Filter
-Infinity
0

Red Hat QuarkusQuarkus: json payload getting processed prior to security checks when rest resources are used with annotations.

First published (updated )

Red Hat QuarkusCode Injection

First published (updated )

redhat/eap7-undertowSSRF

First published (updated )

PostgreSQL JDBC DriverUnchecked Class Instantiation when providing Plugin Classes

First published (updated )

Red Hat QuarkusIt was found that Quarkus 2.10.x does not terminate HTTP requests header context which may lead to u…

First published (updated )

Never miss a vulnerability like this again

Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.

IBM Cloud Pak for Business Automationblock repositories using http by default

First published (updated )

maven/io.quarkus:quarkus-smallrye-graphql-clientQuarkus: graphql operations over websockets bypass

EPSS
0.07%
First published (updated )

Red Hat QuarkusCritical: Red Hat build of Quarkus 3.8.6.SP1 Security Update

First published (updated )

Red Hat QuarkusCritical: Red Hat build of Quarkus 3.2.12.SP1 Security Update

First published (updated )

redhat/quarkusA flaw was found in Quarkus. The state and potentially associated permissions can leak from one web …

8.8
First published (updated )

Never miss a vulnerability like this again

Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.

maven/org.keycloak:keycloak-commonInput Validation

8.8
First published (updated )

GradleLocal privilege escalation through system temporary directory

8.8
First published (updated )

maven/io.quarkus:quarkus-rest-deploymentIo.quarkus:quarkus-rest: quarkus rest endpoint request parameter leakage due to shared instance

8.3
First published (updated )

Red Hat QuarkusQuarkus: http security policy bypass

8.1
First published (updated )

redhat/log4jDeserialization of untrusted data in JMSAppender in Apache Log4j 1.2

8.1
First published (updated )

Never miss a vulnerability like this again

Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.

maven/io.quarkus:quarkus-coreQuarkus-core: tls protocol configured with quarkus.http.ssl.protocols is not enforced, client can enforce weaker supported tls protocol

8.1
First published (updated )

GradleRepository content filters do not work in Settings pluginManagement

First published (updated )

Red Hat QuarkusMySQL Connector/J has no security check when external general entities are included in XML sources, …

7.9
First published (updated )

Linux KernelUse After Free

7.8
First published (updated )

Linux KernelRace Condition, Use After Free

7.8
First published (updated )

Never miss a vulnerability like this again

Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.

redhat/postgresql-jdbcXEE

7.7
First published (updated )

Red Hat QuarkusQuarkus: build env information disclosure via gradle plugin

7.7
EPSS
0.09%
First published (updated )

Oracle Banking PlatformXEE

7.5
First published (updated )

Red Hat OpenShift Container PlatformUndertow: infinite loop in sslconduit during close

7.5
First published (updated )

FasterXML Jackson Dataformats BinaryDenial of Service (DoS)

7.5
First published (updated )

Never miss a vulnerability like this again

Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.

redhat/eap7-undertowA flaw was found in Undertow. A potential security issue in flow control handling by the browser ove…

7.5
First published (updated )

Oracle Peoplesoft Enterprise Campus Software Campus CommunityLast updated 28 March 2025

7.5
First published (updated )

Oracle Banking Digital ExperienceLast updated 24 July 2024

7.5
First published (updated )

Oracle Banking Digital ExperienceLast updated 24 July 2024

7.5
First published (updated )

redhat/candlepinIn FasterXML jackson-databind before versions 2.13.4.1 and 2.12.17.1, resource exhaustion can occur …

7.5
First published (updated )

Never miss a vulnerability like this again

Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.

Contact

SecAlerts Pty Ltd.
132 Wickham Terrace
Fortitude Valley,
QLD 4006, Australia
info@secalerts.co
By using SecAlerts services, you agree to our services end-user license agreement. This website is safeguarded by reCAPTCHA and governed by the Google Privacy Policy and Terms of Service. All names, logos, and brands of products are owned by their respective owners, and any usage of these names, logos, and brands for identification purposes only does not imply endorsement. If you possess any content that requires removal, please get in touch with us.
© 2025 SecAlerts Pty Ltd.
ABN: 70 645 966 203, ACN: 645 966 203