Red Hat Satellite
23 known vulnerabilities in Red Hat Satellite, 2 critical, 1 actively exploited, with patch priority, exploit likelihood and the news covering them.
Recently exploited
- CVE-2026-48710 CVSS 6.5 medium · actively exploited Kludex Starlette HTTP Request/Response Smuggling Vulnerability
Latest vulnerabilities
- CVE-2026-56098 CVSS 4.3 medium A flaw was found in rubygem-katello. The RegistryProxiesController in Katello contains an authorization bypass vulnerability due to an…
- CVE-2026-56097 CVSS 6.5 medium A flaw was found in rubygem-katello. An SQL injection vulnerability exists in the Red Hat Satellite Katello Registry Proxy. The…
- CVE-2026-12545 CVSS 6.7 medium A flaw was found in rubygem-hammer_cli. A command injection vulnerability exists in Hammer CLI and the Railties (Ruby on Rails) component…
- CVE-2026-12542 CVSS 5.3 medium A flaw was found in Foreman. The foreman-tail utility is vulnerable to OS command injection due to the unsafe use of the eval command. The…
- CVE-2026-96659 CVSS 9.1 critical A flaw was found in Foreman. This vulnerability allows an authenticated user with low-level Viewer permissions to cause unauthorized…
- CVE-2026-96658 CVSS 9.9 critical A flaw was found in Foreman. An authenticated attacker with low-level permissions can achieve remote code execution (RCE) by bypassing the…
- CVE-2026-12544 CVSS 7.7 high A flaw was found in Foreman. The foreman-rake initialization logic in /usr/share/foreman/config/settings.rb contains a vulnerable code…
- CVE-2026-12541 CVSS 8.2 high A flaw was found in Foreman. OS command injection vulnerabilities exist in the foreman-rake db:dump and db:import_dump tasks. The…
- CVE-2026-12540 CVSS 8.2 high A flaw was found in Foreman. A command injection vulnerability exists in the foreman-rake errors:fetch_log task. The request_id parameter…
- CVE-2026-12423 CVSS 7.5 high A flaw was found in Foreman. The Red Hat Satellite /unattended/provision API endpoint is vulnerable to an authentication bypass due to a…
- CVE-2026-12405 CVSS 8.8 high A flaw was found in rubygem-foreman_remote_execution. A command injection vulnerability exists in the Red Hat Satellite API…
- CVE-2026-90959 CVSS 8.1 high A path traversal vulnerability was found in pulpcore. The content upload API accepts a 'file_url' parameter that allows users with file…
- CVE-2026-92904 CVSS 4.3 medium A flaw was found in the foreman_remote_execution plugin's template invocations controller. The show_template_invocation_by_host action…
- CVE-2026-92893 CVSS 4.3 medium A flaw was found in the foreman_ansible plugin's Ansible inventory API. The controller builds its host query using an unscoped Host.where…
- CVE-2026-92894 CVSS 4.3 medium A flaw was found in the foreman_ansible plugin's Ansible override values API. The destroy action resolves the target LookupValue record by…
- CVE-2026-42784 CVSS 7.4 high A flaw was found in sequoia-openpgp. The library incorrectly infers key flags for older certificates when a key flags subpacket is…
- CVE-2026-84232 CVSS 5.4 medium A flaw was found in pulpcore's content serving application. Files uploaded to Pulp file-type repositories are served with their original…
- CVE-2026-84218 CVSS 8.1 high A flaw was found in Jolokia's JSR-160 proxy functionality where insufficient validation of client-controlled JMX service URLs allows a…
- CVE-2026-17615 CVSS 7.5 high A flaw was found in RESTEasy's SourceProvider. This vulnerability allows an unauthenticated attacker to perform an unauthenticated remote…
- CVE-2026-82327 CVSS 5.5 medium A flaw was found in libsolv, a dependency-resolution library used by RPM-based package managers such as dnf and zypper to work with .solv…
- CVE-2026-81668 CVSS 5.4 medium A flaw was found in Katello where the Content View Filter Rules API does not properly enforce authorization on the parent Content View…
- CVE-2026-81658 CVSS 6.5 medium A flaw was found in Foreman. The template revision endpoint does not enforce object-level authorization when retrieving an audited…
- CVE-2026-48710 CVSS 6.5 medium · actively exploited Kludex Starlette HTTP Request/Response Smuggling Vulnerability