Skip to main content

Vendor archive

redhat CVEs

Beta · best-effort

5,982 CVEs tagged to vendor redhat666 Critical, 2,012 High, 2,837 Medium, 467 Low, 0 Unrated.

CVE-2023-4956

Published Nov 7, 2023

A flaw was found in Quay. Clickjacking is when an attacker uses multiple transparent or opaque layers to trick a user into clicking on a button or link on another page when they i…

CVSS 6.5 · Medium
Vendor/product tagsBeta · best-effort

CVE-2023-4910

Published Nov 6, 2023

A flaw was found In 3Scale Admin Portal. If a user logs out from the personal tokens page and then presses the back button in the browser, the tokens page is rendered from the bro…

CVSS 5.5 · Medium
Vendor/product tagsBeta · best-effort

CVE-2023-42669

Published Nov 6, 2023

A vulnerability was found in Samba's "rpcecho" development server, a non-Windows RPC server used to test Samba's DCE/RPC stack elements. This vulnerability stems from an RPC funct…

CVSS 6.5 · Medium

CVE-2023-5088

Published Nov 3, 2023

A bug in QEMU could cause a guest I/O operation otherwise addressed to an arbitrary disk offset to be targeted to offset 0 instead (potentially overwriting the VM's boot code). Th…

CVSS 6.4 · Medium
Vendor/product tagsBeta · best-effort

CVE-2023-5824

Published Nov 3, 2023

A flaw was found in Squid. The limits applied for validation of HTTP response headers are applied before caching. However, Squid may grow a cached HTTP response header beyond the…

CVSS 7.5 · High
Vendor/product tagsBeta · best-effort

CVE-2023-46847

Published Nov 3, 2023

Squid is vulnerable to a Denial of Service, where a remote attacker can perform buffer overflow attack by writing up to 2 MB of arbitrary data to heap memory when Squid is config…

CVSS 8.6 · High

CVE-2023-46846

Published Nov 3, 2023

SQUID is vulnerable to HTTP request smuggling, caused by chunked decoder lenience, allows a remote attacker to perform Request/Response smuggling past firewall and frontend securi…

CVSS 9.3 · Critical
Showing 551-575 of 5,982 CVEsPage 23 of 240