Red hat developer hub
This hub aggregates every CVE we track for Red hat developer hub, a product in the devtools ci space. Use it to gauge the current risk picture and drill into individual advisories.
33
CVEs tracked
2
Critical
14
High
0
In CISA KEV
Severity distribution
MEDIUM16HIGH14CRITICAL2LOW1
Monthly trend
0
0
0
0
0
0
0
1
4
2
1
2
0
2
1
0
0
3
0
2
2
5
0
0
2024-072026-06
Latest CVEs
The 15 most recently published vulnerabilities affecting Red hat developer hub.
- CVE-2026-32281Inefficient policy validation in crypto/x5097.5
- CVE-2026-32280Unexpected work during chain building in crypto/x5097.5
- CVE-2026-32283Unauthenticated TLS 1.3 KeyUpdate record can cause persistent connection retention and DoS in crypto/tls7.5
- CVE-2026-33810Case-sensitive excludedSubtrees name constraints cause Auth Bypass in crypto/x5098.2
- CVE-2026-32289JsBraceDepth Context Tracking Bugs (XSS) in html/template6.1
- CVE-2026-25645Requests has Insecure Temp File Reuse in its extract_zipped_paths() utility function4.4
- CVE-2026-31802node-tar Symlink Path Traversal via Drive-Relative Linkpath5.5
- CVE-2026-27903minimatch has a ReDoS: matchOne() combinatorial backtracking via multiple non-adjacent GLOBSTAR segments7.5
- CVE-2026-26960node-tar has Arbitrary File Read/Write via Hardlink Target Escape Through Symlink Chain in Extraction7.1
- CVE-2025-14874Nodemailer: nodemailer: denial of service via crafted email address header7.5
- CVE-2025-66471urllib3 Streaming API improperly handles highly compressed data7.5
- CVE-2025-66418urllib3 allows an unbounded number of links in the decompression chain7.5
- CVE-2025-55190Argo CD: Project API Token Exposes Repository Credentials9.9
- CVE-2025-5417Rhdh: red hat developer hub user permissions6.1
- CVE-2025-8556Github.com/cloudflare/circl: circl-fourq: missing and wrong validation can lead to incorrect results3.7
Product normalization is registry-driven with AI assist and human review. How it works