Known Vulnerabilities for Openshift by Redhat
Listed below are 10 of the newest known vulnerabilities associated with "Openshift" by "Redhat".
These CVEs are retrieved based on exact matches on listed software, hardware, and vendor information (CPE data) as well as a keyword search to ensure the newest vulnerabilities with no officially listed software information are still displayed.
Data on known vulnerable versions is also displayed based on information from known CPEs
Known Vulnerabilities
| CVE | Shortened Description | Severity | Publish Date | Last Modified |
|---|---|---|---|---|
| CVE-2026-56160 json | Improper authorization in Azure Red Hat OpenShift (ARO) allows an authorized attacker to elevate privileges over a network. | Not Provided | 2026-07-24 | 2026-07-25 |
| CVE-2026-54100 json | A flaw was found in the Windows Machine Config Operator (WMCO) for Red Hat OpenShift Container Platform. WMCO establishes SSH... | Not Provided | 2026-06-22 | 2026-07-29 |
| CVE-2026-54099 json | A flaw was found in the Windows Machine Config Operator (WMCO) for Red Hat OpenShift Container Platform. The WICD CSR auto-ap... | Not Provided | 2026-06-22 | 2026-07-29 |
| CVE-2026-49332 json | A flaw was found in openshift/oauth-proxy. The proxy sets authenticated identity headers using only dash-variant keys (X-Forw... | Not Provided | 2026-07-28 | 2026-07-28 |
| CVE-2026-46579 json | A flaw was found in the OpenShift Router. When a Route has `insecureEdgeTerminationPolicy` set to Allow, the HTTP frontend do... | Not Provided | 2026-05-29 | 2026-08-02 |
| CVE-2026-42965 json | A flaw was found in the OpenShift Router. A user with EndpointSlice write access can exploit this vulnerability by creating a... | Not Provided | 2026-05-29 | 2026-07-15 |
| CVE-2026-35092 json | Not Provided | 2026-04-01 | 2026-05-26 | |
| CVE-2026-35091 json | Not Provided | 2026-04-01 | 2026-05-26 | |
| CVE-2026-27134 json | Strimzi provides a way to run an Apache Kafka cluster on Kubernetes or OpenShift in various deployment configurations. In ver... | Not Provided | 2026-02-21 | 2026-07-15 |
| CVE-2026-18381 json | A flaw was found in the koku-metrics-operator for Red Hat OpenShift. The operator's CostManagementMetricsConfig custom resour... | Not Provided | 2026-07-30 | 2026-07-30 |
Known Affected Configurations (CPE V2.3)
| Type | Vendor | Product | Version | Update | Edition | Language |
|---|---|---|---|---|---|---|
| Application | Redhat | Openshift | 4.3.5 | |||
| Application | Redhat | Openshift | 4.3 | |||
| Application | Redhat | Openshift | 4.2.21 | |||
| Application | Redhat | Openshift | 4.2 | |||
| Application | Redhat | Openshift | 4.1.37 | |||
| Application | Redhat | Openshift | 4.1 | |||
| Application | Redhat | Openshift | 4.0 | |||
| Application | Redhat | Openshift | 3.9 | |||
| Application | Redhat | Openshift | 3.8 | |||
| Application | Redhat | Openshift | 3.7 | |||
| Application | Redhat | Openshift | 3.6 | |||
| Application | Redhat | Openshift | 3.5 | |||
| Application | Redhat | Openshift | 3.4 | |||
| Application | Redhat | Openshift | 3.3.1.11 | |||
| Application | Redhat | Openshift | 3.3 | |||
| Application | Redhat | Openshift | 3.2.1.23 | |||
| Application | Redhat | Openshift | 3.11.188-4 | |||
| Application | Redhat | Openshift | 3.11 | |||
| Application | Redhat | Openshift | 3.10 | |||
| Application | Redhat | Openshift | 3.1 |