Redhat
17,638 known vulnerabilities
Top Products
A memory leak was found in Open vSwitch (OVS) during userspace IP fragmentation processing. An attacker could use this f
A flaw was found in the vhost library in DPDK. Function vhost_user_set_inflight_fd() does not validate `msg->payload.inf
A flaw was found in keycloak, where the default ECP binding flow allows other authentication flows to be bypassed. By ex
A flaw was found in the Red Hat AMQ Broker management console in version 7.8 where an existing user is able to access so
A flaw was found in the Linux kernels memory deduplication mechanism. Previous work has shown that memory deduplication
A race condition flaw was found in ansible-runner, where an attacker could watch for rapid creation and deletion of a te
A flaw was found in ansible-runner where the default temporary files configuration in ansible-2.0.0 are written to world
A flaw was found in Undertow. A buffer leak on the incoming WebSocket PONG message may lead to memory exhaustion. This f
MaxQueryDuration not honoured in Samba AD DC LDAP
An improper link resolution flaw can occur while extracting an archive leading to changing modes, times, access control
An improper link resolution flaw while extracting an archive can lead to changing the access control list (ACL) of the t
A flaw was found in the way Samba handled file/directory metadata. This flaw allows an authenticated attacker with permi
A flaw was found in keycloak affecting versions 11.0.3 and 12.0.0. An expired certificate would be accepted by the direc
An out-of-bounds memory access flaw was found in the Linux kernel Intel’s iSMT SMBus host controller driver in the way a
A NULL pointer dereference flaw was found in the Linux kernel’s IEEE 802.15.4 wireless networking subsystem in the way t
A flaw was found in Foreman project. A credential leak was identified which will expose Azure Compute Profile password t
A flaw was found in servicemesh-operator. The NetworkPolicy resources installed for Maistra do not properly specify whic
A flaw was found in keycloak where a brute force attack is possible even when the permanent lockout feature is enabled.
A flaw was found in the Red Hat OpenShift API Management product. User input is not validated allowing an authenticated
A flaw was found in cluster-ingress-operator. A change to how the router-default service allows only certain IP source r
A privilege escalation flaw was found in the Ansible Automation Platform. This flaw allows a remote authenticated user w
A vulnerability was found in PostgreSQL. This attack requires permission to create non-temporary objects in at least one
An infinite loop flaw was found in the USB xHCI controller emulation of QEMU while computing the length of the Transfer
A flaw was found in Red Hat AMQ Broker in a way that a XEE attack can be done via Broker's configuration files, leading
XML external entity injection(XXE) is a vulnerability that allows an attacker to interfere with an application's process
A flaw was found in Red Hat Process Automation Manager 7 where an attacker can benefit from a brute force attack against
Linux deployments of StorageGRID (formerly StorageGRID Webscale) versions 11.6.0 through 11.6.0.2 deployed with a Linux
An issue was discovered in Keycloak that allows arbitrary Javascript to be uploaded for the SAML protocol mapper even if
A flaw was found in KVM. When updating a guest's page table entry, vm_pgoff was improperly used as the offset to get the
When a POST request comes through AJP and the request exceeds the max-post-size limit (maxEntitySize), Undertow's AjpSer
A vulnerability found in gnutls. This security flaw happens because of a double free error occurs during verification of
A reflected XSS issue was identified in the LTI module of Moodle. The vulnerability exists due to insufficient sanitizat
A stored XSS and blind SSRF vulnerability was found in Moodle, occurs due to insufficient sanitization of user-supplied
A flaw was found in Openstack manilla owning a Ceph File system "share", which enables the owner to read/write any manil
An Incorrect Permission Assignment for Critical Resource flaw was found in Horizon on Red Hat OpenStack. Horizon session
A flaw was found in pki-core, which could allow a user to get a certificate for another user identity when directory-bas
A vulnerability was found in libguestfs. This issue occurs while calculating the greatest possible number of matching ke
Security vulnerabilities in HPE IceWall SSO 10.0 certd could be exploited remotely to allow SQL injection or unauthorize
A privilege escalation flaw was found in the token exchange feature of keycloak. Missing authorization allows a client a
A insecure configuration for certificate verification (http.verify_mode = OpenSSL::SSL::VERIFY_NONE) may lead to verific
A crafted JPEG image may lead the JPEG reader to underflow its data pointer, allowing user-controlled data to be written
A heap out-of-bounds write may heppen during the handling of Huffman tables in the PNG reader. This may lead to data cor
A crafted 16-bit grayscale PNG image may lead to a out-of-bounds write in the heap area. An attacker may take advantage
Multiple persistent cross-site scripting (XSS) flaws were found in the way Aerogear handled certain user-supplied conten
The simplepush server iterates through the application installations and pushes a notification to the server provided by
It was reported that watchman in openshift node-utils creates /var/run/watchman.pid and /var/log/watchman.ouput with wor
In a openshift node, there is a cron job to update mcollective facts that mishandles a temporary file. This may lead to
A vulnerability was found in the Linux kernel's nft_set_desc_concat_parse() function .This flaw allows an attacker to tr
A NULL pointer dereference flaw was found in the Linux kernel’s KVM module, which can lead to a denial of service in the
A flaw was found in PackageKit in the way some of the methods exposed by the Transaction interface examines files. This
Frequently Asked Questions
How many CVEs affect Redhat?
Redhat has 17,638 CVE records in our database, including 1817 critical and 6954 high severity vulnerabilities. 43 of these are listed in CISA's Known Exploited Vulnerabilities catalog.
What are the most severe Redhat vulnerabilities?
Redhat has 1817 critical severity (CVSS 9.0+) and 6954 high severity (CVSS 7.0-8.9) vulnerabilities. 43 vulnerabilities are confirmed as actively exploited in the wild.
How can I scan for Redhat vulnerabilities?
CyberStrike's AI-powered security agents automatically detect vulnerabilities in Redhat products across your infrastructure. The platform provides continuous pentesting, DAST scanning, and real-time vulnerability monitoring with actionable remediation guidance.
Detect Redhat Vulnerabilities
CyberStrike scans your infrastructure for Redhat vulnerabilities and provides real-time remediation guidance.
Get Started