Red hat migration toolkit for containers
This hub aggregates every CVE we track for Red hat migration toolkit for containers, a product in the operating systems space. Use it to gauge the current risk picture and drill into individual advisories.
Operating Systemson-prem
16
CVEs tracked
1
Critical
9
High
0
In CISA KEV
Severity distribution
HIGH9MEDIUM5LOW1CRITICAL1
Monthly trend
0
0
0
0
0
0
0
0
0
0
0
0
0
0
0
0
0
0
0
0
0
0
0
0
2024-092026-08
Latest CVEs
The 15 most recently published vulnerabilities affecting Red hat migration toolkit for containers.
- CVE-2024-3727Containers/image: digest type does not guarantee valid type8.3
- CVE-2023-26159Versions of the package follow-redirects before 1.15.4 are vulnerable to Improper Input Validation due to the improper handling of URLs by the url.parse() function. When new URL() throws an error, ...7.3
- CVE-2023-4039GCC's-fstack-protector fails to guard dynamically-sized local variables on AArch644.8
- CVE-2023-3978Improper rendering of text nodes in golang.org/x/net/html6.1
- CVE-2023-24539Improper sanitization of CSS values in html/template7.3
- CVE-2023-24540Improper handling of JavaScript whitespace in html/template9.8
- CVE-2023-24537Infinite loop in parsing in go/scanner7.5
- CVE-2022-41723Denial of service via crafted HTTP/2 stream in net/http and golang.org/x/net7.5
- CVE-2022-41725Excessive resource consumption in mime/multipart7.5
- CVE-2022-46175JSON5 is an extension to the popular JSON file format that aims to be easier to write and maintain by hand (e.g. for config files). The `parse` method of the JSON5 library before and including vers...7.1
- CVE-2022-29526Go before 1.17.10 and 1.18.x before 1.18.2 has Incorrect Privilege Assignment. When called with a non-zero flags parameter, the Faccessat function could incorrectly report that a file is accessible.5.3
- CVE-2022-1365Exposure of Private Personal Information to an Unauthorized Actor in lquixada/cross-fetch6.5
- CVE-2022-27191The golang.org/x/crypto/ssh package before 0.0.0-20220314234659-1baeb1ce4c0b for Go allows an attacker to crash a server in certain circumstances involving AddHostKey.7.5
- CVE-2022-23772Rat.SetString in math/big in Go before 1.16.14 and 1.17.x before 1.17.7 has an overflow that can lead to Uncontrolled Memory Consumption.7.5
- CVE-2021-41190Clarify Content-Type handling in OCI spec3.0
Product normalization is registry-driven with AI assist and human review. How it works