Red hat openshift container platform 4.20
This hub aggregates every CVE we track for Red hat openshift container platform 4.20, a product in the cloud saas space. Use it to gauge the current risk picture and drill into individual advisories.
13
CVEs tracked
3
Critical
10
High
0
In CISA KEV
Severity distribution
HIGH10CRITICAL3
Monthly trend
0
0
0
0
0
0
0
0
0
0
5
1
0
1
1
0
0
0
0
0
0
4
1
0
2024-082026-07
Latest CVEs
The 13 most recently published vulnerabilities affecting Red hat openshift container platform 4.20.
- CVE-2026-1784Ose-cluster-ingress-operator: remote code execution through haproxy configuration injection8.8
- CVE-2026-46579Openshift/router: openshift/router: mtls client certificate spoofing via unstripped x-ssl-client headers on http frontend7.4
- CVE-2026-4408Samba: remote code execution in samr9.0
- CVE-2026-42009Gnutls: gnutls: denial of service via dtls packet reordering vulnerability7.5
- CVE-2026-42010Gnutls: gnutls: authentication bypass via nul character in username7.1
- CVE-2025-11561Sssd: sssd default kerberos configuration allows privilege escalation on ad-joined linux systems8.8
- CVE-2025-9566Podman: podman kube play command may overwrite host files8.1
- CVE-2025-5987Libssh: invalid return code for chacha20 poly1305 with openssl backend8.1
- CVE-2025-5318Libssh: out-of-bounds read in sftp_handle()8.1
- CVE-2025-6032Podman: podman missing tls verification8.3
- CVE-2025-49794Libxml: heap use after free (uaf) leads to denial of service (dos)9.1
- CVE-2025-49796Libxml: type confusion leads to denial of service (dos)9.1
- CVE-2025-5914Libarchive: double free at archive_read_format_rar_seek_data() in archive_read_support_format_rar.c7.8
Product normalization is registry-driven with AI assist and human review. How it works