p
pulp
Security Risk Profile
51
/100
mediumSecurity Risk Score
Comprehensive risk assessment based on 8 vulnerabilities, EPSS scores, exploitation status, and remediation availability.
📅 Data spans from July 15, 2015 to present
8
Total CVEs
2
Critical+High
0
Exploited
2
Unpatched
Threat Assessment
Avg CVSS
3.7
Base severity
Avg EPSS
0%
Exploit probability
Unpatched
2
Critical/High
Risk Level
51/100
medium
📈 1 in Last 30 Days
Severity Distribution
Critical
0High
2Medium
2Low
3Exploit Likelihood
>50% chance
020-50%
05-20%
0<5%
0Age Distribution
Common Weaknesses (CWE)
1
Path Traversal
2
Most Affected Products
1. Pulp Pulp5
2. Pulp Pulpcore3
3. Pulp pulp-container1
4. Foreman Foreman1
5. Katello Katello1
Recent Vulnerabilities
See more →CVE-2026-90959
CVSS 8.1high
Pulpcore: pulpcore: file:// scheme allowlist bypass in content upload file_url field enables arbitrary file read and pulp container registry signing key theft
Sep 14, 2026🔧 No Patch
REDHAT-BUG-2490703
CVSS 7.0high
Jun 19, 2026🔧 No Patch
https://seclists.org/oss-sec/2024/q3/252
unknown
CVE-2024-7012, CVE-2024-7923: Authentication bypass in Foman & Pulpco
Sep 6, 2024🔧 No Patch
REDHAT-BUG-2300125
CVSS 4.0medium
Jul 26, 2024🔧 No Patch
REDHAT-BUG-1598928
CVSS 4.0medium
Jul 6, 2018🔧 No Patch
REDHAT-BUG-1326251
CVSS 1.0low
Apr 12, 2016🔧 No Patch
REDHAT-BUG-1322706
CVSS 1.0low
Mar 31, 2016🔧 No Patch
REDHAT-BUG-1243526
CVSS 1.0low
Jul 15, 2015🔧 No Patch
Monitor pulp in Real-Time
Get instant alerts when new vulnerabilities are discovered. Stay ahead of security threats with SecAlerts.