meifukun (https://github.com/meifukun)
7 записей с упоминанием · 7 за 12 месяцев · 0 в CISA KEV
Имена — свободный текст из записей CNA; один человек может встречаться в разных написаниях. Напишите нам для исправления.
Записи с упоминанием
Исследователи| Срочность | CVE | Уязвимость | Критичность | KEV | EPSS | Опубликовано |
|---|---|---|---|---|---|---|
28Наблюдать | CVE-2026-74247Эксплойта нет | Quay: ssrf via build archive_url in quay build apiredhat · openshift update service · CWE-918 | Высокая7,1 | — | 0,2 % | 14 авг. 2026 г. |
30Наблюдать | CVE-2026-74245Эксплойта нет | Quay: unauthenticated exported logs download in quayredhat · openshift update service · CWE-306 | Высокая7,5 | — | 0,4 % | 14 авг. 2026 г. |
30Наблюдать | CVE-2026-74244Эксплойта нет | Quay: stripe webhook accepts forged events without signature verification in quayredhat · openshift update service · CWE-347 | Высокая7,5 | — | 0,2 % | 14 авг. 2026 г. |
32Наблюдать | CVE-2026-74243Эксплойта нет | Quay: unauthenticated secscan notification endpoint in quay when psk is unsetredhat · openshift update service · CWE-306 | Высокая8,2 | — | 0,5 % | 14 авг. 2026 г. |
17Наблюдать | CVE-2026-74242Эксплойта нет | Quay: repository notification uuid idor in quay apiredhat · openshift update service · CWE-639 | Средняя4,4 | — | 0,3 % | 14 авг. 2026 г. |
26Наблюдать | CVE-2026-74241Эксплойта нет | Quay: ldap referral filter injection in quay external ldap authenticationredhat · openshift update service · CWE-90 | Средняя6,5 | — | 0,3 % | 14 авг. 2026 г. |
21Наблюдать | CVE-2026-74240Эксплойта нет | Quay: jwt claim validation bypasses in quay federated robot and sso authenticationredhat · openshift update service · CWE-287 | Средняя5,4 | — | 0,3 % | 14 авг. 2026 г. |
- CVE-2026-7424728Наблюдать
Quay: ssrf via build archive_url in quay build api
ВысокаяCVSS 7,1Эксплойта нетEPSS 0 %redhat · openshift update service14 авг. 2026 г.
- CVE-2026-7424530Наблюдать
Quay: unauthenticated exported logs download in quay
ВысокаяCVSS 7,5Эксплойта нетEPSS 0 %redhat · openshift update service14 авг. 2026 г.
- CVE-2026-7424430Наблюдать
Quay: stripe webhook accepts forged events without signature verification in quay
ВысокаяCVSS 7,5Эксплойта нетEPSS 0 %redhat · openshift update service14 авг. 2026 г.
- CVE-2026-7424332Наблюдать
Quay: unauthenticated secscan notification endpoint in quay when psk is unset
ВысокаяCVSS 8,2Эксплойта нетEPSS 0 %redhat · openshift update service14 авг. 2026 г.
- CVE-2026-7424217Наблюдать
Quay: repository notification uuid idor in quay api
СредняяCVSS 4,4Эксплойта нетEPSS 0 %redhat · openshift update service14 авг. 2026 г.
- CVE-2026-7424126Наблюдать
Quay: ldap referral filter injection in quay external ldap authentication
СредняяCVSS 6,5Эксплойта нетEPSS 0 %redhat · openshift update service14 авг. 2026 г.
- CVE-2026-7424021Наблюдать
Quay: jwt claim validation bypasses in quay federated robot and sso authentication
СредняяCVSS 5,4Эксплойта нетEPSS 0 %redhat · openshift update service14 авг. 2026 г.