Red hat virtualization engine
This hub aggregates every CVE we track for Red hat virtualization engine, a product in the operating systems space. Use it to gauge the current risk picture and drill into individual advisories.
Operating Systemson-prem
12
CVEs tracked
1
Critical
2
High
1
In CISA KEV
Severity distribution
MEDIUM9HIGH2CRITICAL1
Monthly trend
0
0
0
0
0
0
0
0
0
0
0
0
0
0
0
0
0
0
0
0
0
0
0
0
2024-092026-08
Latest CVEs
The 12 most recently published vulnerabilities affecting Red hat virtualization engine.
- CVE-2022-45047Apache MINA SSHD: Java unsafe deserialization vulnerability9.8
- CVE-2020-35497A flaw was found in ovirt-engine 4.4.3 and earlier allowing an authenticated user to read other users' personal information, including name, email and public SSH key.6.5
- CVE-2020-28458Prototype Pollution7.3
- CVE-2020-10775An Open redirect vulnerability was found in ovirt-engine versions 4.4 and earlier, where it allows remote attackers to redirect users to arbitrary web sites and attempt phishing attacks. Once the t...5.3
- CVE-2020-11023Potential XSS vulnerability in jQueryKEV6.9
- CVE-2020-1711An out-of-bounds heap buffer access flaw was found in the way the iSCSI Block driver in QEMU versions 2.12.0 before 4.2.1 handled a response coming from an iSCSI server while checking the status of...7.7
- CVE-2018-12130Microarchitectural Fill Buffer Data Sampling (MFBDS): Fill buffers on some microprocessors utilizing speculative execution may allow an authenticated user to potentially enable information disclosu...5.9
- CVE-2018-12126Microarchitectural Store Buffer Data Sampling (MSBDS): Store buffers on some microprocessors utilizing speculative execution may allow an authenticated user to potentially enable information disclo...5.6
- CVE-2019-8331In Bootstrap before 3.4.1 and 4.3.x before 4.3.1, XSS is possible in the tooltip or popover data-template attribute.6.1
- CVE-2018-20677In Bootstrap before 3.4.0, XSS is possible in the affix configuration target property.6.1
- CVE-2018-20676In Bootstrap before 3.4.0, XSS is possible in the tooltip data-viewport attribute.6.1
- CVE-2018-3639Systems with microprocessors utilizing speculative execution and speculative execution of memory reads before the addresses of all prior memory writes are known may allow unauthorized disclosure of...5.5
Product normalization is registry-driven with AI assist and human review. How it works