Known Vulnerabilities for Package Manager by Redhat
Listed below are 1 of the newest known vulnerabilities associated with "Package Manager" by "Redhat".
These CVEs are retrieved based on exact matches on listed software, hardware, and vendor information (CPE data) as well as a keyword search to ensure the newest vulnerabilities with no officially listed software information are still displayed.
Data on known vulnerable versions is also displayed based on information from known CPEs
Known Vulnerabilities
| CVE | Shortened Description | Severity | Publish Date | Last Modified |
|---|---|---|---|---|
| CVE-2026-102904 json | JupyterLab is an extensible environment for interactive and reproducible computing, based on the Jupyter Notebook Architectur... | Not Provided | 2026-09-29 | 2026-09-30 |
| CVE-2026-101044 json | pacquet, the Rust package-manager component shipped in the pnpm npm package versions >=12.0.0-alpha.0 and <12.0.0-alpha.5, do... | Not Provided | 2026-09-27 | 2026-09-30 |
| CVE-2026-96455 json | The Reachy Mini daemon exposes an HTTP API for managing the robot. Its app installation endpoint, POST /apps/install in src/r... | Not Provided | 2026-09-23 | 2026-09-23 |
| CVE-2026-92714 json | The Download Manager plugin for WordPress is vulnerable to Insecure Direct Object Reference in versions up to, and including,... | Not Provided | 2026-09-18 | 2026-09-18 |
| CVE-2026-88888 json | Renovate before 44.14.7 contains a command injection vulnerability in the Mix manager when processing private dependencies wi... | Not Provided | 2026-09-10 | 2026-09-29 |
| CVE-2026-86610 json | The Download Manager WordPress plugin before 3.3.71 does not sufficiently sanitise and escape a package setting before output... | Not Provided | 2026-10-01 | 2026-10-01 |
| CVE-2026-84361 json | Composer is a dependency Manager for the PHP language. From 1.0 until 2.2.30 and 2.10.3, a malicious dependency package from ... | Not Provided | 2026-09-01 | 2026-09-03 |
| CVE-2026-82393 json | pnpm is a package manager. Prior to 10.34.5 and 11.11.0, pnpm accepts a scoped path traversal in a tarball dependency's packa... | Not Provided | 2026-08-31 | 2026-09-02 |
| CVE-2026-82392 json | pnpm is a package manager. Prior to 10.34.5 and from 11.0.0 until 11.11.0, pnpm parses the package name from attacker-control... | Not Provided | 2026-08-31 | 2026-09-01 |
| CVE-2026-78177 json | A vulnerability was found in TanStack devtools-vite 0.7.0. Affected by this issue is the function installPackage of the file ... | Not Provided | 2026-08-24 | 2026-08-24 |
Known Affected Configurations (CPE V2.3)
| Type | Vendor | Product | Version | Update | Edition | Language |
|---|---|---|---|---|---|---|
| Application | Redhat | Package Manager | - |