Skip to main content
Press slash or control plus K to focus the search. Use the arrow keys to navigate results and press enter to open a threat.
Reconnecting to live updates…
EPSS 1.9%top 22%

Red Hat Security Advisory: OpenShift Container Platform 4.18.37 bug fix and security update

0
High
Published: 04/09/2026 (04/09/2026, 07:52:48 UTC)
Source: GCVE Database
Vendor/Project: Red Hat Product Security
Product: Red Hat

Description

Red Hat OpenShift Container Platform is Red Hat's cloud computing Kubernetes application platform solution designed for on-premise or private cloud deployments. This advisory contains the container images for Red Hat OpenShift Container Platform 4.18.37. See the following advisory for the RPM packages for this release: https://access.redhat.com/errata/RHSA-2026:6552 Space precludes documenting all of the container images in this advisory. See the following Release Notes documentation, which will be updated shortly for this release, for details about these changes: https://docs.redhat.com/en/documentation/openshift_container_platform/4.18/html/release_notes/

Affected software

Affected versions
Red HatRed Hat OpenShift Container PlatformRed Hat OpenShift Container Platform 4.18amd64registry.redhat.io/openshift4/ose-cluster-kube-storage-version-migrator-rhel9-operator@sha256:dc1436d2524b63b8e11df496970d1e6a9806d90afb495af730d1c6864e00f352_amd64

AI-Powered Analysis

Machine-generated threat intelligence

AILast updated: 07/30/2026, 09:03:38 UTC

Technical Analysis

Red Hat OpenShift Container Platform 4.18.37 is a bug fix and security update release that addresses multiple vulnerabilities, including CVE-2025-61726 and related CVEs. The update includes fixes to container images and RPM packages for the platform, which is designed for on-premise or private cloud Kubernetes deployments. The advisory references several bug fixes and enhancements, and directs users to upgrade their clusters using official documentation. No CVSS base score is provided, but the update is classified as having an important security impact by Red Hat. The advisory does not specify detailed technical exploit methods or impacts beyond the general security update context.

Potential Impact

The vulnerabilities addressed in this update have been rated as having an important security impact by Red Hat Product Security. The update fixes multiple bugs and security issues in OpenShift Container Platform 4.18, improving the security posture of the platform. There are no known exploits in the wild reported at this time. The impact is relevant to users running affected versions of OpenShift Container Platform 4.18, particularly those deploying on-premise or private cloud environments.

Mitigation Recommendations

Red Hat has released OpenShift Container Platform 4.18.37 containing fixes for the identified vulnerabilities. Users are advised to upgrade to this version using the official upgrade procedures documented by Red Hat. The vendor manages remediation through this update, and no additional immediate actions are indicated beyond applying the update. Instructions for upgrading clusters are available at Red Hat's official documentation site. Patch status is confirmed as an official fix available in version 4.18.37.

Pro Console: star threats, build custom feeds, automate alerts via Slack, email & webhooks.Upgrade to Pro

Technical Details

Gcve Source
db.gcve.eu
Csaf Category
csaf_security_advisory
Csaf Version
2.0
Publisher
Red Hat Product Security
Advisory Id
RHSA-2026:6554
Cve Count
2
Additional Cves
["CVE-2025-61728"]
Cvss Version
null

Threat ID: 6a160964e29bf47b5062916e

Added to database: 05/26/2026, 20:58:12 UTC

Last enriched: 07/30/2026, 09:03:38 UTC

Last updated: 07/31/2026, 21:53:09 UTC

Views: 50

Community Reviews

0 reviews

Crowdsource mitigation strategies, share intel context, and vote on the most helpful responses. Sign in to add your voice and help keep defenders ahead.

Sort by
Loading community insights…

Want to contribute mitigation steps or threat intel context? Sign in or create an account to join the community discussion.

Need more coverage?

Upgrade to Pro Console for AI refresh and higher limits.

For incident response and remediation, OffSeq services can help resolve threats faster.

Latest Threats

Breach by OffSeqOFFSEQFRIENDS — 25% OFF

Check if your credentials are on the dark web

Instant breach scanning across billions of leaked records. Free tier available.

Scan now
OffSeq TrainingCredly Certified

Lead Pen Test Professional

Technical5-day eLearningPECB Accredited
View courses