Vulnerabilidades

Resumen — últimos 7 días

Vulnerabilidades nuevas2537▼ 360 respecto a la semana anterior
Críticas / altas1344▲ 80 respecto a la semana anterior
Nueva explotación activa (KEV)6▼ 5 respecto a la semana anterior
Sin puntuar (sin CVSS)62▼ 466 respecto a la semana anterior
–

23 resultados, ordenados por fecha de publicación (más recientes primero)

CVEEstadoSeveridadEPSS Explotación activaTecnologías afectadasPublicada ▼Modificada Descripción
Pendiente de análisisMedia (4.3)0.31%—KatelloAI1/10/20262/10/2026
A flaw was found in rubygem-katello. The RegistryProxiesController in Katello contains an authorization bypass vulnerability due to an execution fall-through in the registry_authorize filter. While the application identifies unauthorized requests and triggers an error response via the unauthorized method, it fails to…
Pendiente de análisisMedia (6.5)0.27%—Redhat Satellite KatelloAI1/10/20262/10/2026
A flaw was found in rubygem-katello. An SQL injection vulnerability exists in the Red Hat Satellite Katello Registry Proxy. The application fails to sanitize input parameters used in database queries within the RegistryProxiesController. The methods check_blob_push_org_label and get_matching_products_from_org take…
Pendiente de análisisMedia (5.4)0.24%—KatelloAI27/8/202628/8/2026
A flaw was found in Katello where the Content View Filter Rules API does not properly enforce authorization on the parent Content View Filter. An authenticated, low-privileged user with Content View permissions in one organization may be able to access and modify filter rules belonging to a Content View Filter in…
Pendiente de análisisMedia (4.3)0.37%—KatelloAI26/8/20262/10/2026
A flaw was found in Katello where the Content View History API does not properly enforce authorization when accessing a Content View specified by the user. An authenticated user with permission to view Content Views in one organization may be able to access the lifecycle history of a Content View belonging to another…
Pendiente de análisisMedia (4.3)0.22%—Redhat SatelliteAIRedhat KatelloAI17/6/20264/8/2026
A flaw was found in Katello's of Red Hat Satellite. A content upload functionality where insufficient authorization checks in the ContentUploadsController allowed users with the edit_products permission to query content information for repositories outside the products they were authorized to manage. An authenticated…
Pendiente de análisisMedia (5.4)0.43%—Redhat SatelliteAIRedhat KatelloAI17/3/202617/6/2026
A flaw was found in the Katello plugin for Red Hat Satellite. This vulnerability, caused by improper sanitization of user-provided input, allows a remote attacker to inject arbitrary SQL commands into the sort_by parameter of the /api/hosts/bootc_images API endpoint. This can lead to a Denial of Service (DoS) by…
ModificadaMedia (4.8)0.27%—Katello Project KatelloRedhat Satellite5/6/202417/6/2026
A flaw was found in the Katello plugin for Foreman, where it is possible to store malicious JavaScript code in the "Description" field of a user. This code can be executed when opening certain pages, for example, Host Collections.
ModificadaAlta (7.5)1.3%—Theforeman Katello10/12/201916/6/2026
Katello has a Denial of Service vulnerability in API OAuth authentication
ModificadaMedia (5.4)0.55%—Theforeman Katello5/12/201916/6/2026
Katello: Username in Notification page has cross site scripting
ModificadaMedia (5.4)0.55%—Theforeman KatelloRedhat Satellite3/12/201916/6/2026
Katello has multiple XSS issues in various entities
ModificadaBaja (2.7)0.65%—Theforeman Katello25/11/201917/6/2026
A cleartext password storage issue was discovered in Katello, versions 3.x.x.x before katello 3.12.0.9. Registry credentials used during container image discovery were inadvertently logged without being masked. This flaw could expose the registry credentials to other privileged users.
ModificadaMedia (5.4)1.00%—Redhat SatelliteTheforeman Katello13/1/201917/6/2026
A cross-site scripting (XSS) flaw was found in the katello component of Satellite. An attacker with privilege to create/edit organizations and locations is able to execute a XSS attacks against other users through the Subscriptions or the Red Hat Repositories wizards. This can possibly lead to malicious code execution…
ModificadaMedia (4.3)1.4%—Theforeman Katello14/12/201817/6/2026
A SQL injection flaw was found in katello's errata-related API. An authenticated remote attacker can craft input data to force a malformed SQL query to the backend database, which will leak internal IDs. This is issue is related to an incomplete fix for CVE-2016-3072. Version 3.10 and older is vulnerable.
ModificadaMedia (4.3)0.94%—Theforeman Katello22/8/201817/6/2026
A flaw was found in Foreman's katello plugin version 3.4.5. After setting a new role to allow restricted access on a repository with a filter (filter set on the Product Name), the filter is not respected when the actions are done via hammer using the repository id.
ModificadaMedia (5.5)0.40%—Theforeman KatelloRedhat SatelliteRedhat Satellite Capsule27/7/201817/6/2026
A flaw was found in katello-debug before 3.4.0 where certain scripts and log files used insecure temporary files. A local user could exploit this flaw to conduct a symbolic-link attack, allowing them to overwrite the contents of arbitrary files.
ModificadaMedia (4.3)0.75%—Katello1/5/201816/6/2026
Katello allows remote authenticated users to call the "system remove_deletion" CLI command via vectors related to "remove system" permissions.
ModificadaAlta (8.8)1.8%—KatelloRedhat Satellite7/6/201617/6/2026
Multiple SQL injection vulnerabilities in the scoped_search function in app/controllers/katello/api/v2/api_controller.rb in Katello allow remote authenticated users to execute arbitrary SQL commands via the (1) sort_by or (2) sort_order parameter.
ModificadaMedia (5)1.7%—Katello3/11/201417/6/2026
Katello allows remote attackers to cause a denial of service (memory consumption) via the (1) mode parameter in the setup_utils function in content_search_controller.rb or (2) action parameter in the respond function in api/api_controller.rb in app/controllers/katello/, which is passed to the to_sym method.
ModificadaBaja (2.1)0.46%—Katello Installer14/5/201416/6/2026
Katello Installer before 0.0.18 uses world-readable permissions for /etc/pki/tls/private/katello-node.key when deploying a child Pulp node, which allows local users to obtain the private key by reading the file.
ModificadaMedia (6.5)48%—Redhat Network SatelliteTheforeman Katello17/4/201416/6/2026
The users controller in Katello 1.5.0-14 and earlier, and Red Hat Satellite, does not check authorization for the update_roles action, which allows remote authenticated users to gain privileges by setting a user account to an administrator account.
ModificadaBaja (2.1)0.23%—KatelloKatello-configure1/3/201316/6/2026
modules/certs/manifests/config.pp in katello-configure before 1.3.3.pulpv2 in Katello uses weak permissions (666) for the Candlepin bootstrap RPM, which allows local users to modify the Candlepin CA certificate by writing to this file.
ModificadaBaja (2.1)0.34%—Katello1/3/201316/6/2026
script/katello-generate-passphrase in Katello 1.1 uses world-readable permissions for /etc/katello/secure/passphrase, which allows local users to obtain the passphrase by reading the file.
ModificadaCrítica (9.8)3.0%—Theforeman KatelloRedhat Enterprise Linux Server25/8/201216/6/2026
The installation script in Katello 1.0 and earlier does not properly generate the Application.config.secret_token value, which causes each default installation to have the same secret token, and allows remote attackers to authenticate to the CloudForms System Engine web interface as an arbitrary user by creating a…