Exact snapshot results

353,537 CVE records

CVE ID descending · no relevance ranking

CVE-2026-42087

OpenC3 COSMOS provides the functionality needed to send commands to and receive data from one or more embedded systems. From version 6.7.0 to before version 7.0.0-rc3, a SQL injection vulnerability exists in the Time-Series Database (TSDB) component of COSMOS. The tsdb_lookup function in the cvt_model.rb file directly places user-supplied input into a SQL query without sanitizing the input. As a result, a user can break out of the initial SQL statement and execute arbitrary SQL commands, includi

PUBLISHED
Vendor
OpenC3
Product
cosmos
Provider severity
CRITICAL
Conflicts
0

CVE-2026-42086

OpenC3 COSMOS provides the functionality needed to send commands to and receive data from one or more embedded systems. Prior to version 7.0.0, the Command Sender UI uses an unsafe eval() function on array-like command parameters, which allows a user-supplied payload to execute in the browser when sending a command. This creates a self-XSS risk because an attacker can trigger their own script execution in the victim’s session, if allowed to influence the array parameter input, for example via ph

PUBLISHED
Vendor
OpenC3
Product
cosmos
Provider severity
MEDIUM
Conflicts
0

CVE-2026-42085

OpenC3 COSMOS provides the functionality needed to send commands to and receive data from one or more embedded systems. Prior to versions 6.10.5 and 7.0.0-rc3, OpenC3 COSMOS contains a design flaw in the save_tool_config() function that allows saving tool configuration files at arbitrary locations inside the shared /plugins directory tree by supplying crafted configuration filenames. Although the implementation sufficiently mitigates standard path traversal attacks, by canonicalizing filename to

PUBLISHED
Vendor
OpenC3
Product
cosmos
Provider severity
MEDIUM
Conflicts
0

CVE-2026-42084

OpenC3 COSMOS provides the functionality needed to send commands to and receive data from one or more embedded systems. Prior to versions 6.10.5 and 7.0.0-rc3, the OpenC3 password change functionality allows a user to change their password without providing the old password, by accepting a valid session token instead. In assumed breach scenarios, this behaviour can be exploited by an attacker who has already obtained a valid session token, to gain persistence in hijacked account (including admin

PUBLISHED
Vendor
OpenC3
Product
cosmos
Provider severity
HIGH
Conflicts
0

CVE-2026-42083

free5GC is an open-source implementation of the 5G core network. Prior to 4.2.2, PCF Npcf_SMPolicyControl missing authentication middleware allows unauthenticated access to SM policy handlers and disclosure of subscriber SUPI. In NewServer(), the smPolicyGroup route group is created and routes are applied without attaching the router authorization middleware. In contrast, other PCF service groups such as Npcf_PolicyAuthorization do attach RouterAuthorizationCheck before route registration. Becau

PUBLISHED
Vendor
free5gc
Product
free5gc
Provider severity
HIGH
Conflicts
0

CVE-2026-42082

free5GC is an open-source implementation of the 5G core network. Prior to 4.2.2, the AMF in Free5GC does not enforce the concurrent security procedure rules defined in 3GPP TS 33.501 §6.9.5.1. The AMF does not check for ongoing N2 handover procedures before initiating a NAS Security Mode Command, and vice versa. This can lead to mismatches between NAS and AS security contexts in the network and the UE. This vulnerability is fixed in 4.2.2.

PUBLISHED
Vendor
free5gc
Product
free5gc
Provider severity
LOW
Conflicts
0

CVE-2026-42081

free5GC is an open-source implementation of the 5G core network. Prior to 4.2.2, the AMF in Free5GC does not verify the UE Security Capabilities received in NGAP PathSwitchRequest messages against its locally stored values, as mandated by 3GPP TS 33.501 §6.7.3.1. A malicious gNB can overwrite the AMF's stored UE security capabilities with arbitrary values, which are then propagated in PathSwitchRequest Acknowledge messages and subsequent Handover Request messages. This leads to persistent handov

PUBLISHED
Vendor
free5gc
Product
free5gc
Provider severity
MEDIUM
Conflicts
0

CVE-2026-42080

PPTAgent is an agentic framework for reflective PowerPoint generation. Prior to commit 418491a, there is an arbitrary file write vulnerability via `save_generated_slides`. This issue has been patched via commit 418491a.

PUBLISHED
Vendor
icip-cas
Product
PPTAgent
Provider severity
MEDIUM
Conflicts
0

CVE-2026-4208

The extension fails to properly reset the generated MFA code after successful authentication. This leads to a possible MFA bypass for future login attempts by providing an empty string as MFA code to the extensions MFA provider.

PUBLISHED
Vendor
TYPO3
Product
Extension "E-Mail MFA Provider"
Provider severity
HIGH
Conflicts
0

CVE-2026-42079

PPTAgent is an agentic framework for reflective PowerPoint generation. Prior to commit 418491a, PPTAgent is vulnerable to arbitrary code execution via Python eval() of LLM-generated code with builtins in scope. This issue has been patched via commit 418491a.

PUBLISHED
Vendor
icip-cas
Product
PPTAgent
Provider severity
HIGH
Conflicts
0

CVE-2026-42078

PPTAgent is an agentic framework for reflective PowerPoint generation. Prior to commit 418491a, PPTAgent is vulnerable to arbitrary file write and directory creation via markdown_table_to_image. This issue has been patched via commit 418491a.

PUBLISHED
Vendor
icip-cas
Product
PPTAgent
Provider severity
MEDIUM
Conflicts
0

CVE-2026-42077

Evolver is a GEP-powered self-evolving engine for AI agents. Prior to version 1.69.3, a prototype pollution vulnerability in the mailbox store module allows attackers to modify the behavior of all JavaScript objects by injecting malicious properties into Object.prototype. The vulnerability exists in the _applyUpdate() and _updateRecord() functions which use Object.assign() to merge user-controlled data without filtering dangerous keys like __proto__, constructor, or prototype. This issue has bee

PUBLISHED
Vendor
EvoMap
Product
evolver
Provider severity
MEDIUM
Conflicts
0

CVE-2026-42076

Evolver is a GEP-powered self-evolving engine for AI agents. Prior to version 1.69.3, a command injection vulnerability in the _extractLLM() function allows attackers to execute arbitrary shell commands on the server. The function constructs a curl command using string concatenation and passes it to execSync() without proper sanitization, enabling remote code execution when the corpus parameter contains shell metacharacters. This issue has been patched in version 1.69.3.

PUBLISHED
Vendor
EvoMap
Product
evolver
Provider severity
CRITICAL
Conflicts
0

CVE-2026-42075

Evolver is a GEP-powered self-evolving engine for AI agents. Prior to version 1.69.3, a path traversal vulnerability in the skill download (fetch) command allows attackers to write files to arbitrary locations on the filesystem. The --out= flag accepts user-provided paths without validation, enabling directory traversal attacks that can overwrite critical system files or create files in sensitive location. This issue has been patched in version 1.69.3.

PUBLISHED
Vendor
EvoMap
Product
evolver
Provider severity
HIGH
Conflicts
0

CVE-2026-42074

OpenClaude is an open-source coding-agent command line interface for cloud and local model providers. Prior to version 0.5.1, the dangerouslyDisableSandbox parameter is exposed as part of the BashTool input schema, meaning the LLM (an untrusted principal per the project's own threat model) can set it to true in any tool_use response. Combined with the default allowUnsandboxedCommands: true setting, a prompt-injected model can escape the sandbox for any arbitrary command, achieving full host-leve

PUBLISHED
Vendor
Gitlawb
Product
openclaude
Provider severity
CRITICAL
Conflicts
1

CVE-2026-42073

OpenClaude is an open-source coding-agent command line interface for cloud and local model providers. Prior to version 0.5.1, the OpenClaude MCP authentication flow starts a temporary local HTTP server to handle OAuth callbacks. To prevent CSRF attacks, the server validates a state parameter against an internally stored value. However, due to a logic flaw in the order of conditionals, an attacker can completely bypass this check and force the server to shut down — without knowing the state value

PUBLISHED
Vendor
Gitlawb
Product
openclaude
Provider severity
MEDIUM
Conflicts
1

CVE-2026-42072

Nornicdb is a distributed low-latency, Graph+Vector, Temporal MVCC with all sub-ms HNSW search, graph traversal, and writes. Prior to version 1.0.42-hotfix, the --address CLI flag (and NORNICDB_ADDRESS / server.host config key) is plumbed through to the HTTP server correctly but never reaches the Bolt server config. The Bolt listener therefore always binds to the wildcard address (all interfaces), regardless of what the user configures. On a LAN, this exposes the graph database — with its defaul

PUBLISHED
Vendor
orneryd
Product
NornicDB
Provider severity
CRITICAL
Conflicts
0

CVE-2026-42071

Mantis Bug Tracker (MantisBT) is an open source issue tracker. From 2.23.0 to 2.28.1, a missing authorization check in MantisBT's file visibility function allows any authenticated user (REPORTER+) to download attachments on private bugnotes they should not be able to access, via the REST API endpoint GET /api/rest/issues/{id}/files and SOAP API mc_issue_attachment_get endpoint. This vulnerability is fixed in 2.28.2.

PUBLISHED
Vendor
mantisbt
Product
mantisbt
Provider severity
HIGH
Conflicts
0

CVE-2026-42070

Mantis Bug Tracker (MantisBT) is an open source issue tracker. Prior to 2.28.2, the mc_issue_update() function in MantisBT allows users having update_bug_threshold access (UPDATER, with default settings) to edit, change view state, and modify time tracking on bugnotes belonging to other users — bypassing the default DEVELOPER (level 55) threshold required by the dedicated mc_issue_note_update() function. This vulnerability is fixed in 2.28.2.

PUBLISHED
Vendor
mantisbt
Product
mantisbt
Provider severity
MEDIUM
Conflicts
0

CVE-2026-4207

A vulnerability was determined in D-Link DNS-120, DNR-202L, DNS-315L, DNS-320, DNS-320L, DNS-320LW, DNS-321, DNR-322L, DNS-323, DNS-325, DNS-326, DNS-327L, DNR-326, DNS-340L, DNS-343, DNS-345, DNS-726-4, DNS-1100-4, DNS-1200-05 and DNS-1550-04 up to 20260205. This impacts the function cgi_device/cgi_sms_test/cgi_firmware_upload/cgi_ntp_time of the file /cgi-bin/system_mgr.cgi. Executing a manipulation can lead to command injection. The attack may be performed from remote. The exploit has been pu

PUBLISHED
Vendor
D-Link, D-Link, D-Link, D-Link, D-Link, D-Link, D-Link, D-Link, D-Link, D-Link, D-Link, D-Link, D-Link, D-Link, D-Link, D-Link, D-Link, D-Link, D-Link, D-Link
Product
DNS-323, DNS-320LW, DNS-320L, DNS-327L, DNS-120, DNS-1550-04, DNS-345, DNS-325, DNS-326, DNS-343, DNS-321, DNS-1100-4, DNS-320, DNS-1200-05, DNR-326, DNS-315L, DNR-322L, DNS-340L, DNS-726-4, DNR-202L
Provider severity
MEDIUM
Conflicts
3

CVE-2026-42069

Kirby is an open-source content management system. Prior to versions 4.9.0 and 5.4.0, read access to site, user and role information is not gated by permissions. This issue has been patched in versions 4.9.0 and 5.4.0.

PUBLISHED
Vendor
getkirby
Product
kirby
Provider severity
HIGH
Conflicts
0

CVE-2026-42063

A vulnerability exists in iControl SOAP where an authenticated attacker with the Resource Administrator or Administrator role can download sensitive files.  Note: Software versions which have reached End of Technical Support (EoTS) are not evaluated.

PUBLISHED
Vendor
F5
Product
BIG-IP
Provider severity
MEDIUM
Conflicts
1

CVE-2026-42062

ELECOM wireless LAN access point devices contain an OS command injection in processing of username parameter. If processing a crafted request, an arbitrary OS command may be executed. No authentication is required.

PUBLISHED
Vendor
ELECOM CO.,LTD., ELECOM CO.,LTD., ELECOM CO.,LTD., ELECOM CO.,LTD.
Product
WRC-BE65QSD-B, WRC-BE72XSD-BA, WRC-BE72XSD-B, WRC-W702-B
Provider severity
CRITICAL
Conflicts
2

CVE-2026-42061

Local privilege escalation due to excessive permissions assigned to child processes. The following products are affected: Acronis DeviceLock DLP (Windows) before build 9.0.15051.93227.

PUBLISHED
Vendor
Acronis
Product
Acronis DeviceLock DLP
Provider severity
HIGH
Conflicts
1

CVE-2026-4206

A vulnerability was found in D-Link DNS-120, DNR-202L, DNS-315L, DNS-320, DNS-320L, DNS-320LW, DNS-321, DNR-322L, DNS-323, DNS-325, DNS-326, DNS-327L, DNR-326, DNS-340L, DNS-343, DNS-345, DNS-726-4, DNS-1100-4, DNS-1200-05 and DNS-1550-04 up to 20260205. This affects the function FMT_rebuild_diskmgr/FMT_create_diskmgr/ScanDisk_run_e2fsck of the file /cgi-bin/dsk_mgr.cgi. Performing a manipulation results in command injection. The attack is possible to be carried out remotely. The exploit has bee

PUBLISHED
Vendor
D-Link, D-Link, D-Link, D-Link, D-Link, D-Link, D-Link, D-Link, D-Link, D-Link, D-Link, D-Link, D-Link, D-Link, D-Link, D-Link, D-Link, D-Link, D-Link, D-Link
Product
DNS-315L, DNS-340L, DNS-325, DNS-726-4, DNR-202L, DNS-345, DNS-320L, DNS-343, DNS-320, DNS-1550-04, DNS-320LW, DNS-120, DNS-1100-4, DNS-323, DNS-327L, DNS-1200-05, DNR-326, DNS-321, DNR-322L, DNS-326
Provider severity
MEDIUM
Conflicts
3

CVE-2026-42058

An authenticated attacker's undisclosed requests to BIG-IP iControl REST can lead to an information leak of BIG-IP local user account names.  Note: Software versions which have reached End of Technical Support (EoTS) are not evaluated.

PUBLISHED
Vendor
F5
Product
BIG-IP
Provider severity
MEDIUM
Conflicts
1

CVE-2026-42055

NGINX Plus and NGINX Open Source have a vulnerability in the ngx_http_proxy_v2_module and ngx_http_grpc_module modules. This vulnerability exists when the proxy_http_version to 2 or grpc_pass directives are used to proxy HTTP/2 traffic, the ignore_invalid_headers directive is set to off, and the large_client_header_buffers directive size is larger than 2 megabytes. A remote, unauthenticated attacker, along with conditions beyond their control, could send large headers while creating an upstream

PUBLISHED
Vendor
Red Hat, Red Hat, Red Hat, Red Hat, F5, Red Hat, Red Hat, Red Hat, Red Hat, Red Hat, Red Hat, Red Hat, Red Hat, Red Hat, F5
Product
Red Hat Discovery 2, Red Hat Enterprise Linux 9, Red Hat Enterprise Linux 9, Red Hat Openshift Data Foundation 4, NGINX Open Source, Red Hat Update Infrastructure 5, Red Hat Update Infrastructure 5, Red Hat Enterprise Linux 8, Red Hat Openshift Data Foundation 4, Red Hat Enterprise Linux 10, Red Hat Hardened Images, Red Hat Enterprise Linux 9, Red Hat Update Infrastructure 5, Red Hat Openshift Data Foundation 4, NGINX Plus
Provider severity
CRITICAL, HIGH
Conflicts
3

CVE-2026-42052

Beets is the media library management system. Prior to version 2.10.0, the bundled web UI uses Underscore template interpolation mode <%= ... %> for untrusted metadata fields. In this runtime, <%= ... %> is raw insertion and HTML escaping is only performed by <%- ... %>. Rendered output is then inserted with .html(...), allowing attacker-controlled markup to become active DOM. This issue has been patched in version 2.10.0.

PUBLISHED
Vendor
beetbox
Product
beets
Provider severity
MEDIUM
Conflicts
0

CVE-2026-42051

Kirby is an open-source content management system. Prior to versions 4.9.0 and 5.4.0, the system API endpoint leaks license data and installed version to authenticated users. This issue has been patched in versions 4.9.0 and 5.4.0.

PUBLISHED
Vendor
getkirby
Product
kirby
Provider severity
MEDIUM
Conflicts
0

CVE-2026-42050

ImageMagick is free and open-source software used for editing and manipulating digital images. Prior to 7.1.2-21 and 6.9.13-46, a malicious MIFF file could trigger an overflow when a user opens it in the display tool and right-clicks a tile to invoke the Load / Update menu item. This vulnerability is fixed in 7.1.2-21 and 6.9.13-46.

PUBLISHED
Vendor
ImageMagick
Product
ImageMagick
Provider severity
MEDIUM
Conflicts
0

CVE-2026-4205

A vulnerability has been found in D-Link DNS-120, DNR-202L, DNS-315L, DNS-320, DNS-320L, DNS-320LW, DNS-321, DNR-322L, DNS-323, DNS-325, DNS-326, DNS-327L, DNR-326, DNS-340L, DNS-343, DNS-345, DNS-726-4, DNS-1100-4, DNS-1200-05 and DNS-1550-04 up to 20260205. The impacted element is the function cgi_refresh_db/FTP_Server_BlockIP_Add/FTP_Server_BlockIP_Del of the file /cgi-bin/app_mgr.cgi. Such manipulation leads to command injection. The attack can be executed remotely. The exploit has been disc

PUBLISHED
Vendor
D-Link, D-Link, D-Link, D-Link, D-Link, D-Link, D-Link, D-Link, D-Link, D-Link, D-Link, D-Link, D-Link, D-Link, D-Link, D-Link, D-Link, D-Link, D-Link, D-Link
Product
DNS-343, DNS-320, DNS-345, DNS-323, DNS-320LW, DNS-321, DNR-326, DNR-322L, DNS-726-4, DNS-320L, DNR-202L, DNS-327L, DNS-1550-04, DNS-315L, DNS-340L, DNS-1100-4, DNS-120, DNS-1200-05, DNS-325, DNS-326
Provider severity
MEDIUM
Conflicts
3

CVE-2026-42049

jadx is a Dex to Java decompiler. Prior to 1.5.6, jadx inserts the android:versionName value from an AndroidManifest into the generated app/build.gradle Groovy template without proper sanitization when exporting a decompiled APK as an Android Gradle project. A malicious APK can break out of the string context so that opening or building the exported Gradle project executes attacker-controlled Groovy code on the victim machine. This issue is fixed in version 1.5.6.

PUBLISHED
Vendor
skylot
Product
jadx
Provider severity
HIGH
Conflicts
0

CVE-2026-42048

Langflow is a tool for building and deploying AI-powered agents and workflows. Prior to 1.9.0, Langflow is vulnerable to Path Traversal in the Knowledge Bases API (DELETE /api/v1/knowledge_bases). This occurs because user-supplied knowledge base names are concatenated directly into file paths without proper sanitization or boundary validation. An authenticated attacker can exploit this flaw to delete arbitrary directories anywhere on the server's filesystem, leading to data loss and potential se

PUBLISHED
Vendor
langflow-ai
Product
langflow
Provider severity
CRITICAL
Conflicts
0

CVE-2026-42047

Inngest is a platform for running event-driven and scheduled background functions with queueing, retries, and step orchestration. Versions 3.22.0 through 3.53.1 contain a vulnerability that allows unauthenticated remote attackers to exfiltrate environment variables from the host process via the serve() HTTP handler. The serve() handler implements GET, POST, and PUT methods. Requests using PATCH, OPTIONS, or DELETE fall through to a generic handler that returns diagnostic information. A change in

PUBLISHED
Vendor
inngest
Product
inngest-js
Provider severity
HIGH
Conflicts
1

CVE-2026-42046

libcaca is a colour ASCII art library. In 0.99.beta20 and earlier, an integer overflow vulnerability in libcaca's canvas import functionality allows an attacker to cause a controlled heap out-of-bounds write (heap overflow) by supplying a crafted file in the "caca" format. Depending on the build configuration and memory allocator, this may lead to memory corruption or remote code execution. This is the same vulnerability as CVE-2021-3410 but the fix at that time was not fully correct. Commit fb7

PUBLISHED
Vendor
cacalabs
Product
libcaca
Provider severity
HIGH
Conflicts
1

CVE-2026-42045

LobeHub is a work-and-lifestyle space to find, build, and collaborate with agent teammates that grow with you. Prior to 2.1.48, when LobeChat processes custom tags in the Render process of src/features/Portal/Artifacts/Body/Renderer/index.tsx, if no type match is found, it will choose to call the default method, HTMLRenderer, for HTML rendering. If an attacker can induce the LLM to output content containing malicious tags, an XSS vulnerability can be created on the client side. Additionally, Lob

PUBLISHED
Vendor
lobehub
Product
lobehub
Provider severity
MEDIUM
Conflicts
0

CVE-2026-42044

Axios is a promise based HTTP client for the browser and Node.js. From 1.0.0 to before 1.15.2, he Axios library is vulnerable to a Prototype Pollution "Gadget" attack that allows any Object.prototype pollution in the application's dependency tree to be escalated into surgical, invisible modification of all JSON API responses — including privilege escalation, balance manipulation, and authorization bypass. The default transformResponse function at lib/defaults/index.js:124 calls JSON.parse(data,

PUBLISHED
Vendor
Red Hat, Red Hat, Red Hat, Red Hat, Red Hat, Red Hat, Red Hat, Red Hat, Red Hat, Red Hat, Red Hat, Red Hat, Red Hat, Red Hat, Red Hat, Red Hat, Red Hat, Red Hat, Red Hat, Red Hat, Red Hat, Red Hat, Red Hat, Red Hat, Red Hat, Red Hat, Red Hat, Red Hat, Red Hat, Red Hat, Red Hat, Red Hat, Red Hat, Red Hat, Red Hat, Red Hat, Red Hat, Red Hat, Red Hat, Red Hat, Red Hat, Red Hat, Red Hat, Red Hat, Red Hat, Red Hat, Red Hat, Red Hat, Red Hat, Red Hat, Red Hat, Red Hat, Red Hat, Red Hat, Red Hat, Red Hat, Red Hat, Red Hat, Red Hat, Red Hat, Red Hat, Red Hat, Red Hat, Red Hat, Red Hat, Red Hat, Red Hat, Red Hat, Red Hat, Red Hat, Red Hat, Red Hat, Red Hat, Red Hat, Red Hat, Red Hat, Red Hat, Red Hat, Red Hat, Red Hat, Red Hat, Red Hat, Red Hat, Red Hat, Red Hat, Red Hat, axios, Red Hat, Red Hat, Red Hat, Red Hat, Red Hat, Red Hat, Red Hat, Red Hat, Red Hat
Product
Red Hat OpenShift AI (RHOAI), Red Hat Advanced Cluster Management for Kubernetes 2.15, Red Hat Ansible Automation Platform 2, multicluster engine for Kubernetes 2.11, OpenShift Service Mesh 3, Self-service automation portal 2, Red Hat build of Apicurio Registry 2, multicluster engine for Kubernetes 2.1, Red Hat Quay 3.1, Red Hat Developer Hub 1.8, Red Hat Ansible Automation Platform 2, Red Hat OpenShift Service Mesh 3.3, Red Hat OpenShift Service Mesh 3.2, Red Hat Quay 3.12, Red Hat OpenShift Dev Spaces 3.28, Red Hat OpenShift Service Mesh 3.0, Red Hat Satellite 6.18, Network Observability (NETOBSERV) 1.12.0, Gatekeeper 3, Red Hat Ansible Automation Platform 2, Red Hat Ansible Automation Platform 2, Red Hat Ansible Automation Platform 2.5 for RHEL 8, HawtIO HawtIO 4.4.0, Red Hat Enterprise Linux AI (RHEL AI) 3, multicluster engine for Kubernetes 2.8, Red Hat OpenShift Service Mesh 2.6, Red Hat Hardened Images, Red Hat 3scale API Management Platform 2, Migration Toolkit for Applications 8, Red Hat Trusted Profile Analyzer, Red Hat OpenShift Service Mesh 3.0, Red Hat OpenShift AI (RHOAI), Red Hat OpenShift Service Mesh 3.3, Red Hat Satellite 6.18, Red Hat build of Apicurio Registry 3, Red Hat Developer Hub, Migration Toolkit for Applications 8, Red Hat OpenShift Container Platform 4, Red Hat Discovery 2, Streams for Apache Kafka 2.9.4, Red Hat Fuse 7, Red Hat 3scale API Management Platform 2, Red Hat Enterprise Linux AI (RHEL AI) 3, Red Hat Build of Podman Desktop - Tech Preview, Red Hat Process Automation 7, Red Hat OpenShift Service Mesh 2.6, Red Hat Enterprise Linux 9, Red Hat Satellite 6.18, streams for Apache Kafka 3, Red Hat Advanced Cluster Security for Kubernetes 4.10, Red Hat Trusted Artifact Signer 1.3, Red Hat OpenShift Container Platform 4, Red Hat OpenShift AI (RHOAI), Red Hat Data Grid 8, Red Hat Advanced Cluster Security 4.9, Red Hat Quay 3.14, Red Hat Advanced Cluster Management for Kubernetes 2.16, OpenShift Pipelines, Red Hat Ansible Automation Platform 2.5 for RHEL 9, Red Hat Quay 3.16, Red Hat Enterprise Linux 8, Red Hat OpenShift Virtualization 4, Network Observability (NETOBSERV) 1.12.0, OpenShift Pipelines, Red Hat Developer Hub 1.9, Cryostat 4, Red Hat Ansible Automation Platform 2, Red Hat Quay 3.9, Red Hat Ansible Automation Platform 2, Red Hat OpenShift Service Mesh 3.2, Red Hat Ansible Automation Platform 2, Red Hat OpenShift Dev Spaces 3.28, Red Hat Advanced Cluster Management for Kubernetes 2.14, Red Hat Ansible Automation Platform 2, multicluster engine for Kubernetes 2.6, Red Hat OpenShift Container Platform 4, Red Hat Quay 3.15, Red Hat OpenShift Container Platform 4, Red Hat 3scale API Management Platform 2, Red Hat 3scale API Management Platform 2, OpenShift Service Mesh 3, Red Hat OpenShift Container Platform 4, Red Hat OpenShift AI (RHOAI), Red Hat Container Native Virtualization 4.15, multicluster engine for Kubernetes 2.9, Red Hat OpenShift Service Mesh 3.1, axios, Red Hat Enterprise Linux AI (RHEL AI) 3, Red Hat 3scale API Management Platform 2, Red Hat Quay 3.17, Red Hat Ansible Automation Platform 2, Red Hat build of Apicurio Registry 3, Red Hat Migration Toolkit 1.8, Network Observability Operator, Red Hat OpenShift AI (RHOAI), Red Hat OpenShift Service Mesh 3.1
Provider severity
HIGH, MEDIUM
Conflicts
3

CVE-2026-42043

A flaw was found in Axios, a promise-based HTTP client. An attacker who can control the destination address of an Axios request can exploit this vulnerability. By using specific internal network addresses (within the 127.0.0.0/8 range, excluding 127.0.0.1), the attacker can completely bypass the NO_PROXY protection, potentially leading to unauthorized access or information disclosure within the network. This issue is an incomplete fix for a previous vulnerability.

PUBLISHED
Vendor
Red Hat, Red Hat, Red Hat, Red Hat, Red Hat, Red Hat, Red Hat, Red Hat, Red Hat, Red Hat, Red Hat, Red Hat, Red Hat, Red Hat, axios, Red Hat, Red Hat, Red Hat, Red Hat, Red Hat, Red Hat, Red Hat, Red Hat, Red Hat, Red Hat, Red Hat, Red Hat, Red Hat, Red Hat, Red Hat, Red Hat, Red Hat, Red Hat, Red Hat, Red Hat, Red Hat, Red Hat, Red Hat, Red Hat, Red Hat, Red Hat, Red Hat, Red Hat, Red Hat, Red Hat, Red Hat, Red Hat, Red Hat, Red Hat, Red Hat, Red Hat, Red Hat, Red Hat, Red Hat, Red Hat, Red Hat, Red Hat, Red Hat, Red Hat, Red Hat, Red Hat, Red Hat, Red Hat, Red Hat, Red Hat, Red Hat, Red Hat, Red Hat, Red Hat, Red Hat, Red Hat, Red Hat, Red Hat, Red Hat, Red Hat, Red Hat, Red Hat, Red Hat, Red Hat, Red Hat, Red Hat, Red Hat, Red Hat, Red Hat, Red Hat, Red Hat, Red Hat, Red Hat, Red Hat, Red Hat, Red Hat, Red Hat, Red Hat, Red Hat
Product
Red Hat Migration Toolkit 1.8, Gatekeeper 3, Red Hat build of Apicurio Registry 2, Red Hat Enterprise Linux AI (RHEL AI) 3, Red Hat OpenShift Service Mesh 3.3, Red Hat OpenShift Container Platform 4, Red Hat OpenShift AI (RHOAI), Red Hat Developer Hub 1.8, Red Hat 3scale API Management Platform 2, Red Hat 3scale API Management Platform 2, Red Hat Hardened Images, Migration Toolkit for Applications 8, Red Hat Ansible Automation Platform 2, Red Hat OpenShift Service Mesh 2.6, axios, multicluster engine for Kubernetes 2.10, Red Hat build of Apicurio Registry 3, Red Hat OpenShift AI 2.25, Red Hat Build of Podman Desktop - Tech Preview, Red Hat OpenShift Service Mesh 3.1, OpenShift Pipelines, Red Hat OpenShift Service Mesh 3.0, Red Hat Enterprise Linux AI (RHEL AI) 3, Red Hat Ansible Automation Platform 2, Red Hat Quay 3.9, Red Hat OpenShift Container Platform 4, HawtIO HawtIO 4.4.0, Red Hat OpenShift Service Mesh 3.1, multicluster engine for Kubernetes 2.11, multicluster engine for Kubernetes 2.6, Red Hat Advanced Cluster Management for Kubernetes 2.16.0, Red Hat Enterprise Linux 8, Red Hat Quay 3.14, Migration Toolkit for Applications 8, Red Hat Quay 3.12, Network Observability (NETOBSERV) 1.11.1, Red Hat OpenShift AI (RHOAI), Red Hat OpenShift Container Platform 4.20, OpenShift Service Mesh 3, Red Hat Quay 3.1, streams for Apache Kafka 3, Red Hat Ansible Automation Platform 2, Red Hat OpenShift AI 2.25, Red Hat OpenShift AI (RHOAI), Red Hat OpenShift Service Mesh 3.3, Red Hat Ansible Automation Platform 2, Red Hat build of Apicurio Registry 3, Red Hat Process Automation 7, Red Hat Quay 3.15, OpenShift Service Mesh 3, Red Hat Trusted Artifact Signer, Red Hat OpenShift Dev Spaces 3.28, Red Hat Developer Hub 1.9, Red Hat Advanced Cluster Management for Kubernetes 2.14, Red Hat Advanced Cluster Security for Kubernetes 4.10, Red Hat Ansible Automation Platform 2, Red Hat OpenShift Container Platform 4, Red Hat Advanced Cluster Security for Kubernetes 4.9, Red Hat OpenShift Service Mesh 3.2, Red Hat 3scale API Management Platform 2, Red Hat Ansible Automation Platform 2, Red Hat Ansible Automation Platform 2, Red Hat OpenShift Service Mesh 3.0, Red Hat OpenShift Virtualization 4, multicluster engine for Kubernetes 2.8, Red Hat Satellite 6.18, Self-service automation portal 2, Red Hat Advanced Cluster Management for Kubernetes 2.15, Red Hat Enterprise Linux 9, Red Hat Fuse 7, streams for Apache Kafka 2, Red Hat Ansible Automation Platform 2, Red Hat Ansible Automation Platform 2, Red Hat Quay 3.17, Red Hat Discovery 2, Red Hat OpenShift Container Platform 4, Red Hat Satellite 6.18, Red Hat OpenShift Container Platform 4.21, Network Observability (NETOBSERV) 1.11.1, Red Hat 3scale API Management Platform 2, Red Hat Trusted Profile Analyzer, Red Hat Ansible Automation Platform 2, Cryostat 4, multicluster engine for Kubernetes 2.9, Red Hat Satellite 6.18, Red Hat 3scale API Management Platform 2, Red Hat OpenShift Virtualization 4, Red Hat OpenShift Dev Spaces 3.28, Red Hat Data Grid 8.6.1, OpenShift Pipelines, Red Hat OpenShift Service Mesh 3.2, Red Hat OpenShift Service Mesh 2.6, Red Hat Enterprise Linux AI (RHEL AI) 3, Red Hat Quay 3.16
Provider severity
HIGH
Conflicts
2

CVE-2026-42042

Axios is a promise based HTTP client for the browser and Node.js. Prior to 1.15.1 and 0.31.1, the Axios library's XSRF token protection logic uses JavaScript truthy/falsy semantics instead of strict boolean comparison for the withXSRFToken config property. When this property is set to any truthy non-boolean value (via prototype pollution or misconfiguration), the same-origin check (isURLSameOrigin) is short-circuited, causing XSRF tokens to be sent to all request targets including cross-origin s

PUBLISHED
Vendor
axios
Product
axios
Provider severity
MEDIUM
Conflicts
1

CVE-2026-42041

Axios is a promise based HTTP client for the browser and Node.js. Prior to 1.15.1 and 0.31.1, the Axios library is vulnerable to a Prototype Pollution "Gadget" attack that allows any Object.prototype pollution to silently suppress all HTTP error responses (401, 403, 500, etc.), causing them to be treated as successful responses. This completely bypasses application-level authentication and error handling. The root cause is that validateStatus is the only config property using the mergeDirectKeys

PUBLISHED
Vendor
Red Hat, Red Hat, Red Hat, Red Hat, Red Hat, Red Hat, Red Hat, Red Hat, Red Hat, Red Hat, Red Hat, Red Hat, Red Hat, Red Hat, Red Hat, Red Hat, Red Hat, Red Hat, Red Hat, Red Hat, Red Hat, Red Hat, Red Hat, Red Hat, Red Hat, Red Hat, Red Hat, Red Hat, Red Hat, axios, Red Hat, Red Hat, Red Hat, Red Hat, Red Hat, Red Hat, Red Hat, Red Hat, Red Hat, Red Hat, Red Hat, Red Hat, Red Hat, Red Hat, Red Hat, Red Hat, Red Hat, Red Hat, Red Hat, Red Hat, Red Hat, Red Hat, Red Hat, Red Hat, Red Hat, Red Hat, Red Hat, Red Hat, Red Hat, Red Hat, Red Hat, Red Hat, Red Hat, Red Hat, Red Hat, Red Hat, Red Hat, Red Hat, Red Hat, Red Hat, Red Hat, Red Hat, Red Hat, Red Hat, Red Hat, Red Hat, Red Hat, Red Hat, Red Hat, Red Hat, Red Hat, Red Hat, Red Hat, Red Hat, Red Hat, Red Hat, Red Hat, Red Hat, Red Hat, Red Hat, Red Hat, Red Hat, Red Hat, Red Hat
Product
Red Hat Quay 3.17, Red Hat Build of Podman Desktop - Tech Preview, Red Hat OpenShift Service Mesh 3.2, Red Hat OpenShift Service Mesh 3.3, Network Observability (NETOBSERV) 1.11.1, Red Hat Quay 3.9, Red Hat Ansible Automation Platform 2, Red Hat build of Apicurio Registry 3, Red Hat Ansible Automation Platform 2, Gatekeeper 3, Red Hat Ansible Automation Platform 2, Network Observability (NETOBSERV) 1.11.1, Red Hat Migration Toolkit 1.8, Red Hat Trusted Profile Analyzer, Red Hat Enterprise Linux 9, Red Hat build of Apicurio Registry 3, streams for Apache Kafka 2, OpenShift Service Mesh 3, Red Hat Ansible Automation Platform 2, multicluster engine for Kubernetes 2.11, Red Hat 3scale API Management Platform 2, Red Hat Quay 3.15, Red Hat Developer Hub 1.8, Red Hat 3scale API Management Platform 2, Red Hat OpenShift Service Mesh 3.0, Red Hat OpenShift Container Platform 4, Red Hat Ansible Automation Platform 2, Red Hat Ansible Automation Platform 2, Red Hat OpenShift Service Mesh 3.1, axios, Red Hat Advanced Cluster Management for Kubernetes 2.14, Red Hat Enterprise Linux AI (RHEL AI) 3, Red Hat Advanced Cluster Management for Kubernetes 2.15, Red Hat Ansible Automation Platform 2, Red Hat 3scale API Management Platform 2, Red Hat OpenShift Service Mesh 3.3, Red Hat OpenShift Service Mesh 3.0, Red Hat OpenShift AI 2.25, Red Hat 3scale API Management Platform 2, streams for Apache Kafka 3, Red Hat OpenShift Service Mesh 2.6, Red Hat OpenShift Container Platform 4, Red Hat OpenShift AI 2.25, multicluster engine for Kubernetes 2.8, Red Hat OpenShift Service Mesh 3.2, Red Hat Ansible Automation Platform 2, Red Hat OpenShift Service Mesh 2.6, Red Hat Ansible Automation Platform 2, OpenShift Service Mesh 3, Red Hat Enterprise Linux AI (RHEL AI) 3, Red Hat OpenShift Dev Spaces 3.28, Red Hat Satellite 6.18, Red Hat Quay 3.14, Red Hat Advanced Cluster Management for Kubernetes 2.16, Red Hat OpenShift Service Mesh 3.1, Red Hat Enterprise Linux AI (RHEL AI) 3, Red Hat build of Apicurio Registry 2, OpenShift Pipelines, Red Hat Process Automation 7, Red Hat OpenShift AI (RHOAI), Red Hat Quay 3.1, OpenShift Pipelines, Red Hat Advanced Cluster Security 4.9, Red Hat OpenShift Container Platform 4, Red Hat Satellite 6.18, Red Hat Advanced Cluster Security for Kubernetes 4.10, Red Hat Satellite 6.18, Red Hat Developer Hub 1.9, Red Hat 3scale API Management Platform 2, Red Hat OpenShift Dev Spaces 3.28, HawtIO HawtIO 4.4.0, Red Hat OpenShift Virtualization 4, Red Hat OpenShift AI (RHOAI), Red Hat OpenShift Container Platform 4, Red Hat Discovery 2, Red Hat Hardened Images, multicluster engine for Kubernetes 2.9, Migration Toolkit for Applications 8, Red Hat Data Grid 8.6.1, Red Hat Fuse 7, multicluster engine for Kubernetes 2.1, Cryostat 4, Red Hat OpenShift Container Platform 4.21, Red Hat Quay 3.16, Red Hat Quay 3.12, Red Hat OpenShift Container Platform 4.2, Self-service automation portal 2, Migration Toolkit for Applications 8, multicluster engine for Kubernetes 2.6, Red Hat Ansible Automation Platform 2, Red Hat OpenShift Virtualization 4, Red Hat OpenShift AI (RHOAI), Red Hat Enterprise Linux 8, Red Hat Trusted Artifact Signer
Provider severity
HIGH, MEDIUM
Conflicts
3

CVE-2026-42040

Axios is a promise based HTTP client for the browser and Node.js. Prior to 1.15.1 and 0.31.1, the encode() function in lib/helpers/AxiosURLSearchParams.js contains a character mapping (charMap) at line 21 that reverses the safe percent-encoding of null bytes. After encodeURIComponent('\x00') correctly produces the safe sequence %00, the charMap entry '%00': '\x00' converts it back to a raw null byte. Primary impact is limited because the standard axios request flow is not affected. This vulnerab

PUBLISHED
Vendor
axios
Product
axios
Provider severity
LOW
Conflicts
1

CVE-2026-4204

A flaw has been found in D-Link DNS-120, DNR-202L, DNS-315L, DNS-320, DNS-320L, DNS-320LW, DNS-321, DNR-322L, DNS-323, DNS-325, DNS-326, DNS-327L, DNR-326, DNS-340L, DNS-343, DNS-345, DNS-726-4, DNS-1100-4, DNS-1200-05 and DNS-1550-04 up to 20260205. The affected element is the function cgi_myfavorite_add/cgi_myfavorite_set/cgi_myfavorite_del/cgi_myfavorite_set_sort_info/cgi_myfavorite_remove_apkg/cgi_myfavorite_compare_apkg/cgi_mycloud_auto_downlaod of the file /cgi-bin/gui_mgr.cgi. This manipu

PUBLISHED
Vendor
D-Link, D-Link, D-Link, D-Link, D-Link, D-Link, D-Link, D-Link, D-Link, D-Link, D-Link, D-Link, D-Link, D-Link, D-Link, D-Link, D-Link, D-Link, D-Link, D-Link
Product
DNS-321, DNS-1100-4, DNR-322L, DNS-326, DNS-315L, DNS-325, DNS-1200-05, DNR-326, DNS-323, DNS-327L, DNS-1550-04, DNS-320LW, DNS-726-4, DNS-343, DNS-345, DNS-120, DNS-320, DNS-320L, DNS-340L, DNR-202L
Provider severity
MEDIUM
Conflicts
3

CVE-2026-42039

A flaw was found in Axios, a promise-based HTTP client for browsers and Node.js. This vulnerability occurs because the `toFormData` function recursively processes nested objects without a depth limit. A remote attacker can exploit this by sending deeply nested request data, which causes the Node.js process to crash due to a RangeError, leading to a potential Denial of Service (DoS) if the process crashes.

PUBLISHED
Vendor
Red Hat, Red Hat, Red Hat, Red Hat, Red Hat, Red Hat, Red Hat, Red Hat, Red Hat, Red Hat, Red Hat, Red Hat, Red Hat, Red Hat, Red Hat, Red Hat, Red Hat, Red Hat, Red Hat, Red Hat, Red Hat, Red Hat, Red Hat, Red Hat, Red Hat, Red Hat, Red Hat, Red Hat, Red Hat, Red Hat, Red Hat, Red Hat, axios, Red Hat, Red Hat, Red Hat, Red Hat, Red Hat, Red Hat, Red Hat, Red Hat, Red Hat, Red Hat, Red Hat, Red Hat, Red Hat, Red Hat, Red Hat, Red Hat, Red Hat, Red Hat, Red Hat, Red Hat, Red Hat, Red Hat, Red Hat, Red Hat, Red Hat, Red Hat, Red Hat, Red Hat, Red Hat, Red Hat, Red Hat, Red Hat, Red Hat, Red Hat, Red Hat, Red Hat, Red Hat, Red Hat, Red Hat, Red Hat, Red Hat, Red Hat, Red Hat, Red Hat, Red Hat, Red Hat, Red Hat, Red Hat, Red Hat, Red Hat, Red Hat, Red Hat, Red Hat, Red Hat, Red Hat, Red Hat, Red Hat, Red Hat, Red Hat, Red Hat, Red Hat, Red Hat, Red Hat
Product
Network Observability (NETOBSERV) 1.12.0, Red Hat OpenShift AI 2.25, Red Hat OpenShift Dev Spaces 3.28, Red Hat Quay 3.15, streams for Apache Kafka 3, OpenShift Pipelines, streams for Apache Kafka 2, Red Hat Fuse 7, Red Hat Ansible Automation Platform 2, Red Hat OpenShift Container Platform 4.21, Red Hat Ansible Automation Platform 2, Self-service automation portal 2, Red Hat OpenShift Service Mesh 3.3, Red Hat Quay 3.17, Red Hat Ansible Automation Platform 2, Red Hat OpenShift Service Mesh 3.1, Red Hat 3scale API Management Platform 2, Red Hat Quay 3.16, Red Hat Advanced Cluster Management for Kubernetes 2.14, Migration Toolkit for Applications 8, Red Hat Satellite 6.18, Red Hat Satellite 6, Red Hat 3scale API Management Platform 2, Red Hat Trusted Profile Analyzer, Red Hat build of Apicurio Registry 3, multicluster engine for Kubernetes 2.9, Red Hat build of Apicurio Registry 2, Network Observability (NETOBSERV) 1.11.0, Red Hat Advanced Cluster Security for Kubernetes 4.10, Red Hat OpenShift Virtualization 4, Red Hat OpenShift Dev Spaces 3.28, Red Hat Satellite 6.18, axios, Red Hat OpenShift AI (RHOAI), OpenShift Pipelines, HawtIO HawtIO 4.4.0, Red Hat Quay 3.18, Gatekeeper 3, multicluster engine for Kubernetes 2.11, Red Hat OpenShift Container Platform 4, Red Hat Migration Toolkit 1.8, Red Hat Advanced Cluster Security 4.9, Red Hat Ansible Automation Platform 2, Red Hat OpenShift Container Platform 4, OpenShift Service Mesh 3, Red Hat build of Apicurio Registry 3, Red Hat 3scale API Management Platform 2, Red Hat Trusted Artifact Signer, multicluster engine for Kubernetes 2.1, Red Hat OpenShift AI (RHOAI), Red Hat Ansible Automation Platform 2, Red Hat Developer Hub 1.9, Red Hat Enterprise Linux 9, Red Hat Ansible Automation Platform 2, Red Hat OpenShift AI (RHOAI), Red Hat Ansible Automation Platform 2, Red Hat OpenShift Container Platform 4.2, Red Hat Quay 3.12, Red Hat OpenShift Container Platform 4, Red Hat 3scale API Management Platform 2, Red Hat OpenShift Service Mesh 3.3, Cryostat 4, Red Hat Quay 3.1, OpenShift Service Mesh 3, Red Hat Enterprise Linux 8, Red Hat Data Grid 8.6.1, Red Hat OpenShift Service Mesh 3.0, Red Hat Developer Hub 1.8, Red Hat Ansible Automation Platform 2, Red Hat Enterprise Linux AI (RHEL AI) 3, Red Hat OpenShift Virtualization 4, multicluster engine for Kubernetes 2.8, Migration Toolkit for Applications 8, Red Hat Process Automation 7, Red Hat OpenShift Service Mesh 3.0, Red Hat OpenShift Service Mesh 2.6, Red Hat 3scale API Management Platform 2, multicluster engine for Kubernetes 2.6, Red Hat Enterprise Linux AI (RHEL AI) 3, Red Hat Quay 3.14, Red Hat OpenShift Service Mesh 3.1, Network Observability Operator, Red Hat Ansible Automation Platform 2, Red Hat OpenShift AI 2.25, Red Hat OpenShift Service Mesh 3.2, Red Hat OpenShift Service Mesh 3.2, Red Hat OpenShift Container Platform 4, Red Hat Discovery 2, Red Hat Hardened Images, Red Hat Advanced Cluster Management for Kubernetes 2.15, Red Hat Quay 3.9, Red Hat Enterprise Linux AI (RHEL AI) 3, Red Hat Ansible Automation Platform 2, Red Hat OpenShift Service Mesh 2.6, Red Hat Advanced Cluster Management for Kubernetes 2.16, Red Hat Build of Podman Desktop - Tech Preview
Provider severity
HIGH, MEDIUM
Conflicts
3

CVE-2026-42038

Axios is a promise based HTTP client for the browser and Node.js. Prior to 1.15.1 and 0.31.1, he fix for no_proxy hostname normalization bypass is incomplete. When no_proxy=localhost is set, requests to 127.0.0.1 and [::1] still route through the proxy instead of bypassing it. The shouldBypassProxy() function does pure string matching — it does not resolve IP aliases or loopback equivalents. This vulnerability is fixed in 1.15.1 and 0.31.1.

PUBLISHED
Vendor
axios
Product
axios
Provider severity
MEDIUM
Conflicts
0

CVE-2026-42037

Axios is a promise based HTTP client for the browser and Node.js. From 1.0.0 to before 1.15.1, the FormDataPart constructor in lib/helpers/formDataToStream.js interpolates value.type directly into the Content-Type header of each multipart part without sanitizing CRLF (\r\n) sequences. An attacker who controls the .type property of a Blob/File-like object (e.g., via a user-uploaded file in a Node.js proxy service) can inject arbitrary MIME part headers into the multipart form-data body. This bypa

PUBLISHED
Vendor
axios
Product
axios
Provider severity
MEDIUM
Conflicts
0

CVE-2026-42036

Axios is a promise based HTTP client for the browser and Node.js. Prior to 1.15.1 and 0.31.1, when responseType: 'stream' is used, Axios returns the response stream without enforcing maxContentLength. This bypasses configured response-size limits and allows unbounded downstream consumption. This vulnerability is fixed in 1.15.1 and 0.31.1.

PUBLISHED
Vendor
axios
Product
axios
Provider severity
MEDIUM
Conflicts
0

CVE-2026-42035

Axios is a promise based HTTP client for the browser and Node.js. Prior to 1.15.1 and 0.31.1, a prototype pollution gadget exists in the Axios HTTP adapter (lib/adapters/http.js) that allows an attacker to inject arbitrary HTTP headers into outgoing requests. The vulnerability exploits duck-type checking of the data payload, where if Object.prototype is polluted with getHeaders, append, pipe, on, once, and Symbol.toStringTag, Axios misidentifies any plain object payload as a FormData instance an

PUBLISHED
Vendor
axios
Product
axios
Provider severity
HIGH
Conflicts
1

CVE-2026-42034

Axios is a promise based HTTP client for the browser and Node.js. Prior to 1.15.1 and 0.31.1, for stream request bodies, maxBodyLength is bypassed when maxRedirects is set to 0 (native http/https transport path). Oversized streamed uploads are sent fully even when the caller sets strict body limits. This vulnerability is fixed in 1.15.1 and 0.31.1.

PUBLISHED
Vendor
axios
Product
axios
Provider severity
MEDIUM
Conflicts
0

CVE-2026-42033

A flaw was found in Axios, an HTTP client library. This vulnerability allows an attacker to exploit a prototype pollution issue if another part of the application has already polluted the Object.prototype. By doing so, the attacker can intercept and modify JSON responses or take control of the HTTP communication. This could lead to unauthorized access to sensitive information like user credentials and request details.

PUBLISHED
Vendor
Red Hat, Red Hat, Red Hat, Red Hat, Red Hat, Red Hat, Red Hat, Red Hat, Red Hat, Red Hat, Red Hat, Red Hat, Red Hat, Red Hat, Red Hat, Red Hat, Red Hat, Red Hat, Red Hat, Red Hat, Red Hat, Red Hat, Red Hat, Red Hat, Red Hat, Red Hat, Red Hat, Red Hat, Red Hat, Red Hat, Red Hat, Red Hat, Red Hat, Red Hat, Red Hat, Red Hat, Red Hat, Red Hat, Red Hat, Red Hat, Red Hat, Red Hat, Red Hat, Red Hat, Red Hat, Red Hat, Red Hat, Red Hat, Red Hat, Red Hat, Red Hat, Red Hat, Red Hat, Red Hat, Red Hat, Red Hat, Red Hat, Red Hat, Red Hat, Red Hat, Red Hat, Red Hat, Red Hat, Red Hat, Red Hat, Red Hat, Red Hat, Red Hat, Red Hat, Red Hat, Red Hat, Red Hat, Red Hat, Red Hat, Red Hat, Red Hat, Red Hat, Red Hat, Red Hat, Red Hat, Red Hat, Red Hat, Red Hat, Red Hat, Red Hat, Red Hat, Red Hat, Red Hat, axios, Red Hat, Red Hat, Red Hat, Red Hat, Red Hat, Red Hat
Product
Red Hat OpenShift Service Mesh 3.2, Red Hat Ansible Automation Platform 2, Red Hat OpenShift Service Mesh 3.0, Red Hat OpenShift Service Mesh 3.3, Red Hat build of Apicurio Registry 2, streams for Apache Kafka 3, Red Hat 3scale API Management Platform 2, Red Hat OpenShift Virtualization 4, Red Hat Developer Hub 1.9, Red Hat OpenShift Service Mesh 3.1, Red Hat OpenShift Service Mesh 3.1, Red Hat OpenShift Service Mesh 3.0, OpenShift Pipelines, Red Hat Satellite 6.18, Red Hat build of Apicurio Registry 3, OpenShift Pipelines, Red Hat Ansible Automation Platform 2, Red Hat Fuse 7, Migration Toolkit for Applications 8, Red Hat Ansible Automation Platform 2, Red Hat OpenShift Container Platform 4, Red Hat OpenShift Service Mesh 3.3, Red Hat OpenShift Container Platform 4.21, Red Hat OpenShift Container Platform 4.2, Red Hat Hardened Images, Red Hat Advanced Cluster Management for Kubernetes 2.16, Red Hat build of Apicurio Registry 3, Red Hat OpenShift Service Mesh 2.6, Red Hat Quay 3.9, Red Hat Ansible Automation Platform 2, OpenShift Service Mesh 3, Self-service automation portal 2, Red Hat Advanced Cluster Management for Kubernetes 2.15, Network Observability (NETOBSERV) 1.11.1, Red Hat OpenShift Virtualization 4, Red Hat OpenShift Container Platform 4, Red Hat Migration Toolkit 1.8, Red Hat OpenShift AI (RHOAI), multicluster engine for Kubernetes 2.6, Red Hat Ansible Automation Platform 2, multicluster engine for Kubernetes 2.8, Red Hat Discovery 2, Red Hat Quay 3.16, Red Hat OpenShift Dev Spaces 3.28, Red Hat OpenShift Container Platform 4, Red Hat Quay 3.15, Red Hat Trusted Artifact Signer, Red Hat Ansible Automation Platform 2, Red Hat OpenShift AI (RHOAI), Red Hat Data Grid 8.6.1, OpenShift Service Mesh 3, Red Hat OpenShift Service Mesh 3.2, Red Hat OpenShift Dev Spaces 3.28, Migration Toolkit for Applications 8, Cryostat 4, Network Observability (NETOBSERV) 1.11.1, Red Hat Enterprise Linux 9, Red Hat 3scale API Management Platform 2, Red Hat Enterprise Linux AI (RHEL AI) 3, Gatekeeper 3, streams for Apache Kafka 2, Red Hat Satellite 6.18, Red Hat OpenShift AI 2.25, Red Hat Ansible Automation Platform 2, Red Hat Quay 3.1, Red Hat Satellite 6.18, Red Hat Developer Hub 1.8, Red Hat Ansible Automation Platform 2, Red Hat OpenShift Container Platform 4, Red Hat Ansible Automation Platform 2, Red Hat Enterprise Linux 8, Red Hat Enterprise Linux AI (RHEL AI) 3, Red Hat Process Automation 7, Red Hat Quay 3.17, Red Hat OpenShift AI 2.25, Red Hat Enterprise Linux AI (RHEL AI) 3, Red Hat 3scale API Management Platform 2, multicluster engine for Kubernetes 2.1, Red Hat OpenShift Service Mesh 2.6, multicluster engine for Kubernetes 2.11, Red Hat Quay 3.12, Red Hat Build of Podman Desktop - Tech Preview, Red Hat Advanced Cluster Security 4.9, Red Hat Advanced Cluster Management for Kubernetes 2.14, Red Hat 3scale API Management Platform 2, Red Hat OpenShift AI (RHOAI), Red Hat 3scale API Management Platform 2, Red Hat Ansible Automation Platform 2, axios, HawtIO HawtIO 4.4.0, Red Hat Developer Hub, Red Hat Advanced Cluster Security for Kubernetes 4.10, multicluster engine for Kubernetes 2.9, Red Hat Quay 3.14, Red Hat Trusted Profile Analyzer
Provider severity
HIGH
Conflicts
2

CVE-2026-42032

CKAN is an open-source DMS (data management system) for powering data hubs and data portals. Prior to 2.10.10 and 2.11.5, a vulnerability in datastore_search_sql allowed attackers to bypass authorization in order to gain access to private resources and PostgreSQL system information This vulnerability is fixed in 2.10.10 and 2.11.5.

PUBLISHED
Vendor
ckan
Product
ckan
Provider severity
MEDIUM
Conflicts
0