Known Vulnerabilities for Openshift by Redhat
Listed below are 10 of the newest known vulnerabilities associated with "Openshift" by "Redhat".
These CVEs are retrieved based on exact matches on listed software, hardware, and vendor information (CPE data) as well as a keyword search to ensure the newest vulnerabilities with no officially listed software information are still displayed.
Data on known vulnerable versions is also displayed based on information from known CPEs
Known Vulnerabilities
| CVE | Shortened Description | Severity | Publish Date | Last Modified |
|---|---|---|---|---|
| CVE-2026-54100 json | A flaw was found in the Windows Machine Config Operator (WMCO) for Red Hat OpenShift Container Platform. WMCO establishes SSH... | Not Provided | 2026-06-22 | 2026-06-22 |
| CVE-2026-54099 json | A flaw was found in the Windows Machine Config Operator (WMCO) for Red Hat OpenShift Container Platform. The WICD CSR auto-ap... | Not Provided | 2026-06-22 | 2026-06-22 |
| CVE-2026-46579 json | A flaw was found in the OpenShift Router. When a Route has `insecureEdgeTerminationPolicy` set to Allow, the HTTP frontend do... | Not Provided | 2026-05-29 | 2026-06-05 |
| CVE-2026-42965 json | A flaw was found in the OpenShift Router. A user with EndpointSlice write access can exploit this vulnerability by creating a... | Not Provided | 2026-05-29 | 2026-06-05 |
| CVE-2026-35092 json | Not Provided | 2026-04-01 | 2026-05-26 | |
| CVE-2026-35091 json | Not Provided | 2026-04-01 | 2026-05-26 | |
| CVE-2026-10843 json | A flaw was found in the OpenShift Cloud Credential Operator Mint-mode IAM policies for AWS. Operator credentials are provisio... | Not Provided | 2026-06-04 | 2026-06-04 |
| CVE-2026-10840 json | A flaw was found in the OpenShift Pipelines operator. The tekton-scheduler-rolebinding ClusterRoleBinding grants the system:a... | Not Provided | 2026-06-04 | 2026-06-22 |
| CVE-2026-10533 json | A flaw was found in OpenShift Container Platform. Completed pods with restartPolicy: Never do not count toward ResourceQuota ... | Not Provided | 2026-06-01 | 2026-06-02 |
| CVE-2026-10101 json | ACM/MCE assisted-service writes raw referenced pull-secret contents into `InfraEnv.status.conditions[].message` when pull-sec... | Not Provided | 2026-05-29 | 2026-05-29 |
Known Affected Configurations (CPE V2.3)
| Type | Vendor | Product | Version | Update | Edition | Language |
|---|---|---|---|---|---|---|
| Application | Redhat | Openshift | 4.3.5 | |||
| Application | Redhat | Openshift | 4.3 | |||
| Application | Redhat | Openshift | 4.2.21 | |||
| Application | Redhat | Openshift | 4.2 | |||
| Application | Redhat | Openshift | 4.1.37 | |||
| Application | Redhat | Openshift | 4.1 | |||
| Application | Redhat | Openshift | 4.0 | |||
| Application | Redhat | Openshift | 3.9 | |||
| Application | Redhat | Openshift | 3.8 | |||
| Application | Redhat | Openshift | 3.7 | |||
| Application | Redhat | Openshift | 3.6 | |||
| Application | Redhat | Openshift | 3.5 | |||
| Application | Redhat | Openshift | 3.4 | |||
| Application | Redhat | Openshift | 3.3.1.11 | |||
| Application | Redhat | Openshift | 3.3 | |||
| Application | Redhat | Openshift | 3.2.1.23 | |||
| Application | Redhat | Openshift | 3.11.188-4 | |||
| Application | Redhat | Openshift | 3.11 | |||
| Application | Redhat | Openshift | 3.10 | |||
| Application | Redhat | Openshift | 3.1 |