Known Vulnerabilities for Red Hat Directory Server 13 by Red Hat
Listed below are 10 of the newest known vulnerabilities associated with "Red Hat Directory Server 13" by "Red Hat".
These CVEs are retrieved based on exact matches on listed software, hardware, and vendor information (CPE data) as well as a keyword search to ensure the newest vulnerabilities with no officially listed software information are still displayed.
Data on known vulnerable versions is also displayed based on information from known CPEs
Known Vulnerabilities
| CVE | Shortened Description | Severity | Publish Date | Last Modified |
|---|---|---|---|---|
| CVE-2026-89677 json | In the Linux kernel, the following vulnerability has been resolved: nfsd: fix possible fh_compose of wrong dentry in nfsd4_c... | Not Provided | 2026-09-11 | 2026-09-11 |
| CVE-2026-88939 json | knowns through 0.33.0 exempts the project.set action from permission guard checks unconditionally, allowing read-only agent s... | Not Provided | 2026-09-10 | 2026-09-10 |
| CVE-2026-87806 json | Parse Server versions <= 8.6.87 and >= 9.0.0 < 9.10.1-alpha.7 contain an authentication bypass in the built-in LDAP authentic... | Not Provided | 2026-09-09 | 2026-09-09 |
| CVE-2026-86775 json | knowns (npm package) versions <= 0.29.1 contain a path traversal vulnerability in the Document API. The HTTP handler in inter... | Not Provided | 2026-09-09 | 2026-09-09 |
| CVE-2026-86542 json | knowns before 0.30.0 fails to validate import names in the import routes, allowing unauthenticated attackers to write files o... | Not Provided | 2026-09-07 | 2026-09-08 |
| CVE-2026-86439 json | knowns versions before 0.30.0 fail to validate filesystem paths in MCP tool arguments, allowing attackers to read, create, ov... | Not Provided | 2026-09-07 | 2026-09-08 |
| CVE-2026-86347 json | Affected versions of MISP allow any authenticated user to access TemplatesController::uploadFile() because the ACL entry for ... | Not Provided | 2026-09-07 | 2026-09-08 |
| CVE-2026-85685 json | AgentScope through 2.0.7.post1 contains a path traversal vulnerability in LocalWorkspace.add_skill that copies arbitrary serv... | Not Provided | 2026-09-04 | 2026-09-04 |
| CVE-2026-85668 json | Xinference (affected commit 4a94832, v3.x) contains an unauthenticated arbitrary-path file read vulnerability in the POST /v1... | Not Provided | 2026-09-04 | 2026-09-04 |
| CVE-2026-85606 json | firecrawl-mcp-server 3.20.2 contains an arbitrary local file read vulnerability in the firecrawl_parse tool that accepts unco... | Not Provided | 2026-09-04 | 2026-09-04 |