Skip to main content
EPSS 0.5%top 61%

Red Hat Security Advisory: OpenShift Container Platform 4.18.53 bug fix and security update

0
High
Published: 08/19/2026 (08/19/2026, 14:17:24 UTC)
Source: GCVE Database
Vendor/Project: Red Hat Product Security
Product: Red Hat

Description

An authenticated Server-Side Request Forgery (SSRF) vulnerability exists in the OpenShift Console Dev Console webhook helpers in Red Hat OpenShift Container Platform 4.18.53. This flaw allows user-supplied URLs to be fetched server-side without proper validation, enabling arbitrary endpoint targeting and full response reflection from the console pod's privileged network position. The vulnerability has a high severity rating and affects on-premise or private cloud deployments of OpenShift Container Platform 4.18.53. Mitigation involves applying NetworkPolicy egress restrictions to limit outbound connectivity from the console pod to only required endpoints. Users are advised to upgrade to the updated packages and images provided in this advisory.

Affected software

Affected versions
>=4.18.0 <4.18.53

AI-Powered Analysis

Machine-generated threat intelligence

AILast updated: 09/08/2026, 14:08:40 UTC

Technical Analysis

CVE-2026-50236 is an authenticated SSRF vulnerability in the OpenShift Console Dev Console webhook helpers of Red Hat OpenShift Container Platform 4.18.53. The vulnerability allows attackers with authenticated access to supply target URLs that the console pod fetches without validation, including path neutralization that enables arbitrary endpoint targeting and full response reflection. This occurs because the console pod has privileged network access, which can be abused to reach internal or restricted endpoints. Red Hat has released updated container images and RPM packages in OpenShift Container Platform 4.18.53 to address this issue. The advisory recommends applying NetworkPolicy egress restrictions to the openshift-console namespace to restrict outbound traffic to only necessary endpoints such as the Kubernetes API server, OAuth server, and monitoring services. Monitoring console access logs for unusual POST requests to webhook paths is also advised. The vulnerability is tracked under CWE-918 (Server-Side Request Forgery) and has a Red Hat CVSS v3 score of 7.4 (Important).

Potential Impact

The vulnerability allows an authenticated user to perform SSRF attacks from the console pod, which has privileged network access. This can lead to unauthorized access to internal endpoints, bypassing network access controls such as firewalls. The attacker can cause the console pod to fetch arbitrary URLs and reflect full responses, potentially exposing sensitive data or enabling further attacks within the internal network. The impact is rated as low confidentiality, integrity, and availability impact but the scope is changed due to the privileged network position of the console pod.

Mitigation Recommendations

Red Hat has released OpenShift Container Platform 4.18.53 which includes fixes for this vulnerability. Users should upgrade to this version using the official upgrade instructions provided by Red Hat. Additionally, apply NetworkPolicy egress restrictions to the openshift-console namespace to limit outbound connectivity of the console pod to only required endpoints such as the Kubernetes API server, OAuth server, and monitoring services. Avoid blanket default-deny egress policies as they may break console functionality. Monitor console access logs for unusual POST requests to /api/dev-console/webhooks/ paths with non-standard hostName values pointing to internal addresses or containing query separators. Follow Red Hat's official advisories and documentation for detailed guidance.

Pro Console: star threats, build custom feeds, automate alerts via Slack, email & webhooks.Upgrade to Pro

Technical Details

Gcve Source
db.gcve.eu
Csaf Category
csaf_security_advisory
Csaf Version
2.0
Publisher
Red Hat Product Security
Advisory Id
RHSA-2026:54545
Cve Count
2
Additional Cves
["CVE-2026-50237"]
State
PUBLISHED

Threat ID: 6a8af99cacd9273b49f32da7

Added to database: 08/23/2026, 13:46:04 UTC

Last enriched: 09/08/2026, 14:08:40 UTC

Last updated: 10/07/2026, 06:48:17 UTC

Views: 93

Community Reviews

0 reviews

Crowdsource mitigation strategies, share intel context, and vote on the most helpful responses. Sign in to add your voice and help keep defenders ahead.

Sort by
Loading community insights…

Want to contribute mitigation steps or threat intel context? Sign in or create an account to join the community discussion.

Need more coverage?

Upgrade to Pro Console for AI refresh and higher limits.

For incident response and remediation, OffSeq services can help resolve threats faster.

Latest Threats

Breach by OffSeqOFFSEQFRIENDS — 25% OFF

Check if your credentials are on the dark web

Instant breach scanning across billions of leaked records. Free tier available.

Scan now
OffSeq TrainingCredly Certified

Lead Pen Test Professional

Technical5-day eLearningPECB Accredited
View courses