Vulnerability index

Browse CVEs

33 matching
Filters 2 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness Resource Allocation Without LimitsCWE-770 × clear
MEDIUM 6.5 CVE-2026-16100 A flaw was found in the user-event metrics recording of Keycloak. When metrics are enabled, the system records raw error messages from failed account… Build Of Keycloak 26.6.5+ Fix from $1,6002026-08-05 MEDIUM 5.3 CVE-2026-59848 A flaw was found in libssh. A malicious SFTP server can send responses for unknown request IDs that libssh clients keep queued indefinitely, causing … Hardened Images No fix yet Fix from $1,6002026-07-21 HIGH 7.5 CVE-2026-47774 Envoy is an open source edge and service proxy designed for cloud-native applications. Prior to versions 1.35.11, 1.36.7, 1.37.3, and 1.38.1, a vulne… Openshift Service Mesh 1.35.11 / 1.36.7+ Fix from $1,9502026-06-17 MEDIUM 5.0 CVE-2026-10533 A flaw was found in OpenShift Container Platform. Completed pods with restartPolicy: Never do not count toward ResourceQuota pod limits, and Kubernet… Openshift Container Platform Mitigation only Fix from $1,6002026-06-01 HIGH 7.5 CVE-2026-9064 A flaw was found in 389-ds-base. The get_ldapmessage_controls_ext() function in the LDAP server does not enforce an upper bound on the number of cont… Directory Server Mitigation only Fix from $1,9502026-05-20 MEDIUM 5.5 CVE-2026-4897 A flaw was found in polkit. A local user can exploit this by providing a specially crafted, excessively long input to the `polkit-agent-helper-1` set… Openshift Container Platform Mitigation only Fix from $1,6002026-03-26 HIGH 7.5 CVE-2025-9784 A flaw was found in Undertow where malformed client requests can trigger server-side stream resets without triggering abuse counters. This issue, ref… Build Of Apache Camel For Spring Boot Patch available Fix from $1,9502025-09-02 MEDIUM 6.5 CVE-2024-50311 A denial of service (DoS) vulnerability was found in OpenShift. This flaw allows attackers to exploit the GraphQL batching functionality. The vulnera… Openshift Container Platform Mitigation only Fix from $1,6002024-10-22 HIGH 7.5 CVE-2023-50387EPSS 100% Certain DNSSEC aspects of the DNS protocol (in RFC 4033, 4034, 4035, 6840, and related RFCs) allow remote attackers to cause a denial of service (CPU… Enterprise Linux Patch available Fix from $1,9502024-02-14 HIGH 7.5 CVE-2023-6476 A flaw was found in CRI-O that involves an experimental annotation leading to a container being unconfined. This may allow a pod to specify and get a… Openshift Container Platform Mitigation only Fix from $1,9502024-01-09 HIGH 7.5 CVE-2023-3171 A flaw was found in EAP-7 during deserialization of certain classes, which permits instantiation of HashMap and HashTable with no checks on resources… Jboss Enterprise Application Platform Mitigation only Fix from $1,9502023-12-27 HIGH 7.7 CVE-2023-6563 An unconstrained memory consumption vulnerability was discovered in Keycloak. It can be triggered in environments which have millions of offline toke… Keycloak 21.0.0+ Fix from $1,9502023-12-14 HIGH 7.5 CVE-2023-5379 A flaw was found in Undertow. When an AJP request is sent that exceeds the max-header-size attribute in ajp-listener, JBoss EAP is marked in an error… Jboss Enterprise Application Platform Mitigation only Fix from $1,9502023-12-12 HIGH 7.5 CVE-2023-5625 A regression was introduced in the Red Hat build of python-eventlet due to a change in the patch application strategy, resulting in a patch for CVE-2… Openshift Container Platform For Arm64 Patch available Fix from $1,9502023-11-01 MEDIUM 5.3 CVE-2023-3153 A flaw was found in Open Virtual Network where the service monitor MAC does not properly rate limit. This issue could allow an attacker to cause a de… Openshift Container Platform 22.03.3 / 22.09.2+ Fix from $1,6002023-10-04 MEDIUM 6.5 CVE-2023-2253 A flaw was found in the `/v2/_catalog` endpoint in distribution/distribution, which accepts a parameter to control the maximum number of records retu… Openshift Api For Data Protection Mitigation only Fix from $1,6002023-06-06 HIGH 7.5 CVE-2022-0084 A flaw was found in XNIO, specifically in the notifyReadClosed method. The issue revealed this method was logging a message to another expected end. … Integration Camel K 3.8.7+ Fix from $1,9502022-08-26 HIGH 7.5 CVE-2021-3637 A flaw was found in keycloak-model-infinispan in keycloak versions before 14.0.0 where authenticationSessions map in RootAuthenticationSessionEntity … Keycloak 14.0.0+ Fix from $1,9502021-07-09 MEDIUM 6.5 CVE-2020-14336 A flaw was found in the Restricted Security Context Constraints (SCC), where it allows pods to craft custom network packets. This flaw allows an atta… Openshift Container Platform Mitigation only Fix from $1,6002021-06-02 MEDIUM 5.5 CVE-2021-3527 A flaw was found in the USB redirector device (usb-redir) of QEMU. Small USB packets are combined into a single, large transfer request, to reduce th… Enterprise Linux after 6.0.0 Fix from $1,6002021-05-26 HIGH 7.5 CVE-2020-25648 A flaw was found in the way NSS handled CCS (ChangeCipherSpec) messages in TLS 1.3. This flaw allows a remote attacker to send multiple CCS messages,… Enterprise Linux 3.58 / 9.2.6.0+ Fix from $1,9502020-10-20 HIGH 7.5 CVE-2020-10758 A vulnerability was found in Keycloak before 11.0.1 where DoS attack is possible by sending twenty requests simultaneously to the specified keycloak … Keycloak 11.0.1+ Fix from $1,9502020-09-16 HIGH 7.5 CVE-2020-10705 A flaw was discovered in Undertow in versions before Undertow 2.1.1.Final where certain requests to the "Expect: 100-continue" header may cause an ou… Undertow 2.1.1+ Fix from $1,9502020-06-10 HIGH 7.5 CVE-2020-8659 CNCF Envoy through 1.13.0 may consume excessive amounts of memory when proxying HTTP/1.1 requests or responses with many small (i.e. 1 byte) chunks. Openshift Service Mesh after 1.13.0 Fix from $1,9502020-03-04 HIGH 7.5 CVE-2019-10171 It was found that the fix for CVE-2018-14648 in 389-ds-base, versions 1.4.0.x before 1.4.0.17, was incorrectly applied in RHEL 7.5. An attacker would… Enterprise Linux Server Eus 1.4.0.17+ Fix from $1,9502019-08-02 MEDIUM 6.5 CVE-2018-16846 It was found in Ceph versions before 13.2.4 that authenticated ceph RGW users can cause a denial of service against OMAPs holding bucket indices. Ceph 13.2.4+ Fix from $1,6002019-01-15 HIGH 7.8 CVE-2018-16865 An allocation of memory without limits, that could result in the stack clashing with another memory region, was discovered in systemd-journald when m… Enterprise Linux Desktop Patch available Fix from $1,9502019-01-11 HIGH 7.8 CVE-2018-16864 An allocation of memory without limits, that could result in the stack clashing with another memory region, was discovered in systemd-journald when a… Enterprise Linux Desktop Patch available Fix from $1,9502019-01-11 MEDIUM 6.5 CVE-2018-14660 A flaw was found in glusterfs server through versions 4.1.4 and 3.1.2 which allowed repeated usage of GF_META_LOCK_KEY xattr. A remote, authenticated… Virtualization Host after 4.1.4 Fix from $1,6002018-11-01 MEDIUM 6.3 CVE-2018-10908 It was found that vdsm before version 4.20.37 invokes qemu-img on untrusted inputs without limiting resources. By uploading a specially crafted image… Virtualization 4.20.37+ Fix from $1,6002018-08-09