Theforeman
8 known vulnerabilities
Top Products
A flaw was found in foreman. Authenticated users with 'view_keypairs' permission can bypass taxonomy scoping, allowing t
A flaw was found in Foreman. An authenticated user with host-edit permissions could exploit a cross-tenant information d
A flaw was found in Foreman. This broken access control vulnerability allows an authenticated user with host-edit permis
A flaw was found in Foreman. The Usergroup model in Foreman does not properly validate role assignments against the call
A flaw has been found in foreman when HTTP parameters are modified in http_proxies_controller and http_proxy files. Atta
A flaw was found in foreman-mcp-server. This component utilizes two distinct logging mechanisms that can expose sensitiv
A flaw was found in the foreman-mcp-server. A session management vulnerability in the MCP Server allows unauthenticated
n authorization flaw in Foreman's GraphQL API allows low-privileged users to access metadata beyond their assigned permi
Frequently Asked Questions
How many CVEs affect Theforeman?
Theforeman has 8 CVE records in our database, including 0 critical and 2 high severity vulnerabilities.
What are the most severe Theforeman vulnerabilities?
Theforeman has 0 critical severity (CVSS 9.0+) and 2 high severity (CVSS 7.0-8.9) vulnerabilities. Review the list above sorted by publication date to find the most recent high-severity issues.
How can I scan for Theforeman vulnerabilities?
CyberStrike's AI-powered security agents automatically detect vulnerabilities in Theforeman products across your infrastructure. The platform provides continuous pentesting, DAST scanning, and real-time vulnerability monitoring with actionable remediation guidance.
Detect Theforeman Vulnerabilities
CyberStrike scans your infrastructure for Theforeman vulnerabilities and provides real-time remediation guidance.
Get Started