Skip to main content

Vendor/product archive

redhat / satellite CVEs

Beta · best-effort

233 CVEs tagged to redhat / satellite26 Critical, 59 High, 118 Medium, 30 Low, 0 Unrated.

CVE-2026-13316

Published Jun 30, 2026

A flaw has been found in foreman when HTTP parameters are modified in http_proxies_controller and http_proxy files. Attackers can perform an SSRF attack and steal cloud metadata s…

CVSS 4.4 · Medium
evidence mentions
2
Buzz score
21.0
Vendor/product tagsBeta · best-effort

CVE-2026-9073

Published Jun 23, 2026

A flaw was found in foreman-mcp-server. This component utilizes two distinct logging mechanisms that can expose sensitive session and authentication data. One mechanism logs sessi…

CVSS 6.2 · Medium
evidence mentions
4
Buzz score
26.1
Vendor/product tagsBeta · best-effort

CVE-2026-12112

Published Jun 23, 2026

A flaw was found in the foreman-mcp-server. A session management vulnerability in the MCP Server allows unauthenticated attackers to hijack active administrative sessions due to a…

CVSS 7.8 · High
evidence mentions
5
Buzz score
29.4
Vendor/product tagsBeta · best-effort

CVE-2026-0980

Published Feb 27, 2026

A flaw was found in rubyipmi, a gem used in the Baseboard Management Controller (BMC) component of Red Hat Satellite. An authenticated attacker with host creation or update permis…

CVSS 8.3 · High
evidence mentions
5
Buzz score
27.9
Vendor/product tagsBeta · best-effort

CVE-2024-7923

Published Sep 4, 2024

An authentication bypass vulnerability has been identified in Pulpcore when deployed with Gunicorn versions prior to 22.0, due to the puppet-pulpcore configuration. This issue ari…

CVSS 9.8 · Critical
Vendor/product tagsBeta · best-effort

CVE-2024-7012

Published Sep 4, 2024

An authentication bypass vulnerability has been identified in Foreman when deployed with External Authentication, due to the puppet-foreman configuration. This issue arises from A…

CVSS 9.8 · Critical
Vendor/product tagsBeta · best-effort

CVE-2024-7700

Published Aug 12, 2024

A command injection flaw was found in the "Host Init Config" template in the Foreman application via the "Install Packages" field on the "Register Host" page. This flaw allows an…

CVSS 6.5 · Medium
Vendor/product tagsBeta · best-effort

CVE-2024-4812

Published Jun 5, 2024

A flaw was found in the Katello plugin for Foreman, where it is possible to store malicious JavaScript code in the "Description" field of a user. This code can be executed when op…

CVSS 4.8 · Medium
Vendor/product tagsBeta · best-effort

CVE-2024-3716

Published Jun 5, 2024

A flaw was found in foreman-installer when puppet-candlepin is invoked cpdb with the --password parameter. This issue leaks the password in the process list and allows an attacker…

CVSS 6.2 · Medium
Vendor/product tagsBeta · best-effort

CVE-2023-4320

Published Dec 18, 2023

An arithmetic overflow flaw was found in Satellite when creating a new personal access token. This flaw allows an attacker who uses this arithmetic overflow to create personal acc…

CVSS 7.6 · High
Vendor/product tagsBeta · best-effort

CVE-2023-4886

Published Oct 3, 2023

A sensitive information exposure vulnerability was found in foreman. Contents of tomcat's server.xml file, which contain passwords to candlepin's keystore and truststore, were fou…

CVSS 6.7 · Medium
Vendor/product tagsBeta · best-effort

CVE-2022-3874

Published Sep 22, 2023

A command injection flaw was found in foreman. This flaw allows an authenticated user with admin privileges on the foreman instance to transpile commands through CoreOS and Fedora…

CVSS 8.0 · High
Vendor/product tagsBeta · best-effort

CVE-2023-0462

Published Sep 20, 2023

An arbitrary code execution flaw was found in Foreman. This issue may allow an admin user to execute arbitrary code on the underlying operating system by setting global parameters…

CVSS 8.0 · High
Vendor/product tagsBeta · best-effort

CVE-2023-0119

Published Sep 12, 2023

A stored Cross-site scripting vulnerability was found in foreman. The Comment section in the Hosts tab has incorrect filtering of user input data. As a result of the attack, an at…

CVSS 5.4 · Medium
Vendor/product tagsBeta · best-effort
Showing 1-25 of 233 CVEsPage 1 of 10