Known Vulnerabilities for Red Hat Developer Hub by Red Hat
Listed below are 10 of the newest known vulnerabilities associated with "Red Hat Developer Hub" by "Red Hat".
These CVEs are retrieved based on exact matches on listed software, hardware, and vendor information (CPE data) as well as a keyword search to ensure the newest vulnerabilities with no officially listed software information are still displayed.
Data on known vulnerable versions is also displayed based on information from known CPEs
Known Vulnerabilities
| CVE | Shortened Description | Severity | Publish Date | Last Modified |
|---|---|---|---|---|
| CVE-2026-92784 json | @refinedev/inferencer through 7.0.0 fails to escape API field names when interpolating them into generated JSX source code. A... | Not Provided | 2026-09-16 | 2026-09-17 |
| CVE-2026-91200 json | DevSpace through 6.3.21 fails to reject parent-directory segments in tar entry names from the in-pod sync stream. Attackers o... | Not Provided | 2026-09-14 | 2026-09-15 |
| CVE-2026-89332 json | Inclusion of functionality from an untrusted control sphere in the Kiro Powers feature in Amazon Kiro IDE before version 0.8.... | Not Provided | 2026-09-11 | 2026-09-11 |
| CVE-2026-89066 json | Improper neutralization of special elements used in an OS command in the task synthesis component in projen before 0.103.0 mi... | Not Provided | 2026-09-11 | 2026-09-11 |
| CVE-2026-88064 json | Backstage is an open framework for building developer portals. Prior to 1.14.6 and from 1.15.0 until 1.15.4, the @backstage/p... | Not Provided | 2026-09-16 | 2026-09-16 |
| CVE-2026-85239 json | A vulnerability in MISP's event template handling allowed an authenticated user with permission to create or modify event tem... | Not Provided | 2026-09-03 | 2026-09-03 |
| CVE-2026-84967 json | A component of the MongoDB extension for Visual Studio Code does not neutralize special characters in a connection string bef... | Not Provided | 2026-09-03 | 2026-09-03 |
| CVE-2026-84365 json | Hono is a Web application framework that provides support for any JavaScript runtime. From 4.12.12 until 4.13.5, the fix rele... | Not Provided | 2026-09-01 | 2026-09-04 |
| CVE-2026-82710 json | Improper Neutralization of Escape, Meta, or Control Sequences vulnerability in ash-project usage_rules allows a malicious pac... | Not Provided | 2026-09-08 | 2026-09-08 |
| CVE-2026-82584 json | Improper Neutralization of Escape, Meta, or Control Sequences vulnerability in ash-project igniter allows a malicious package... | Not Provided | 2026-09-07 | 2026-09-08 |