Known Vulnerabilities for products from Redhat

Listed below are 20 of the newest known vulnerabilities associated with the vendor "Redhat".

These CVEs are retrieved based on exact matches on listed vendor information (CPE data) as well as a keyword search to ensure the newest vulnerabilities with no officially listed vendor information are still displayed.

Data on known vulnerable products is also displayed based on information from known CPEs, each product links to its respective vulnerability page.

Additional devices specifications by Redhat can be found at device.report : Redhat

Known Vulnerabilities

CVE Shortened Description Severity Publish Date Last Modified
CVE-2026-68563 json Not Provided 2026-07-30 2026-07-31
CVE-2026-68562 json Not Provided 2026-07-30 2026-07-31
CVE-2026-59851 json A flaw was found in libssh. On servers with GSSAPIKeyExchange enabled, the gssapi-keyex path does not verify whether the auth... Not Provided 2026-07-21 2026-07-30
CVE-2026-59850 json A flaw was found in libssh. If data packets are processed after a channel is closed, channel data callbacks can be invoked af... Not Provided 2026-07-21 2026-07-30
CVE-2026-59849 json A flaw was found in libssh. Logic errors in automatic certificate-based public key authentication can cause libssh clients to... Not Provided 2026-07-21 2026-07-30
CVE-2026-59848 json A flaw was found in libssh. A malicious SFTP server can send responses for unknown request IDs that libssh clients keep queue... Not Provided 2026-07-21 2026-07-30
CVE-2026-59847 json A flaw was found in libssh. Incorrect AES-GCM finalization checks in builds using the OpenSSL backend can effectively remove ... Not Provided 2026-07-21 2026-07-30
CVE-2026-59846 json A flaw was found in libssh. A malicious username expanded through %r in ProxyCommand handling can inject shell metacharacters... Not Provided 2026-07-21 2026-07-30
CVE-2026-59845 json A flaw was found in libssh. When ProxyCommand is used, an unchecked fork() failure can be stored as process ID -1; during cle... Not Provided 2026-07-21 2026-07-30
CVE-2026-59844 json A flaw was found in libssh. A remote authenticated client can issue SSH_FXP_READ requests with an arbitrarily large length, c... Not Provided 2026-07-21 2026-07-30
CVE-2026-59843 json A flaw was found in libssh. A remote authenticated peer can advertise a zero maximum packet size in SSH_MSG_CHANNEL_OPEN, cau... Not Provided 2026-07-21 2026-07-30
CVE-2026-59842 json A flaw was found in libssh. During server-side GSSAPI key exchange, a client-supplied Curve25519 public key shorter than the ... Not Provided 2026-07-21 2026-07-30
CVE-2026-59089 json A flaw was found in GIMP. The PlayStation TIM loader, responsible for handling PlayStation image files, incorrectly calculate... Not Provided 2026-07-06 2026-07-10
CVE-2026-58384 json A flaw was found in GIMP's PSD parser. An integer overflow in read_RLE_channel() can cause an undersized heap allocation for ... Not Provided 2026-07-07 2026-07-16
CVE-2026-58380 json A flaw was found in GIMP's PNM file format parser. When parsing a specially crafted PNM file, the pnmscanner_gettoken() funct... Not Provided 2026-07-06 2026-07-16
CVE-2026-58016 json A flaw was found in GLib. A state confusion issue exists in g_dbus_node_info_new_for_xml() in the gio/gdbusintrospection.c fi... Not Provided 2026-06-30 2026-08-03
CVE-2026-58015 json A flaw was found in GLib. The D-Bus client-side implementation of the DBUS_COOKIE_SHA1 SASL authentication mechanism does not... Not Provided 2026-06-30 2026-08-03
CVE-2026-58014 json A flaw was found in GLib. An off-by-one error can occur in the g_key_file_get_locale_string_list function in the gkeyfile.c f... Not Provided 2026-06-30 2026-08-03
CVE-2026-58013 json A flaw was found in GLib. A buffer over-read can occur in g_io_channel_read_line_backend() in the giochannel.c file when a cu... Not Provided 2026-06-30 2026-08-03
CVE-2026-58012 json A flaw was found in GLib. A buffer over-read can occur in the g_regex_replace function when used with the `G_REGEX_RAW` compi... Not Provided 2026-06-30 2026-08-03

Known software with vulnerabilities from Redhat

Type Vendor Product Version
Operating
System
Redhat389 Directory Server-
ApplicationRedhat3scale-
ApplicationRedhatAdvanced Cluster Management For Kubernetes2.0
ApplicationRedhatAeolus Conductor-
ApplicationRedhatAmq2.0
ApplicationRedhatAmq Online-
ApplicationRedhatAnalog Real-time Synthesizer-
ApplicationRedhatAnsible0.0.1
ApplicationRedhatAnsible Engine0.0.1
ApplicationRedhatAnsible Tower-
ApplicationRedhatApicast2.0.0
ApplicationRedhatApplication Server-
ApplicationRedhatAutomatic Bug Reporting Tool0.0.10
ApplicationRedhatAutomation Manager7.3.1
ApplicationRedhatBeaker0.10.0
ApplicationRedhatBigmem Kernel-
ApplicationRedhatBodhi0.2.0
ApplicationRedhatCairo-
ApplicationRedhatCeph0.1
ApplicationRedhatCeph-iscsi-cli-

© CVE.report 2026

Use of this information constitutes acceptance for use in an AS IS condition. There are NO warranties, implied or otherwise, with regard to this information or its use. Any use of this information is at the user's risk. It is the responsibility of user to evaluate the accuracy, completeness or usefulness of any information, opinion, advice or other content. EACH USER WILL BE SOLELY RESPONSIBLE FOR ANY consequences of his or her direct or indirect use of this web site. ALL WARRANTIES OF ANY KIND ARE EXPRESSLY DISCLAIMED. This site will NOT BE LIABLE FOR ANY DIRECT, INDIRECT or any other kind of loss.

CVE, CWE, and OVAL are registred trademarks of The MITRE Corporation and the authoritative source of CVE content is MITRE's CVE web site. This site includes MITRE data granted under the following license.

Free CVE JSON API cve.report/api

CVE.report and Source URL Uptime Status status.cve.report