
A buffer overflow vulnerability was found in the Netfilter subsystem in the Linux Kernel. This issue could allow the lea
A flaw was found in the Keycloak Node.js Adapter. This flaw allows an attacker to benefit from an Open Redirect vulnerab
A slab-out-of-bound read problem was found in brcmf_get_assoc_ies in drivers/net/wireless/broadcom/brcm80211/brcmfmac/cf
A memory corruption flaw was found in the Linux kernel’s human interface device (HID) subsystem in how a user inserts a
A Time-of-check Time-of-use (TOCTOU) flaw was found in podman. This issue may allow a malicious user to replace a normal
A vulnerability was found in X.Org. This issue occurs due to a dangling pointer in DeepCopyPointerClasses that can be ex
A flaw was found in the Linux kernel's implementation of RDMA over infiniband. An attacker with a privileged local accou
A vulnerability was found in OpenShift Assisted Installer. During generation of the Discovery ISO, image pull secrets we
A flaw was found in KVM. When calling the KVM_GET_DEBUGREGS ioctl, on 32-bit systems, there might be some uninitialized
An uncontrolled resource consumption vulnerability was discovered in HAProxy which could crash the service. This issue c
A flaw was found in tripleo-ansible. Due to an insecure default configuration, the permissions of a sensitive file are n
A flaw was found in tripleo-ansible. Due to an insecure default configuration, the permissions of a sensitive file are n
A vulnerability was discovered in ImageMagick where a specially created SVG file loads itself and causes a segmentation
A flaw was found in the c-ares package. The ares_set_sortlist is missing checks about the validity of the input string,
A flaw was found in openstack-glance. This issue could allow a remote, authenticated attacker to tamper with images, com
A flaw was found in Ceph, relating to the URL processing on RGW backends. An attacker can exploit the URL processing by
A double-free memory flaw was found in the Linux kernel. The Intel GVT-g graphics driver triggers VGA card system resour
A use-after-free flaw was found in the Linux kernel’s SGI GRU driver in the way the first gru_file_unlocked_ioctl functi
An uncontrolled resource consumption flaw was found in openstack-neutron. This flaw allows a remote authenticated user t
A vulnerability was found in WebKit. The flaw is triggered when processing maliciously crafted web content that may lead
runc through 1.1.4 has Incorrect Access Control leading to Escalation of Privileges, related to libcontainer/rootfs_linu
In PostgreSQL, a modified, unauthenticated server can send an unterminated string during the establishment of Kerberos t
In nf_tables_updtable, if nf_tables_table_enable returns an error, nft_trans_destroy is called to free the transaction o
A flaw was found in RHDS 11 and RHDS 12. While browsing entries LDAP tries to decode the userPassword attribute instead
If the Quarkus Form Authentication session cookie Path attribute is set to `/` then a cross-site attack may be initiated
The undertow client is not checking the server identity presented by the server certificate in https connections. This i
In RESTEasy the insecure File.createTempFile() is used in the DataSourceProvider, FileProvider and Mime4JWorkaround clas
A timing side-channel in the handling of RSA ClientKeyExchange messages was discovered in GnuTLS. This side-channel can
IBM Watson Knowledge Catalog on Cloud Pak for Data 4.5.0 is vulnerable to SQL injection. A remote attacker could send sp
IBM App Connect Enterprise 11.0.0.17 through 11.0.0.19 and 12.0.4.0 and 12.0.5.0 contains an unspecified vulnerability
A flaw was found in pesign. The pesign package provides a systemd service used to start the pesign daemon. This service
IBM App Connect Enterprise Certified Container 4.1, 4.2, 5.0, 5.1, 5.2, 6.0, 6.1, and 6.2 could disclose sensitive infor
sssd: libsss_certmap fails to sanitise certificate data used in LDAP filters
An illegal memory access flaw was found in the binutils package. Parsing an ELF file containing corrupt symbol version i
A flaw was found in github.com/openshift/apiserver-library-go, used in OpenShift 4.12 and 4.11, that contains an issue t
IBM Robotic Process Automation 20.12.0 through 21.0.2 defaults to HTTP in some RPA commands when the prefix is not expli
IBM Robotic Process Automation for Cloud Pak 20.12.0 through 21.0.4 is vulnerable to cross-site scripting. This vulnerab
IBM Robotic Process Automation for Cloud Pak 21.0.1 through 21.0.4 could allow a local user to perform unauthorized act
A flaw was found in the openstack-barbican component. This issue allows an access policy bypass via a query string when
The Birthday attack against 64-bit block ciphers flaw (CVE-2016-2183) was reported for the health checks port (9979) on
A privilege escalation flaw was found in Ceph. Ceph-crash.service allows a local attacker to escalate privileges to root
A flaw was found in Keycloak. This flaw allows impersonation and lockout due to the email trust not being handled correc
A flaw was found in Keycloak, where it did not properly check client tokens for possible revocation in its client creden
RHACM: unauthenticated SSRF in console API endpoint. A Server-Side Request Forgery (SSRF) vulnerability was found in the
keycloak: path traversal via double URL encoding. A flaw was found in Keycloak, where it does not properly validate URLs
Frequently Asked Questions
How many CVEs affect Redhat?
Redhat has 17,638 CVE records in our database, including 1817 critical and 6954 high severity vulnerabilities. 43 of these are listed in CISA's Known Exploited Vulnerabilities catalog.
What are the most severe Redhat vulnerabilities?
Redhat has 1817 critical severity (CVSS 9.0+) and 6954 high severity (CVSS 7.0-8.9) vulnerabilities. 43 vulnerabilities are confirmed as actively exploited in the wild.
How can I scan for Redhat vulnerabilities?
CyberStrike's AI-powered security agents automatically detect vulnerabilities in Redhat products across your infrastructure. The platform provides continuous pentesting, DAST scanning, and real-time vulnerability monitoring with actionable remediation guidance.
Detect Redhat Vulnerabilities
CyberStrike scans your infrastructure for Redhat vulnerabilities and provides real-time remediation guidance.
Get Started