Top technology
Linux 13140
Google 12525
Microsoft 12378
Apple 6692
Oracle 6649
Adobe 6383
Ibm 6266
Cisco 5746
Debian 3919
Apache 2864
Mozilla 2857
Redhat 2581
HIGH 8.1
CVE-2026-2603
A flaw was found in Keycloak. A remote attacker could bypass security controls by sending a valid SAML response from an external Identity Provider (I…
Build Of Keycloak
Mitigation only
MEDIUM 5.3
CVE-2025-6920
A flaw was found in the authentication enforcement mechanism of a model inference API in ai-inference-server. All /v1/* endpoints are expected to enf…
Ai Inference Server
Mitigation only
MEDIUM 6.5
CVE-2024-7079
A flaw was found in the Openshift console. The /API/helm/verify endpoint is tasked to fetch and verify the installation of a Helm chart from a URI th…
Openshift Container Platform
Mitigation only
MEDIUM 5.5
CVE-2022-3675
Fedora CoreOS supports setting a GRUB bootloader password
using a Butane config. When this feature is enabled, GRUB requires a password to access the…
Fedora Coreos
37.20221031.1.0+
HIGH 8.0
CVE-2021-3589
An authorization flaw was found in Foreman Ansible. An authenticated attacker with certain permissions to create and run Ansible jobs can access host…
Satellite
7.1.0+
MEDIUM 5.4
CVE-2020-25634
A flaw was found in Red Hat 3scale’s API docs URL, where it is accessible without credentials. This flaw allows an attacker to view sensitive informa…
3scale
2.10.0+
MEDIUM 6.8
CVE-2021-20262
A flaw was found in Keycloak 12.0.0 where re-authentication does not occur while updating the password. This flaw allows an attacker to take over an …
Keycloak
Mitigation only
HIGH 8.1
CVE-2021-20198
A flaw was found in the OpenShift Installer before version v0.9.0-master.0.20210125200451-95101da940b0. During installation of OpenShift Container Pl…
Openshift Installer
0.9.0-master.0.20210125200451-95101da940b0+
MEDIUM 6.5
CVE-2020-15136
In ectd before versions 3.4.10 and 3.3.23, gateway TLS authentication is only applied to endpoints detected in DNS SRV records. When starting a gatew…
Etcd
3.3.23 / 3.4.10+
HIGH 7.5
CVE-2015-5201
VDSM and libvirt in Red Hat Enterprise Virtualization Hypervisor (aka RHEV-H) 7-7.x before 7-7.2-20151119.0 and 6-6.x before 6-6.7-20151117.0 as pack…
Enterprise Virtualization
3.5.6 / 6-6.7-20151117.0+
HIGH 7.5
CVE-2013-1793
openstack-utils openstack-db has insecure password creation
Openstack
Mitigation only
MEDIUM 6.5
CVE-2019-10198
An authentication bypass vulnerability was discovered in foreman-tasks before 0.15.7. Previously, commit tasks were searched through find_resource, w…
Satellite
0.15.7+
MEDIUM 5.3
CVE-2017-15123
A flaw was found in the CloudForms web interface, versions 5.8 - 5.10, where the RSS feed URLs are not properly restricted to authenticated users onl…
Cloudforms Management Engine
after 5.10
CRITICAL 9.8
CVE-2019-3899
It was found that default configuration of Heketi does not require any authentication potentially exposing the management interface to misuse. This i…
Openshift Container Platform
Mitigation only
CRITICAL 10.0
CVE-2017-2637
A design flaw issue was found in the Red Hat OpenStack Platform director use of TripleO to enable libvirtd based live-migration. Libvirtd is deployed…
Openstack
Mitigation only
MEDIUM 6.5
CVE-2017-2638
It was found that the REST API in Infinispan before version 9.0.0 did not properly enforce auth constraints. An attacker could use this vulnerability…
Jboss Data Grid
9.0.0+