Vulnerabilidades
Resumen — últimos 7 días
Vulnerabilidades nuevas2737▼ 484 respecto a la semana anterior
Críticas / altas1302▼ 187 respecto a la semana anterior
Nueva explotación activa (KEV)3▼ 5 respecto a la semana anterior
Sin puntuar (sin CVSS)227▼ 275 respecto a la semana anterior
6104 resultados, ordenados por fecha de publicación (más recientes primero)
| CVE | Estado | Severidad | EPSS | Explotación activa | Tecnologías afectadas | Publicada ▼ | Modificada | Descripción |
|---|---|---|---|---|---|---|---|---|
| Modificada | Alta (7.2) | 0.55% | — | Redhat Build OF Keycloak | 2/8/2026 | 16/9/2026 | A flaw was found in the user creation component of Keycloak when Fine-Grained Admin Permissions V2 (FGAP V2) is enabled. This issue allows a sub-administrator with permission to create users to add those users to any group, even groups the sub-administrator is not authorized to manage. This could lead to unauthorized… | |
| Modificada | Media (5.4) | 0.30% | — | Redhat Build OF Keycloak | 2/8/2026 | 16/9/2026 | A flaw was found in the full-scope-disabled client-policy executor within the keycloak-services component. This component is responsible for enforcing security policies during client registration and configuration in Red Hat Build of Keycloak. The issue occurs because the executor only validates the fullScopeAllowed… | |
| Pendiente de análisis | Alta (8.2) | 0.43% | — | Redhat Ansible Automation PlatformAIRedhat AAP GatewayAI | 31/7/2026 | 4/8/2026 | A flaw was found in aap-gateway, a component of Ansible Automation Platform's Event-Driven Ansible (EDA). An unauthenticated remote attacker can bypass mutual Transport Layer Security (mTLS) authentication for event streams. This is achieved by manipulating the event stream URL and forging the HTTP Subject header. The… | |
| Pendiente de análisis | Alta (7.5) | 0.52% | — | Gnome Remote DesktopAIRedhat Enterprise LinuxAI | 31/7/2026 | 13/8/2026 | A flaw was found in gnome-remote-desktop as shipped in Red Hat Enterprise Linux. When the daemon is running in system mode with RDP enabled, the incoming connection handler bypasses the connection throttler, allowing an unauthenticated remote attacker to open many parallel pre-authentication connections to the RDP… | |
| Modificada | Alta (7.5) | 0.83% | — | Redhat Directory ServerRedhat 389 Directory ServerRedhat Enterprise Linux | 31/7/2026 | 18/8/2026 | A stack buffer overflow flaw was found in 389 Directory Server (389-ds-base). The get_ruvelement_from_berval() function in repl5_ruv.c copies digit characters from a network-supplied RUV berval into a fixed 16-byte stack buffer without bounds checking. A remote unauthenticated attacker can crash the LDAP server by… | |
| Modificada | Alta (7.5) | 0.53% | — | Redhat Directory ServerRedhat 389 Directory ServerRedhat Enterprise Linux | 31/7/2026 | 18/8/2026 | A flaw was found in 389 Directory Server. An unauthenticated remote attacker can inject LDAP search filters into the CleanAllRUV replication status-check extended operation. Because the handler performs the search against cn=config with elevated replication plugin privileges and returns a boolean match result, the… | |
| Pendiente de análisis | Alta (8.5) | 0.19% | — | Redhat Advanced Cluster Security FOR KubernetesAI | 31/7/2026 | 3/8/2026 | A flaw was found in Red Hat Advanced Cluster Security for Kubernetes (RHACS). When processing Kubernetes Deployments, ACS replaces deployment identity metadata based on the openshift.io/encoded-deployment-config label. A user with permission to create Deployments can set this label to "null", causing ACS to treat the… | |
| Modificada | Media (5.4) | 0.29% | — | Redhat Build OF Keycloak | 31/7/2026 | 16/9/2026 | A flaw was found in the TokenManager component of the Keycloak identity management service. When an administrator attempts to revoke tokens for a specific application (client) using a "not-before" policy, the revocation may be silently ignored if the overall security realm already has an older, non-zero revocation… | |
| Analizada | Media (4.7) | 0.33% | — | Redhat Build OF Keycloak | 31/7/2026 | 7/8/2026 | A flaw was found in the SAML protocol implementation of Keycloak, an open-source identity and access management solution. The issue occurs when Keycloak handles SAML authentication requests using the HTTP-Redirect binding. If a client is configured with a wildcard redirect URL, an attacker can craft a request that… | |
| Modificada | Alta (8.1) | 0.40% | — | Redhat Build OF Keycloak | 31/7/2026 | 16/9/2026 | Keycloak provides a way to let users log in using Microsoft accounts while restricting access to a specific organization (tenant). A flaw was discovered where this restriction is ignored when using the token exchange feature. This means an attacker with a valid Microsoft token from a completely different organization… | |
| Modificada | Alta (8.1) | 0.40% | — | Redhat Build OF Keycloak | 31/7/2026 | 16/9/2026 | Keycloak allows users to log in using Google accounts and can be configured to only allow users from specific Google Workspace domains. A flaw was found where the token exchange feature, which allows swapping a Google token for a Keycloak token, does not check these domain restrictions. This means an attacker with a… | |
| Analizada | Media (5.4) | 0.31% | — | Redhat Build OF Keycloak | 31/7/2026 | 7/8/2026 | A flaw was found in the secure-client-uris client policy executor within Keycloak core services. This component is responsible for enforcing security requirements on client configurations, such as requiring encrypted connections for redirect URIs. Due to an improper check that only looks at the start of a web address… | |
| Modificada | Media (4.7) | 0.41% | — | Redhat Build OF Keycloak | 31/7/2026 | 16/9/2026 | A flaw was found in the keycloak-services component of Keycloak, which handles OpenID Connect (OIDC) authentication flows. The issue occurs because the security check designed to prevent HTTP parameter pollution only inspects the query portion of a redirect URL and ignores the fragment portion. When a client is… | |
| Analizada | Media (6.5) | 0.34% | — | Redhat Build OF Keycloak | 31/7/2026 | 7/8/2026 | A flaw was found in the OIDC token introspection endpoint of the keycloak-services component. Keycloak is an open-source identity and access management solution used to secure modern applications and services. The issue occurs when a confidential client, configured to receive signed JWT introspection responses,… | |
| Analizada | Baja (3.7) | 0.32% | — | Redhat Build OF Keycloak | 31/7/2026 | 7/8/2026 | A flaw was found in the keycloak-services component of Keycloak, which provides identity and access management services. The issue occurs when a realm administrator uses a wildcard domain (like *.example.com) to restrict which hosts can register or update clients. Due to improper validation, the system accepts any… | |
| Analizada | Media (6.5) | 0.31% | — | Redhat Build OF Keycloak | 31/7/2026 | 7/8/2026 | A flaw was found in the group policy evaluation logic of Keycloak, an identity and access management solution. When a group policy is set to extend permissions to child groups, the system incorrectly uses a simple text-based prefix check to verify group membership. This allows a user who belongs to a different group… | |
| Modificada | Media (4.9) | 0.42% | — | Redhat Build OF Keycloak | 31/7/2026 | 16/9/2026 | A flaw was found in the RoleContainerResource component of Keycloak. The issue occurs because certain name-based endpoints in the admin REST API do not properly enforce authorization checks when managing composite roles. This allows a delegated administrator with manage-realm permissions to remove essential child… | |
| Pendiente de análisis | Media (5.5) | 0.14% | — | Ansible-collection-redhat-leappAI | 30/7/2026 | 3/8/2026 | A flaw was found in ansible-collection-redhat-leapp. When a remediation task is executed with elevated privileges and the `leapp_old_postgresql_data` option is selected, a PostgreSQL data backup archive is created with insecure permissions. This allows a local non-root user on the managed node to read sensitive… | |
| Pendiente de análisis | Media (6.2) | 0.38% | — | Ansible-collection-redhat-leappAI | 30/7/2026 | 3/8/2026 | A flaw was found in ansible-collection-redhat-leapp. An attacker with privileged write access to a managed node's Leapp report content can manipulate it. When an operator runs a specific remediation task, this manipulated report can cause the Ansible controller to read its own local files and copy them to the managed… | |
| Analizada | Media (6.8) | 0.46% | — | Redhat Cost Management Metrics Operator | 30/7/2026 | 12/8/2026 | A flaw was found in koku-metrics-operator. The operator's CostManagementMetricsConfig custom resource allows a user able to edit the CR to specify an arbitrary OAuth token endpoint. When authentication.type is set to service-account, the operator sends the tenant's Red Hat SSO client_id and client_secret to this… | |
| Analizada | Alta (7.6) | 0.32% | — | Redhat Cost Management Metrics Operator | 30/7/2026 | 12/8/2026 | A flaw was found in the koku-metrics-operator for Red Hat OpenShift. The operator's CostManagementMetricsConfig custom resource allows a user able to edit the CR to specify an arbitrary upload URL. The operator attaches its own Kubernetes service-account bearer token to queries sent to this user-controlled URL,… | |
| Analizada | Media (6.8) | 0.39% | — | Redhat Cost Management Metrics Operator | 30/7/2026 | 17/8/2026 | A flaw was found in koku-metrics-operator. The operator's CostManagementMetricsConfig custom resource allows user able to edit the CR to specify an arbitrary upload URL. When authentication.type is set to token (the default), the cluster-global Red Hat Cloud pull-secret bearer token is attached to HTTP requests sent… | |
| Pendiente de análisis | Alta (7.2) | 0.75% | — | Redhat QuayAI | 29/7/2026 | 1/10/2026 | A flaw was found in Quay. A user configured in GLOBAL_READONLY_SUPER_USERS is able to view robot account tokens for repositories they are not a member of, allowing an attacker with read-only superuser privileges to impersonate any robot account. | |
| Analizada | Media (6.5) | 0.31% | — | Redhat Build OF Keycloak | 29/7/2026 | 11/8/2026 | A flaw was found in the client policy enforcement mechanism of Keycloak. The issue occurs when the system checks group membership by name instead of a unique identifier. An attacker with client management privileges could bypass security policies by joining a group with a matching name in a different part of the group… | |
| Modificada | Media (5.5) | 0.38% | — | Redhat Build OF Keycloak | 29/7/2026 | 16/9/2026 | Keycloak provides a way to manage identity providers and organizations through its administrative API. A flaw was discovered where an administrator with permission to manage identity providers could link a new provider to an organization without having the required permissions to manage that organization. This could… |