Red hat openshift data foundation
This hub aggregates every CVE we track for Red hat openshift data foundation, a product in the cloud saas space. Use it to gauge the current risk picture and drill into individual advisories.
46
CVEs tracked
4
Critical
24
High
0
In CISA KEV
Severity distribution
HIGH24MEDIUM17CRITICAL4LOW1
Monthly trend
0
0
0
0
0
0
0
1
0
0
1
0
0
1
0
1
0
2
1
2
2
7
0
0
2024-072026-06
Latest CVEs
The 15 most recently published vulnerabilities affecting Red hat openshift data foundation.
- CVE-2026-5807Vault Vulnerable to Denial-of-Service via Unauthenticated Root Token Generation/Rekey Operations7.5
- CVE-2026-32281Inefficient policy validation in crypto/x5097.5
- CVE-2026-32280Unexpected work during chain building in crypto/x5097.5
- CVE-2026-32283Unauthenticated TLS 1.3 KeyUpdate record can cause persistent connection retention and DoS in crypto/tls7.5
- CVE-2026-32288Unbounded allocation for old GNU sparse in archive/tar5.5
- CVE-2026-33810Case-sensitive excludedSubtrees name constraints cause Auth Bypass in crypto/x5098.2
- CVE-2026-32289JsBraceDepth Context Tracking Bugs (XSS) in html/template6.1
- CVE-2026-33748BuildKit Git URL subdir component can cause access to restricted files7.5
- CVE-2026-33747BuildKit vulnerable to malicious frontend causing file escape outside of storage root8.4
- CVE-2026-27903minimatch has a ReDoS: matchOne() combinatorial backtracking via multiple non-adjacent GLOBSTAR segments7.5
- CVE-2026-26960node-tar has Arbitrary File Read/Write via Hardlink Target Escape Through Symlink Chain in Extraction7.1
- CVE-2026-23490pyasn1 has a DoS vulnerability in decoder7.5
- CVE-2025-66471urllib3 Streaming API improperly handles highly compressed data7.5
- CVE-2025-66418urllib3 allows an unbounded number of links in the decompression chain7.5
- CVE-2025-11621Vault AWS auth method bypass due to AWS client cache8.1
Product normalization is registry-driven with AI assist and human review. How it works