Red Hat HawtIO HawtIO

10 known vulnerabilities in Red Hat HawtIO HawtIO, 2 critical, with patch priority, exploit likelihood and the news covering them.

Latest vulnerabilities

  • CVE-2026-6321 CVSS 7.5 high fast-uri decoded percent-encoded path separators and dot segments before applying dot-segment removal in its normalize() and equal()…
  • CVE-2026-42044 CVSS 9.1 critical Axios is a promise based HTTP client for the browser and Node.js. From 1.0.0 to before 1.15.2, he Axios library is vulnerable to a…
  • CVE-2026-42043 CVSS 10.0 critical Axios is a promise based HTTP client for the browser and Node.js. Prior to 1.15.1 and 0.31.1, an attacker who can influence the target URL…
  • CVE-2026-42041 CVSS 6.5 medium Axios is a promise based HTTP client for the browser and Node.js. Prior to 1.15.1 and 0.31.1, the Axios library is vulnerable to a…
  • CVE-2026-42039 CVSS 6.9 medium Axios is a promise based HTTP client for the browser and Node.js. Prior to 1.15.1 and 0.31.1, toFormData recursively walks nested objects…
  • CVE-2026-42033 CVSS 7.4 high Axios is a promise based HTTP client for the browser and Node.js. Prior to 1.15.1 and 0.31.1, when Object.prototype has been polluted by…
  • CVE-2026-33810 CVSS 8.2 high When verifying a certificate chain containing excluded DNS constraints, these constraints are not correctly applied to wildcard DNS SANs…
  • CVE-2026-32280 CVSS 7.5 high During chain building, the amount of work that is done is not correctly limited when a large number of intermediate certificates are…
  • CVE-2025-61726 CVSS 7.5 high The net/url package does not set a limit on the number of query parameters in a query. While the maximum size of query parameters in URLs…
  • CVE-2025-13465 CVSS 6.9 medium Lodash versions 4.0.0 through 4.17.22 are vulnerable to prototype pollution in the _.unset and _.omit functions. An attacker can pass…