VendorsRed Hatopenshiftany version
Vulnerabilities

Red Hat RedHat OpenShift any version

Ranked by severity, then by exploit likelihood. Click a CVE ID for its full record.

88CVEs
CVE-2014-0234
The default configuration of broker.conf in Red Hat OpenShift Enterprise 2.x before 2.1 has a password of "mooo" for a Mongo account, which allows remote attackers to hijack the broker by providing this password, related to the openshift.sh script in Openshift Extras before 20130920. NOTE: this may overlap CVE-2013-4253 and CVE-2013-4281.
Published 2020-02-12 · Modified
9.8EPSS 0.038
CVE-2021-20578
IBM Cloud Pak for Security (CP4S) 1.7.0.0, 1.7.1.0, 1.7.2.0, and 1.8.0.0 could allow an attacker to perform unauthorized actions due to improper or missing authentication controls. IBM X-Force ID: 199282.
Published 2021-09-30 · Modified
9.8EPSS 0.010
CVE-2022-41731
IBM Watson Knowledge Catalog on Cloud Pak SQL injection
Published 2023-02-06 · Modified
9.8EPSS 0.009
CVE-2023-38734
IBM Robotic Process Automation privilege escalation
Published 2023-08-22 · Modified
9.8EPSS 0.007
CVE-2023-43058
IBM Robotic Process Automation privilege escalation
Published 2023-10-06 · Modified
9.8EPSS 0.006
CVE-2013-4561
In a openshift node, there is a cron job to update mcollective facts that mishandles a temporary file. This may lead to loss of confidentiality and integrity.
Published 2022-06-30 · Modified
9.1EPSS 0.014
CVE-2022-43916
IBM App Connect Enterprise Certified Container improper communications restriction
Published 2025-01-30 · Analyzed
9.1EPSS 0.003
CVE-2015-7537
Cross-site request forgery (CSRF) vulnerability in Jenkins before 1.640 and LTS before 1.625.2 allows remote attackers to hijack the authentication of administrators for requests that have unspecified impact via vectors related to the HTTP GET method.
Published 2016-02-03 · Modified
8.8EPSS 0.024
CVE-2015-7538
Jenkins before 1.640 and LTS before 1.625.2 allow remote attackers to bypass the CSRF protection mechanism via unspecified vectors.
Published 2016-02-03 · Modified
8.8EPSS 0.022
CVE-2022-43844
IBM Robotic Process Automation for Cloud Pak session fixation
Published 2023-01-05 · Modified
8.8EPSS 0.007
CVE-2024-51465
IBM App Connect Enterprise Certified Container command execution
Published 2024-12-04 · Analyzed
8.8EPSS 0.007
CVE-2021-4125
It was found that the original fix for log4j CVE-2021-44228 and CVE-2021-45046 in the OpenShift metering hive containers was incomplete, as not all JndiLookup.class files were removed. This CVE only applies to the OpenShift Metering hive container images, shipped in OpenShift 4.8, 4.7 and 4.6.
Published 2022-08-24 · Modified
8.1EPSS 0.015
CVE-2014-0023
OpenShift: Install script has temporary file creation vulnerability which can result in arbitrary code execution
Published 2019-11-15 · Modified
7.8EPSS 0.004
CVE-2020-1709
A vulnerability was found in all openshift/mediawiki 4.x.x versions prior to 4.3.0, where an insecure modification vulnerability in the /etc/passwd file was found in the openshift/mediawiki. An attacker with access to the container could use this flaw to modify /etc/passwd and escalate their privileges.
Published 2020-03-20 · Modified
7.8EPSS 0.003
CVE-2019-19345
A vulnerability was found in all openshift/mediawiki-apb 4.x.x versions prior to 4.3.0, where an insecure modification vulnerability in the /etc/passwd file was found in the container openshift/mediawiki-apb. An attacker with access to the container could use this flaw to modify /etc/passwd and escalate their privileges.
Published 2020-03-20 · Modified
7.8EPSS 0.003
CVE-2023-22593
IBM Robotic Process Automation for Cloud Pak security configuration
Published 2023-06-27 · Modified
7.8EPSS 0.002
CVE-2023-22592
IBM Robotic Process Automation for Cloud Pak insufficient permission settings
Published 2023-01-18 · Modified
7.8EPSS 0.001
CVE-2023-44487
The HTTP/2 protocol allows a denial of service (server resource consumption) because request cancellation can reset many streams quickly, as exploited in the wild in August through October 2023.
Published 2023-10-10 · Analyzed
7.5KEV1 PoCEPSS 1.000
CVE-2015-5317
The Fingerprints pages in Jenkins before 1.638 and LTS before 1.625.2 might allow remote attackers to obtain sensitive job and build name information via a direct request.
Published 2015-11-25 · Analyzed
7.5KEVEPSS 0.230
CVE-2013-2186
The DiskFileItem class in Apache Commons FileUpload, as used in Red Hat JBoss BRMS 5.3.1; JBoss Portal 4.3 CP07, 5.2.2, and 6.0.0; and Red Hat JBoss Web Server 1.0.2 allows remote attackers to write to arbitrary files via a NULL byte in a file name in a serialized instance.
Published 2013-10-28 · Modified
7.5EPSS 0.124
CVE-2014-3666
Jenkins before 1.583 and LTS before 1.565.3 allows remote attackers to execute arbitrary code via a crafted packet to the CLI channel.
Published 2014-10-16 · Modified
7.5EPSS 0.037
CVE-2015-1814
The API token-issuing service in Jenkins before 1.606 and LTS before 1.596.2 allows remote attackers to gain privileges via a "forced API token change" involving anonymous users.
Published 2015-10-16 · Modified
7.5EPSS 0.023
CVE-2014-3674
Red Hat OpenShift Enterprise before 2.2 does not properly restrict access to gears, which allows remote attackers to access the network resources of arbitrary gears via unspecified vectors.
Published 2014-11-13 · Modified
7.5EPSS 0.020
CVE-2015-5325
Jenkins before 1.638 and LTS before 1.625.2 allow attackers to bypass intended slave-to-master access restrictions by leveraging a JNLP slave. NOTE: this vulnerability exists because of an incomplete fix for CVE-2014-3665.
Published 2015-11-25 · Modified
7.5EPSS 0.018
CVE-2014-0188
The openshift-origin-broker in Red Hat OpenShift Enterprise 2.0.5, 1.2.7, and earlier does not properly handle authentication requests from the remote-user auth plugin, which allows remote attackers to bypass authentication and impersonate arbitrary users via the X-Remote-User header in a request to a passthrough trigger.
Published 2014-04-24 · Modified
7.5EPSS 0.017
CVE-2018-10885
In atomic-openshift before version 3.10.9 a malicious network-policy configuration can cause Openshift Routing to crash when using ovs-networkpolicy plugin. An attacker can use this flaw to cause a Denial of Service (DoS) attack on an Openshift 3.9, or 3.7 Cluster.
Published 2018-07-05 · Modified
7.5EPSS 0.016
CVE-2023-27540
IBM Watson CP4D Data Stores denial of service
Published 2023-07-10 · Modified
7.5EPSS 0.013
CVE-2013-0165
cartridges/openshift-origin-cartridge-mongodb-2.2/info/bin/dump.sh in OpenShift does not properly create files in /tmp.
Published 2019-11-01 · Modified
7.5EPSS 0.008
CVE-2021-29894
IBM Cloud Pak for Security (CP4S) 1.7.0.0, 1.7.1.0, 1.7.2.0, and 1.8.0.0 uses weaker than expected cryptographic algorithms that could allow an attacker to decrypt highly sensitive information. IBM X-Force ID: 207320.
Published 2021-09-30 · Modified
7.5EPSS 0.007
CVE-2022-36769
IBM Cloud Pak for Data file upload
Published 2023-04-26 · Modified
7.2EPSS 0.009
CVE-2019-19346
An insecure modification vulnerability in the /etc/passwd file was found in the container openshift/mariadb-apb, affecting versions before the following 4.3.5, 4.2.21, 4.1.37, and 3.11.188-4 . An attacker with access to the container could use this flaw to modify /etc/passwd and escalate their privileges.
Published 2020-04-02 · Modified
7.0EPSS 0.003
CVE-2020-1707
A vulnerability was found in all openshift/postgresql-apb 4.x.x versions prior to 4.3.0, where an insecure modification vulnerability in the /etc/passwd file was found in the container openshift/postgresql-apb. An attacker with access to the container could use this flaw to modify /etc/passwd and escalate their privileges.
Published 2020-03-20 · Modified
7.0EPSS 0.003
CVE-2019-19348
An insecure modification vulnerability in the /etc/passwd file was found in the container openshift/apb-base, affecting versions before the following 4.3.5, 4.2.21, 4.1.37, and 3.11.188-4. An attacker with access to the container could use this flaw to modify /etc/passwd and escalate their privileges.
Published 2020-04-02 · Modified
7.0EPSS 0.003
CVE-2020-35514
An insecure modification flaw in the /etc/kubernetes/kubeconfig file was found in OpenShift. This flaw allows an attacker with access to a running container which mounts /etc/kubernetes or has local access to the node, to copy this kubeconfig file and attempt to add their own node to the OpenShift cluster. The highest threat from this vulnerability is to confidentiality, integrity, as well as system availability. This flaw affects versions before openshift4/ose-machine-config-operator v4.7.0-202105111858.p0.
Published 2021-06-02 · Modified
7.0EPSS 0.002
CVE-2026-22549
BIG-IP Container Ingress Services vulnerability
Published 2026-02-04 · Analyzed
6.9EPSS 0.003
CVE-2015-5318
Jenkins before 1.638 and LTS before 1.625.2 uses a publicly accessible salt to generate CSRF protection tokens, which makes it easier for remote attackers to bypass the CSRF protection mechanism via a brute force attack.
Published 2015-11-25 · Modified
6.8EPSS 0.012
CVE-2022-42439
IBM App Connect Enterprise information disclosure
Published 2023-02-06 · Modified
6.8EPSS 0.007
CVE-2018-1257
Spring Framework, versions 5.0.x prior to 5.0.6, versions 4.3.x prior to 4.3.17, and older unsupported versions allows applications to expose STOMP over WebSocket endpoints with a simple, in-memory STOMP broker through the spring-messaging module. A malicious user (or attacker) can craft a message to the broker that can lead to a regular expression, denial of service attack.
Published 2018-05-11 · Modified
6.5EPSS 0.031
CVE-2015-1806
The combination filter Groovy script in Jenkins before 1.600 and LTS before 1.596.1 allows remote authenticated users with job configuration permission to gain privileges and execute arbitrary code on the master via unspecified vectors.
Published 2015-10-16 · Modified
6.5EPSS 0.025
CVE-2015-5323
Jenkins before 1.638 and LTS before 1.625.2 do not properly restrict access to API tokens which might allow remote administrators to gain privileges and run scripts by using an API token of another user.
Published 2015-11-25 · Modified
6.5EPSS 0.015
1 / 3Next →