Skip to content
Noroxi

rhmt records

5 published records for vendor rhmt.

Researcher profile

Entered KEV
0 · 0%
Weaponized
0 · 0%
Pre-auth RCE
2
With a fix record
80%
Median publish → KEV
No record has entered KEV

All records

5 records
  • CVE-2026-9277
    36Monitor

    shell-quote `quote()` does not validate object-token shapes, allowing command injection via line terminators in `.op`

    CriticalCVSS 9.2Proof of conceptEPSS 1%

    May 22, 2026

  • form-data does not escape CR/LF/quote in multipart field names and filenames (CRLF injection)

    HighCVSS 8.7No exploitEPSS 1%

    form-data · form-dataJun 12, 2026

  • launch-editor vulnerable to command injection via the crafted request on Windows

    HighCVSS 7.5Proof of conceptEPSS 1%

    vitejs · launch-editorJun 1, 2026

  • CVE-2026-0775
    28Monitor

    npm cli Incorrect Permission Assignment Local Privilege Escalation Vulnerability

    HighCVSS 7.0No exploitEPSS 0%

    npm · cliJan 23, 2026

  • opentelemetry-java: Unbounded Memory Allocation in W3C Baggage Propagation

    MediumCVSS 5.3No exploitEPSS 1%

    open-telemetry · opentelemetry-javaMay 28, 2026