Where
AND
-Infinity
0

Vendor Risk Score

See how redhat compares to other vendors in security performance

View Risk Score →

Software

Keycloak KeycloakOrg.keycloak.protocol.oidc.grants: org.keycloak.services.managers: keycloak: server-side request forgery via oidc token endpoint manipulation

Risk 13
Severity
3.1
EPSS
0.02%
First published (updated )

Red Hat KeycloakKeycloak: keycloak: user enumeration via differential error messages

Risk 15
Severity
3.7
EPSS
0.04%
First published (updated )

redhat Build Of KeycloakOrg.keycloak.services.resources.admin.userresource: keycloak: information disclosure of disabled user attributes via administrative endpoint

Risk 12
Severity
2.7
EPSS
0.01%
First published (updated )

redhat Enterprise LinuxGnutls: gnutls: security bypass allows acceptance of revoked server certificates via crafted ocsp response

Risk 21
Severity
3.7
First published (updated )

libssh libsshLibssh: libssh: denial of service due to malformed sftp message

Risk 37
Severity
3.1
First published (updated )
Free Weekly Intel

Don't miss critical vulnerabilities

Join thousands of security professionals who receive our weekly digest of trending CVEs, zero-days, and exploited vulnerabilities.

No spam. Unsubscribe anytime.

libssh libsshLibssh: libssh: denial of service via improper configuration file handling

Risk 18
Severity
3.3
First published (updated )

redhat Build Of KeycloakOrg.keycloak/keycloak-services: webauthn attestation statement verification bypass

Risk 17
Severity
3.1
First published (updated )

redhat Enterprise LinuxNetavark: podman: netavark may resolve hostnames to unexpected hosts

Risk 15
Severity
3.7
EPSS
0.04%
First published (updated )

Red Hat AnsibleAap: aap-gateway: automation-hub: sensitive information disclosure

Risk 19
Severity
3.5
First published (updated )

Ansible AnsibleAap: sensitive cookie(s) set without security flags

Risk 17
Severity
3.1
First published (updated )
Free Weekly Intel

Don't miss critical vulnerabilities

Join thousands of security professionals who receive our weekly digest of trending CVEs, zero-days, and exploited vulnerabilities.

No spam. Unsubscribe anytime.

GdkPixbuf GdkPixbufGdk-pixbuf: uninitialized memory disclosure in gdkpixbuf gif lzw decoder

Risk 13
Severity
3.3
EPSS
0.02%
First published (updated )

redhat Enterprise LinuxLibxml2: stack buffer overflow in xmllint interactive shell command handling

Risk 12
Severity
2.5
EPSS
0.01%
First published (updated )

Red Hat KeycloakKeycloak-core: keycloak environment information

Risk 12
Severity
2.7
EPSS
0.03%
First published (updated )

redhat Enterprise LinuxLibopensc: heap buffer overflow in openpgp driver when generating key

Risk 16
Severity
2.9
EPSS
0.04%
First published (updated )

redhat Enterprise LinuxLibopensc: uninitialized values after incorrect check or usage of apdu response values in libopensc

Risk 31
Severity
3.9
First published (updated )
Free Weekly Intel

Don't miss critical vulnerabilities

Join thousands of security professionals who receive our weekly digest of trending CVEs, zero-days, and exploited vulnerabilities.

No spam. Unsubscribe anytime.

redhat Enterprise LinuxLibopensc: pkcs15init: usage of uninitialized values in libopensc and pkcs15init

Risk 31
Severity
3.9
First published (updated )

redhat Enterprise LinuxLibopensc: uninitialized values after incorrect or missing checking return values of functions in libopensc

Risk 31
Severity
3.9
First published (updated )

redhat Enterprise LinuxLibopensc: uninitialized values after incorrect or missing checking return values of functions in pkcs15init

Risk 31
Severity
3.9
First published (updated )

Fedoraproject FedoraOpensc: memory use after free in authentic driver when updating token info

Risk 23
Severity
3.4
First published (updated )

redhat Enterprise LinuxGrub2: grub2-set-bootflag can be abused by local (pseudo-)users

Risk 19
Severity
3.3
First published (updated )
Free Weekly Intel

Don't miss critical vulnerabilities

Join thousands of security professionals who receive our weekly digest of trending CVEs, zero-days, and exploited vulnerabilities.

No spam. Unsubscribe anytime.

redhat Enterprise LinuxPackagekitd: use-after-free in idle function callback

Risk 13
Severity
3.3
EPSS
0.04%
First published (updated )

redhat Enterprise LinuxA vulnerability was found in the pthread_create() function in libcap. This issue may allow a malicio…

Risk 18
Severity
3.3
First published (updated )

redhat Enterprise LinuxLast updated 25 April 2025

Risk 18
Severity
3.3
First published (updated )

redhat Openstackhttps://wiki.openstack.org/wiki/OSSN/OSSN-0090

Risk 16
Severity
2.8
First published (updated )

redhat/rh-sso7-keycloakInput Validation

Risk 27
Severity
3.8
First published (updated )
Free Weekly Intel

Don't miss critical vulnerabilities

Join thousands of security professionals who receive our weekly digest of trending CVEs, zero-days, and exploited vulnerabilities.

No spam. Unsubscribe anytime.

IBM Robotic Process Automation for Cloud PakIBM Robotic Process Automation for Cloud Pak information disclosure

Risk 18
Severity
3.3
First published (updated )

redhat/rh-sso7-keycloakXSS

Risk 27
Severity
3.8
First published (updated )

Packagekit Project PackagekitInfoleak

Risk 18
Severity
3.3
First published (updated )

redhat Enterprise LinuxNull Pointer Dereference

Risk 18
Severity
3.3
First published (updated )

redhat Enterprise LinuxInfoleak

Risk 18
Severity
3.3
First published (updated )
Free Weekly Intel

Don't miss critical vulnerabilities

Join thousands of security professionals who receive our weekly digest of trending CVEs, zero-days, and exploited vulnerabilities.

No spam. Unsubscribe anytime.

Contact

SecAlerts Pty Ltd.
132 Wickham Terrace
Fortitude Valley,
QLD 4006, Australia
info@secalerts.co
By using SecAlerts services, you agree to our services end-user license agreement. This website is safeguarded by reCAPTCHA and governed by the Google Privacy Policy and Terms of Service. All names, logos, and brands of products are owned by their respective owners, and any usage of these names, logos, and brands for identification purposes only does not imply endorsement. If you possess any content that requires removal, please get in touch with us.
© 2026 SecAlerts Pty Ltd.
ABN: 70 645 966 203, ACN: 645 966 203