Redhat
17,638 known vulnerabilities
Top Products
A flaw was found in 389 Directory Server. The Content Synchronization persistent search plugin allows unbounded memory g
An out-of-bounds write flaw was found in the X.Org X server and Xwayland in DRIGetBuffers/DRIGetBuffersWithFormat. A cli
A use-after-free flaw was found in the X.Org X server and Xwayland in CreateSaverWindow(). A client can trigger a use-af
An out-of-bounds read flaw was found in the X.Org X server and Xwayland in __glXDisp_ChangeDrawableAttributes(). A wrong
A use-after-free flaw was found in the X.Org X server and Xwayland in SyncChangeCounter(). A client that sets up multipl
A use-after-free flaw was found in the X.Org X server and Xwayland in FreeCounter(). A client that sets up multiple Sync
A stack-based buffer overflow flaw was found in the X.Org X server and Xwayland. _XkbSetMapChecks() declares a fixed-siz
A stack-based buffer overflow flaw was found in the X.Org X server and Xwayland. The X server has multiple stack buffers
A use-after-free flaw was found in the X.Org X server and Xwayland in miSyncDestroyFence(). A client that sets up multip
A stack-based buffer overflow flaw was found in the X.Org X server and Xwayland. A mismatch between the X server and the
The Route OpenShift resource allows to define routes to make pods reachable at a subdomain through HAProxy. It was found
A flaw was found in OpenShift Container Platform. Completed pods with restartPolicy: Never do not count toward ResourceQ
A flaw was found in the OpenShift Router. When a Route has `insecureEdgeTerminationPolicy` set to Allow, the HTTP fronte
A flaw was found in the OpenShift Router. A user with EndpointSlice write access can exploit this vulnerability by creat
A flaw was found in Samba. A remote attacker can exploit a misconfiguration in Samba file servers and classic domain con
A flaw was found in Keycloak's ClientRegistrationAuth component. A remote unauthenticated attacker can exploit this vuln
A flaw was found in Keycloak. When revokeRefreshToken=true is enabled and persistent session storage is in use, a server
A flaw was found in Keycloak. A remote attacker with high privileges, such as a realm administrator configuring a malici
A flaw was found in Keycloak, an open-source identity and access management solution. When a user account is temporarily
A flaw was found in Keycloak. An authenticated administrator with the `manage-clients` role can exploit a Time-of-check
A flaw was found in Keycloak's Fine-Grained Admin Permissions (FGAPv2) feature. An administrator with limited client man
A flaw was found in Keycloak. A remote, unauthenticated attacker can exploit this vulnerability by sending specially cra
A flaw was found in Keycloak. When a JSON Web Encryption (JWE) encrypted request object is submitted, Keycloak may incor
A flaw was found in Keycloak's Client Policies, specifically within the `org.keycloak.protocol.oidc` component. When cer
A flaw was found in Keycloak. An authenticated user with existing organization membership can exploit this flaw by acces
A flaw was found in Keycloak. An authenticated user with low privileges can exploit this vulnerability by sending an ove
A flaw was found in Samba’s vfs_worm module. The module is intended to provide write-once, read-many (WORM) protections
A flaw was found in Samba’s handling of NTFS-style reparse points on shares configured with read only = yes. Due to miss
A flaw was found in Keycloak, an open-source identity and access management solution. When a client application is confi
A flaw was found in Samba’s certificate auto-enrollment Group Policy handling. When certificate auto-enrollment is enabl
A flaw was found in libsolv. This heap buffer overflow occurs during the decompression of attacker-controlled compressed
A flaw was found in the Samba printing subsystem. Samba passes the client-controlled job description string to the comma
NGINX Plus and NGINX Open Source have a vulnerability in the ngx_http_rewrite_module module. This vulnerability exists w
A flaw was found in libsolv. This heap buffer overflow vulnerability occurs when a victim processes a specially crafted
A flaw was found in libsolv. This stack-based buffer overflow vulnerability occurs in libsolv's Debian metadata parser w
A flaw was found in Keycloak. The cross-session verification proof is keyed only by (local userId, idpAlias) and is not
A flaw was found in 389-ds-base. The get_ldapmessage_controls_ext() function in the LDAP server does not enforce an uppe
A flaw was found in Keycloak. A low-privilege user, with knowledge of user credentials and client ID, can bypass a secur
A session fixation vulnerability was found in Keycloak's login-actions endpoints. An unauthenticated attacker could expl
A flaw was found in Keycloak's URL validation logic during redirect operations. By crafting a malicious request, an atta
A flaw was found in Keycloak. A remote, unauthenticated attacker can send a specially crafted XML input to the Security
A flaw was found in Keycloak. An authenticated client could exploit an Insecure Direct Object Reference (IDOR) vulnerabi
A flaw was found in Keycloak. This authentication vulnerability allows a remote attacker to replay `ExecuteActionsAction
A flaw was found in Keycloak. A broken access control vulnerability in the Account Resources user lookup endpoint allows
A flaw was found in Keycloak. This access control vulnerability in Keycloak's OpenID Connect (OIDC) token introspection
A flaw was found in Keycloak. A low-privilege administrator with the 'view-clients' role can exploit this by invoking th
A flaw was found in Keycloak. When both realm-level and client-level `notBefore` revocation policies are configured, Key
A flaw was found in Keycloak. An authenticated user can bypass configured WebAuthn policies during credential registrati
A flaw was found in gnutls. A remote attacker could exploit an issue in the Datagram Transport Layer Security (DTLS) pac
LiteLLM is a proxy server (AI Gateway) to call LLM APIs in OpenAI (or native) format. From version 1.74.2 to before vers
Frequently Asked Questions
How many CVEs affect Redhat?
Redhat has 17,638 CVE records in our database, including 1817 critical and 6954 high severity vulnerabilities. 43 of these are listed in CISA's Known Exploited Vulnerabilities catalog.
What are the most severe Redhat vulnerabilities?
Redhat has 1817 critical severity (CVSS 9.0+) and 6954 high severity (CVSS 7.0-8.9) vulnerabilities. 43 vulnerabilities are confirmed as actively exploited in the wild.
How can I scan for Redhat vulnerabilities?
CyberStrike's AI-powered security agents automatically detect vulnerabilities in Redhat products across your infrastructure. The platform provides continuous pentesting, DAST scanning, and real-time vulnerability monitoring with actionable remediation guidance.
Detect Redhat Vulnerabilities
CyberStrike scans your infrastructure for Redhat vulnerabilities and provides real-time remediation guidance.
Get Started