Red hat satellite 6.18 for rhel 9
This hub aggregates every CVE we track for Red hat satellite 6.18 for rhel 9, a product in the operating systems space. Use it to gauge the current risk picture and drill into individual advisories.
12
CVEs tracked
1
Critical
5
High
0
In CISA KEV
Severity distribution
MEDIUM6HIGH5CRITICAL1
Monthly trend
0
0
0
0
0
0
0
0
0
0
0
0
0
0
1
0
0
3
2
0
0
1
5
0
2024-092026-08
Latest CVEs
The 12 most recently published vulnerabilities affecting Red hat satellite 6.18 for rhel 9.
- CVE-2026-12701Pulpcore: pulpcore: relative_path_validator bypass via directory traversal in filesystemexport9.0
- CVE-2026-5138Foreman: foreman: information disclosure via improper validation of nested request parameters4.3
- CVE-2026-5135Foreman: foreman: unauthorized modification of host configurations via broken access control6.5
- CVE-2026-5142Foreman: foreman: cross-tenant private ssh key disclosure via taxonomy scoping bypass6.5
- CVE-2026-5136Foreman: foreman: privilege escalation to administrator-level access via usergroup role assignment manipulation8.8
- CVE-2026-12515Katello: missing repository authorization in content_uploads exposes cross-product content existence4.3
- CVE-2026-1961Forman: foreman: remote code execution via command injection in websocket proxy8.0
- CVE-2026-4324Rubygem-katello: katello: denial of service and potential information disclosure via sql injection5.4
- CVE-2026-0980Rubyipmi: red hat satellite: remote code execution in rubyipmi via malicious bmc username8.3
- CVE-2025-9572Foreman: satellite: graphql api permission bypass leads to information disclosure5.0
- CVE-2026-1531Foreman-kubevirt: foreman_kubevirt: man-in-the-middle due to insecure default ssl verification8.1
- CVE-2025-10622Foreman: os command injection via ct_location and fcct_location parameters8.0
Product normalization is registry-driven with AI assist and human review. How it works