VendorsRed Hatansible_insideall versions
Vulnerabilities

Red Hat Ansible Inside

Ranked by severity, then by exploit likelihood. Click a CVE ID for its full record.

9CVEs
CVE-2023-5764
Ansible: template injection
Published 2023-12-12 · Modified
7.8EPSS 0.005
CVE-2023-3971
Controller: html injection in custom login info
Published 2023-10-04 · Modified
7.3EPSS 0.008
CVE-2025-9908
Event-driven-ansible: sensitive internal headers disclosure in aap eda event streams
Published 2026-02-27 · Analyzed
6.7EPSS 0.002
CVE-2025-9907
Event-driven-ansible: event stream test mode exposes sensitive headers in aap eda
Published 2026-02-27 · Analyzed
6.7EPSS 0.002
CVE-2025-9909
Aap-gateway: improper path validation in gateway allows credential exfiltration
Published 2026-02-27 · Analyzed
6.7EPSS 0.002
CVE-2023-5115
Ansible: malicious role archive can cause ansible-galaxy to overwrite arbitrary files
Published 2023-12-18 · Modified
6.3EPSS 0.010
CVE-2023-4380
Platform: token exposed at importing project
Published 2023-10-04 · Modified
6.3EPSS 0.006
CVE-2024-10033
Aap-gateway: xss on aap-gateway
Published 2024-10-16 · Modified
6.1EPSS 0.004
CVE-2024-0690
Ansible-core: possible information leak in tasks that ignore ansible_no_log configuration
Published 2024-02-06 · Modified
5.5EPSS 0.003