Where
-Infinity
0

Vendor Risk Score

See how red hat compares to other vendors in security performance

View Risk Score →

Software

red hat red hat enterprise linux for x86_64 - update services for sap solutions
2669
red hat red hat enterprise linux server for power le - update services for sap solutions
2634
red hat red hat enterprise linux server - aus
2277
red hat red hat enterprise linux for arm 64 - 4 years of updates
2179
red hat red hat enterprise linux for ibm z systems - 4 years of updates
2125
red hat red hat enterprise linux for x86_64
2056
red hat red hat enterprise linux for power, little endian
2032
red hat red hat enterprise linux for arm 64
2011
red hat red hat enterprise linux for power, little endian - extended update support
2001
red hat red hat enterprise linux for x86_64 - extended update support
1976
red hat red hat enterprise linux for arm 64 - extended update support
1973
red hat red hat enterprise linux for ibm z systems
1929
red hat red hat enterprise linux for ibm z systems - extended update support
1891
red hat red hat enterprise linux for x86_64 - extended life cycle
1327
red hat red hat enterprise linux for power, little endian - extended life cycle
1293
red hat red hat enterprise linux for arm 64 - extended life cycle
1249
red hat red hat enterprise linux for ibm z systems - extended life cycle
1218
red hat enterprise linux server
800
red hat enterprise linux for sap solutions
785
red hat enterprise linux for power, little endian - extended update support
784
red hat enterprise linux server for power le - update services for sap solutions
784
red hat red hat enterprise linux server - tus
749
red hat red hat codeready linux builder for x86_64 - extended update support
736
red hat red hat codeready linux builder for arm 64 - extended update support
734
red hat red hat codeready linux builder for power, little endian - extended update support
731
red hat red hat codeready linux builder for x86_64
721
red hat red hat codeready linux builder for arm 64
717
red hat enterprise linux server for ibm z systems
714
red hat red hat codeready linux builder for power, little endian
711
red hat red hat codeready linux builder for ibm z systems - extended update support
701
red hat red hat codeready linux builder for ibm z systems
635
red hat red hat enterprise linux for power, little endian - 4 years of support
586
red hat red hat enterprise linux for x86_64 - 4 years of updates
582
red hat openshift container platform
570
red hat enterprise linux for arm 64
568
red hat red hat enterprise linux for x86_64 - extended update support extension
531
red hat enterprise linux 8
489
red hat red hat openshift container platform
482
red hat enterprise linux for arm64 eus
457
red hat enterprise linux for x86_64 - extended update support
422
red hat enterprise linux for ibm z systems
414
red hat red hat hardened images
271
red hat red hat openshift container platform for power
271
red hat red hat openshift container platform for arm 64
270
red hat red hat openshift container platform for ibm z and linuxone
269
red hat red hat enterprise linux for x86_64 - extended life cycle long life
229
red hat codeready linux builder for x86_64 - extended update support
228
red hat codeready linux builder for ibm z systems
196
red hat red hat enterprise linux server for arm 64 - 4 years of updates
174
red hat openshift container platform for ibm linuxone
164
Severity
7

Important: Red Hat Build of Apache Camel 4.18.4 for Spring Boot release.

First published (updated )
Severity
7

Important: python-cryptography security update

First published (updated )
Severity
7

Important: python-cryptography security update

First published (updated )
Severity
7

Important: acl security update

First published (updated )

Red Hat Hardened Images RPMs Security Update

First published (updated )
Severity
7

Important: firefox security update

First published (updated )
Severity
7

Important: gstreamer1-plugins-good security update

First published (updated )
Severity
7

Important: gstreamer1-plugins-good security update

First published (updated )
Severity
7

Important: libxml2 security update

First published (updated )

Red Hat Hardened Images RPMs Security Update

First published (updated )
Severity
9

Critical: unbound security update

First published (updated )
Severity
9

Critical: unbound security update

First published (updated )

Red Hat Hardened Images RPMs Security Update

First published (updated )
Severity
7

Important: perl-DBI security update

First published (updated )
Severity
6.8
AV:N/AC:L/PR:H/UI:N/S:C/C:H/I:N/A:N

An authorization bypass was found in the Ansible Automation Platform (AAP) gateway. The gateway API allows an authenticated administrator to create a new service key for the Controller service cluster. Because service-key creation is not restricted to the installer-provisioned provisioning path, an administrator-issued key is cryptographically indistinguishable from a legitimate one and can be used to forge a service-authentication token that impersonates the Controller service. Combined with the gateway OIDC workload-identity endpoint (enabled via FEATUREOIDCWORKLOADIDENTITYENABLED), the attacker can drive the gateway to sign Workload Identity Tokens (WITs) for arbitrary Controller workloads. A downstream resource server such as HashiCorp Vault that trusts the gateway OIDC key will accept the forged WIT and return the AAP credentials bound to that workload, disclosing secrets beyond the attacker's authorization boundary.

First published (updated )
Severity
7

Important: kernel security update

First published (updated )
Severity
7

Important: kernel security update

First published (updated )
Severity
4.3
AV:N/AC:L/PR:L/UI:N/S:U/C:L/I:N/A:N

A flaw was found in the Admin REST API of Keycloak, an identity and access management solution. The endpoints used to retrieve groups associated with a specific role do not properly check for individual group visibility permissions. This allows a delegated administrator with basic search privileges to view detailed information about all groups assigned to a role, bypassing intended security restrictions that should limit their view to specific groups.

First published (updated )
Severity
7

Important: kernel security update

First published (updated )
Severity
4

Moderate: OpenShift Container Platform 4.14.74 bug fix and security update

First published (updated )
Severity
7

Important: tesseract security update

First published (updated )
Severity
7

Important: OpenShift Container Platform 4.16.71 bug fix and security update

First published (updated )
Severity
7

Important: kernel security update

First published (updated )
Severity
7

Important: cockpit-image-builder security update

First published (updated )

Contact

SecAlerts Pty Ltd.
132 Wickham Terrace
Fortitude Valley,
QLD 4006, Australia
info@secalerts.co
By using SecAlerts services, you agree to our services end-user license agreement. This website is safeguarded by reCAPTCHA and governed by the Google Privacy Policy and Terms of Service. All names, logos, and brands of products are owned by their respective owners, and any usage of these names, logos, and brands for identification purposes only does not imply endorsement. If you possess any content that requires removal, please get in touch with us.
© 2026 SecAlerts Pty Ltd.
ABN: 70 645 966 203, ACN: 645 966 203