Vulnerability index

Browse CVEs

2,581 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Enterprise Linux MEDIUM 6.6
CVE-2026-73433

A flaw was found in GStreamer gst-plugins-good (avidemux). When parsing FUJIFILM metadata in an AVI strd chunk, gst_avi_demux_parse_strd() decrements…

No fix yet
Fix from $4,000 2026-08-12
Enterprise Linux MEDIUM 6.1
CVE-2026-73434

A flaw was found in GStreamer gst-plugins-good (avidemux). In gst_avi_demux_riff_parse_vprp(), the number of available gst_riff_vprp_video_field_desc…

No fix yet
Fix from $4,000 2026-08-12
Build Of Keycloak HIGH 8.1
CVE-2026-18967

A flaw was found in the SAML broker component of Keycloak, an identity and access management solution. When configured as a SAML broker using the IdP…

No fix yet
Fix from $1,950 2026-08-06
Build Of Keycloak CRITICAL 9.8
CVE-2026-16442

A flaw was found in the SAML broker component of Keycloak, which is used to manage identity federation and user authentication. The issue occurs beca…

Fix: 26.4.14 / 26.6.5+
Fix from $2,300 2026-08-05
Build Of Keycloak HIGH 8.8
CVE-2026-15572

A flaw was found in Keycloak's Dynamic Client Registration (DCR) security policy management. The "Allowed Protocol Mapper Types" policy, which restri…

Fix: 26.4.14 / 26.6.5+
Fix from $1,950 2026-08-05
Build Of Keycloak HIGH 8.1
CVE-2026-16102

A flaw was found in the Dynamic Client Registration (DCR) component of Keycloak, an identity and access management solution. The default DCR policy f…

Fix: 26.4.14 / 26.6.5+
Fix from $1,950 2026-08-05
Build Of Keycloak MEDIUM 6.5
CVE-2026-16100

A flaw was found in the user-event metrics recording of Keycloak. When metrics are enabled, the system records raw error messages from failed account…

Fix: 26.6.5+
Fix from $1,600 2026-08-05
Build Of Keycloak MEDIUM 5.4
CVE-2026-16071

A flaw was found in the LDAP storage provider of Keycloak, which is used to federate user identities from external directories. The issue occurs when…

Fix: 26.4.14 / 26.6.5+
Fix from $1,600 2026-08-05
Build Of Keycloak HIGH 8.1
CVE-2026-15573

A flaw was found in Keycloak's Authorization Services. The component responsible for matching request paths to security policies (PathMatcher) does n…

Fix: 26.4.14 / 26.6.5+
Fix from $1,950 2026-08-05
Build Of Keycloak CRITICAL 9.1
CVE-2026-16443

A flaw was found in the SAML metadata import functionality of the keycloak-services component, which is the core engine for identity brokering in Red…

Fix: 26.4.14 / 26.6.5+
Fix from $2,300 2026-08-05
Hardened Images HIGH 7.3
CVE-2026-71226

Memory Corruption via Uncanceled AIO Requests on Error: libkcapi's one-shot AIO path can return an error before all submitted IOCBs are drained, allo…

Fix: 1.5.1+
Fix from $1,950 2026-08-05
Hardened Images MEDIUM 6.5
CVE-2026-71225

A flaw was found in libkcapi. When performing one-shot symmetric cipher operations on large inputs (over 64 KiB) in stateful modes such as Counter (C…

Fix: 1.5.1+
Fix from $1,600 2026-08-05
Hardened Images MEDIUM 5.1
CVE-2026-71227

A flaw was found in libkcapi. A local attacker can influence an application that uses the Asynchronous Input/Output (AIO) interface. By reusing an AI…

Fix: 1.5.1+
Fix from $1,600 2026-08-05
Openshift Container Platform HIGH 7.1
CVE-2026-68743

A flaw was found in SSSD. The extract_authtok_v1() function in the PAM responder does not validate the auth_token_length field against the remaining …

No fix yet
Fix from $1,950 2026-08-04
Directory Server MEDIUM 5.4
CVE-2026-18651

A flaw was found in 389 Directory Server. During SASL PLAIN authentication, the server installs connection-level bind credentials before performing t…

No fix yet
Fix from $1,600 2026-08-03
Openshift Container Platform MEDIUM 5.5
CVE-2026-68742

A flaw was found in SSSD. The sss_nss_protocol_parse_addr() function in the NSS responder does not validate the addrlen field against the remaining p…

No fix yet
Fix from $1,600 2026-08-03
Build Of Keycloak HIGH 7.2
CVE-2026-18571

A flaw was found in the user creation component of Keycloak when Fine-Grained Admin Permissions V2 (FGAP V2) is enabled. This issue allows a sub-admi…

No fix yet
Fix from $1,950 2026-08-02
Build Of Keycloak MEDIUM 6.5
CVE-2026-18572

Keycloak provides authorization services that allow administrators to restrict access to resources based on time policies (for example, only allowing…

No fix yet
Fix from $1,600 2026-08-02
Build Of Keycloak MEDIUM 6.5
CVE-2026-18573

A flaw was found in the keycloak-services component of Keycloak, which is used for managing authentication and authorization flows. The issue occurs …

No fix yet
Fix from $1,600 2026-08-02
Build Of Keycloak MEDIUM 5.4
CVE-2026-18570

A flaw was found in the full-scope-disabled client-policy executor within the keycloak-services component. This component is responsible for enforcin…

No fix yet
Fix from $1,600 2026-08-02
Directory Server HIGH 7.5
CVE-2026-11770

A flaw was found in 389 Directory Server. An unauthenticated remote attacker can inject LDAP search filters into the CleanAllRUV replication status-c…

No fix yet
Fix from $1,950 2026-07-31
Directory Server HIGH 7.5
CVE-2026-15722

A stack buffer overflow flaw was found in 389 Directory Server (389-ds-base). The get_ruvelement_from_berval() function in repl5_ruv.c copies digit c…

No fix yet
Fix from $1,950 2026-07-31
Build Of Keycloak MEDIUM 5.4
CVE-2026-18218

A flaw was found in the TokenManager component of the Keycloak identity management service. When an administrator attempts to revoke tokens for a spe…

No fix yet
Fix from $1,600 2026-07-31
Build Of Keycloak HIGH 8.1
CVE-2026-18214

Keycloak allows users to log in using Google accounts and can be configured to only allow users from specific Google Workspace domains. A flaw was fo…

No fix yet
Fix from $1,950 2026-07-31
Build Of Keycloak HIGH 8.1
CVE-2026-18215

Keycloak provides a way to let users log in using Microsoft accounts while restricting access to a specific organization (tenant). A flaw was discove…

No fix yet
Fix from $1,950 2026-07-31
Build Of Keycloak MEDIUM 6.5
CVE-2026-18203

A flaw was found in the group policy evaluation logic of Keycloak, an identity and access management solution. When a group policy is set to extend p…

No fix yet
Fix from $1,600 2026-07-31
Build Of Keycloak MEDIUM 6.5
CVE-2026-18208

A flaw was found in the OIDC token introspection endpoint of the keycloak-services component. Keycloak is an open-source identity and access manageme…

No fix yet
Fix from $1,600 2026-07-31
Build Of Keycloak MEDIUM 5.4
CVE-2026-18211

A flaw was found in the secure-client-uris client policy executor within Keycloak core services. This component is responsible for enforcing security…

No fix yet
Fix from $1,600 2026-07-31
Cost Management Metrics Operator HIGH 7.6
CVE-2026-18381

A flaw was found in the koku-metrics-operator for Red Hat OpenShift. The operator's CostManagementMetricsConfig custom resource allows a user able to…

No fix yet
Fix from $1,950 2026-07-30
Cost Management Metrics Operator MEDIUM 6.8
CVE-2026-18378

A flaw was found in koku-metrics-operator. The operator's CostManagementMetricsConfig custom resource allows user able to edit the CR to specify an a…

No fix yet
Fix from $1,600 2026-07-30