redhat
353 known vulnerabilities affecting redhat products.
Products
enterprise_linux 215
openshift_container_platform 86
build_of_keycloak 64
hardened_images 48
enterprise_linux_eus 16
enterprise_linux_server 15
jboss_enterprise_application_platform 15
single_sign-on 15
quay 14
enterprise_linux_server_aus 14
enterprise_linux_for_power_little_endian 13
enterprise_linux_for_ibm_z_systems 13
enterprise_linux_workstation 13
enterprise_linux_server_tus 12
389_directory_server 12
directory_server 11
enterprise_linux_for_ibm_z_systems_eus 11
enterprise_linux_desktop 11
enterprise_linux_for_power_little_endian_eus 11
jboss_enterprise_application_platform_expansion_pack 11
enterprise_linux_server_for_power_little_endian_update_services_for_sap_solutions 9
data_grid 9
openshift_update_service 8
jboss_core_services 7
Vulnerabilities by priority
| CVE | Priority | EPSS | CVSS | KEV | What |
|---|---|---|---|---|---|
| CVE-2026-12548 | Low | 0.3% | 4.2 | A heap out-of-bounds read flaw was found in libsoup. When parsing multipart HTTP… | |
| CVE-2024-0443 | Low | 0.2% | 5.5 | A flaw was found in the blkgs destruction path in block/blk-cgroup.c in the Linu… | |
| CVE-2026-3429 | Low | 0.2% | 4.2 | A flaw was identified in the Account REST API of Keycloak that allows a user aut… | |
| CVE-2026-11611 | Low | 0.2% | 6.5 | A flaw was found in 389 Directory Server. The Content Synchronization persistent… | |
| CVE-2026-59849 | Low | 0.2% | 3.1 | A flaw was found in libssh. Logic errors in automatic certificate-based public k… | |
| CVE-2026-73196 | Low | 0.2% | 4.3 | A flaw was found in FreeIPA. A low-privilege authenticated user can exploit this… | |
| CVE-2026-16105 | Low | 0.2% | 4.9 | A flaw was found in the RoleContainerResource component of Keycloak. The issue o… | |
| CVE-2026-6695 | Low | 0.2% | 5.5 | A flaw was found in GIMP. A remote attacker could exploit this by tricking a use… | |
| CVE-2023-5090 | Low | 0.2% | 6.0 | A flaw was found in KVM. An improper check in svm_set_x2apic_msr_interception() … | |
| CVE-2026-66757 | Low | 0.2% | 5.5 | A flaw was found in the file-sgi plugin in GIMP. When processing an RLE-compress… | |
| CVE-2026-18209 | Low | 0.2% | 3.4 | A flaw was found in the keycloak-services component of Keycloak, which handles O… | |
| CVE-2026-10533 | Low | 0.2% | 5.0 | A flaw was found in OpenShift Container Platform. Completed pods with restartPol… | |
| CVE-2026-80101 | Low | 0.2% | 4.4 | A flaw was found in the file-xwd plugin in GIMP. When processing a specially cra… | |
| CVE-2026-16071 | Low | 0.2% | 5.4 | A flaw was found in the LDAP storage provider of Keycloak, which is used to fede… | |
| CVE-2026-66339 | Low | 0.2% | 6.5 | A flaw was found in libsoup. After a CONNECT tunnel is established through an HT… | |
| CVE-2026-18215 | Low | 0.2% | 6.8 | Keycloak provides a way to let users log in using Microsoft accounts while restr… | |
| CVE-2026-66337 | Low | 0.2% | 6.5 | A flaw was found in libsoup. An unsigned integer underflow in the soup_filter_in… | |
| CVE-2024-0775 | Low | 0.2% | 6.7 | A use-after-free flaw was found in the __ext4_remount in fs/ext4/super.c in ext4… | |
| CVE-2026-18214 | Low | 0.2% | 6.8 | Keycloak allows users to log in using Google accounts and can be configured to o… | |
| CVE-2026-0967 | Low | 0.2% | 5.5 | A flaw was found in libssh. A remote attacker, by controlling client configurati… | |
| CVE-2026-18207 | Low | 0.2% | 6.5 | A flaw was found in the client policy enforcement mechanism of Keycloak. The iss… | |
| CVE-2026-18572 | Low | 0.2% | 6.5 | Keycloak provides authorization services that allow administrators to restrict a… | |
| CVE-2026-9796 | Low | 0.2% | 6.5 | A flaw was found in Keycloak. An authenticated administrator with the `manage-cl… | |
| CVE-2026-16108 | Low | 0.2% | 4.3 | A flaw was found in the default-groups REST endpoint and realm representation of… | |
| CVE-2026-18726 | Low | 0.2% | 6.5 | A flaw was found in open-iscsi. This vulnerability allows a remote attacker on t… | |
| CVE-2025-12150 | Low | 0.2% | 3.1 | A flaw was found in Keycloak’s WebAuthn registration component. This vulnerabili… | |
| CVE-2026-18206 | Low | 0.2% | 3.7 | A flaw was found in the keycloak-services component of Keycloak, which provides … | |
| CVE-2026-18208 | Low | 0.2% | 6.5 | A flaw was found in the OIDC token introspection endpoint of the keycloak-servic… | |
| CVE-2026-4878 | Low | 0.2% | 6.7 | A flaw was found in libcap. A local unprivileged user can exploit a Time-of-chec… | |
| CVE-2025-5917 | Low | 0.2% | 2.8 | A vulnerability has been identified in the libarchive library. This flaw involve… | |
| CVE-2026-7163 | Low | 0.2% | 6.1 | A vulnerability in the assisted-service REST API, an optional Assisted Installer… | |
| CVE-2026-18217 | Low | 0.2% | 3.4 | A flaw was found in the SAML protocol implementation of Keycloak, an open-source… | |
| CVE-2025-5915 | Low | 0.2% | 6.6 | A vulnerability has been identified in the libarchive library. This flaw can lea… | |
| CVE-2025-7519 | Low | 0.2% | 6.7 | A flaw was found in polkit. When processing an XML policy with 32 or more nested… | |
| CVE-2026-18728 | Low | 0.2% | 6.5 | A flaw was found in open-iscsi. An integer underflow vulnerability in the `iscsi… | |
| CVE-2026-66338 | Low | 0.2% | 5.4 | A flaw was found in libsoup. The chunked transfer encoding parser uses a permiss… | |
| CVE-2026-18727 | Low | 0.2% | 6.5 | A flaw was found in open-iscsi's iscsiuio component. This vulnerability involves… | |
| CVE-2026-82330 | Low | 0.2% | 6.1 | A flaw was found in the file-pvr plugin in GIMP. When processing a specially cra… | |
| CVE-2025-5916 | Low | 0.2% | 3.9 | A vulnerability has been identified in the libarchive library. This flaw involve… | |
| CVE-2026-82324 | Low | 0.2% | 6.1 | A flaw was found in the file-iff (IFF/ILBM) plugin in GIMP. When processing a sp… | |
| CVE-2026-78475 | Low | 0.2% | 6.1 | A flaw was found in the file-pix (ESM) plugin in GIMP. When processing a special… | |
| CVE-2026-82328 | Low | 0.2% | 6.1 | A flaw was found in the file-ico plugin in GIMP. When processing a specially cra… | |
| CVE-2026-3441 | Low | 0.2% | 6.1 | A flaw was found in GNU Binutils. This heap-based buffer overflow vulnerability,… | |
| CVE-2026-74241 | Low | 0.2% | 4.8 | A flaw was found in Red Hat Quay's external Lightweight Directory Access Protoco… | |
| CVE-2026-82343 | Low | 0.2% | 6.1 | A flaw was found in the file-psd plugin in GIMP. When processing a specially cra… | |
| CVE-2026-18203 | Low | 0.2% | 6.5 | A flaw was found in the group policy evaluation logic of Keycloak, an identity a… | |
| CVE-2026-11785 | Low | 0.2% | 4.3 | A flaw was found in 389 Directory Server. A type confusion in the SSO token exte… | |
| CVE-2026-16089 | Low | 0.2% | 5.4 | A flaw was found in the keycloak-services component of Red Hat Build of Keycloak… | |
| CVE-2026-18211 | Low | 0.2% | 4.2 | A flaw was found in the secure-client-uris client policy executor within Keycloa… | |
| CVE-2026-18570 | Low | 0.2% | 5.4 | A flaw was found in the full-scope-disabled client-policy executor within the ke… |