Red hat openshift virtualization 4
This hub aggregates every CVE we track for Red hat openshift virtualization 4, a product in the cloud saas space. Use it to gauge the current risk picture and drill into individual advisories.
15
CVEs tracked
0
Critical
6
High
0
In CISA KEV
Severity distribution
MEDIUM8HIGH6LOW1
Monthly trend
1
0
0
1
0
0
0
0
0
0
0
0
0
2
0
1
0
1
2
0
0
1
1
0
2024-072026-06
Latest CVEs
The 15 most recently published vulnerabilities affecting Red hat openshift virtualization 4.
- CVE-2026-9804Kubevirt: kubevirt: vmexport directory symlink escape enables exporter pod file read7.7
- CVE-2026-6383Kubevirt: kubevirt: unauthorized subresource access due to improper rbac evaluation5.4
- CVE-2025-14525Kubevirt: kubevirt: vm administration denial of service via guest agent6.4
- CVE-2025-14459Virt-cdi-controller: unauthorized pvc cloning via dataimportcron8.5
- CVE-2025-14946Libnbd: libnbd: arbitrary code execution via ssh argument injection through a malicious uri4.8
- CVE-2025-57848Container-native-virtualization: privilege escalation via excessive /etc/passwd permissions5.2
- CVE-2025-7195Operator-sdk: privilege escalation due to incorrect permissions of /etc/passwd5.2
- CVE-2025-8556Github.com/cloudflare/circl: circl-fourq: missing and wrong validation can lead to incorrect results3.7
- CVE-2024-9355Golang-fips: golang fips zeroed buffer6.5
- CVE-2024-4467Qemu-kvm: 'qemu-img info' leads to host file read/write7.8
- CVE-2024-3727Containers/image: digest type does not guarantee valid type8.3
- CVE-2024-31420Cnv: dos through repeatedly calling vm-dump-metrics until virt handler crashes6.5
- CVE-2024-31419Cnv: information disclosure through the usage of vm-dump-metrics4.3
- CVE-2024-1394Golang-fips/openssl: memory leaks in code encrypting and decrypting rsa payloads7.5
- CVE-2023-3089Ocp & fips mode7.0
Product normalization is registry-driven with AI assist and human review. How it works