Skip to main content
Press slash or control plus K to focus the search. Use the arrow keys to navigate results and press enter to open a threat.
Reconnecting to live updates…

Red Hat Security Advisory: Red Hat Web Terminal Operator 1.11.1 release.

0
High
Published: Mon Feb 09 2026 (02/09/2026, 18:49:52 UTC)
Source: GCVE Database
Vendor/Project: Red Hat Product Security
Product: Red Hat

Description

CVE-2025-61729 is a high severity vulnerability associated with the Red Hat Web Terminal Operator 1. 11. 1, which provides an in-browser terminal emulator within the OpenShift Console. The advisory describes the product and its usage but does not specify any fixes or patches for this vulnerability. The vendor advisory does not confirm the availability of a patch or provide mitigation steps, only recommending installation of the Web Terminal Operator from OpenShift OperatorHub on supported OpenShift Container Platform versions. No known exploits in the wild have been reported. The vulnerability is categorized under CWE-1050. No CVSS score is provided, but the severity is marked as high by the source.

AI-Powered Analysis

Machine-generated threat intelligence

AILast updated: 05/26/2026, 21:52:18 UTC

Technical Analysis

The Red Hat Web Terminal Operator enables access to a fully in-browser terminal emulator pre-installed with command-line tools for OpenShift clusters. CVE-2025-61729 is a vulnerability affecting this operator, classified as high severity. The Red Hat advisory (RHSA-2026:2367) announces the release of version 1.11.1 but does not explicitly state that this release fixes the vulnerability. No patch or official fix details are provided in the advisory. The vulnerability is identified with CWE-1050, but no further technical exploitation details or impact specifics are given. The advisory recommends installing the Web Terminal Operator from OpenShift OperatorHub on OpenShift Container Platform 4.16 or higher, but this is presented as general usage guidance rather than a direct remediation for the vulnerability.

Potential Impact

The impact is classified as high severity, indicating a significant security concern related to the Red Hat Web Terminal Operator. However, the exact nature of the impact is not detailed in the advisory or CVE description. There are no known exploits in the wild reported at this time. Without explicit details on the vulnerability's effect, the potential impact could involve unauthorized access or misuse of the in-browser terminal capabilities, but this is not confirmed by the provided data.

Mitigation Recommendations

Patch status is not yet confirmed — check the vendor advisory for current remediation guidance. The Red Hat advisory does not provide a specific fix or patch for CVE-2025-61729. Users are advised to install the Web Terminal Operator from OpenShift OperatorHub on OpenShift Container Platform 4.16 or higher as per the advisory, but this is not explicitly stated as a remediation for the vulnerability. Monitor Red Hat's official security advisories for updates or patches addressing this issue.

Pro Console: star threats, build custom feeds, automate alerts via Slack, email & webhooks.Upgrade to Pro

Technical Details

Gcve Source
db.gcve.eu
Csaf Category
csaf_security_advisory
Csaf Version
2.0
Publisher
Red Hat Product Security
Advisory Id
RHSA-2026:2367
Cve Count
1
Additional Cves
[]
Cvss Version
null

Threat ID: 6a160971e29bf47b50638df9

Added to database: 5/26/2026, 8:58:25 PM

Last enriched: 5/26/2026, 9:52:18 PM

Last updated: 5/27/2026, 4:53:46 AM

Views: 2

Community Reviews

0 reviews

Crowdsource mitigation strategies, share intel context, and vote on the most helpful responses. Sign in to add your voice and help keep defenders ahead.

Sort by
Loading community insights…

Want to contribute mitigation steps or threat intel context? Sign in or create an account to join the community discussion.

Actions

PRO

Updates to AI analysis require Pro Console access. Upgrade inside Console → Billing.

Please log in to the Console to use AI analysis features.

Need more coverage?

Upgrade to Pro Console for AI refresh and higher limits.

For incident response and remediation, OffSeq services can help resolve threats faster.

Latest Threats

Breach by OffSeqOFFSEQFRIENDS — 25% OFF

Check if your credentials are on the dark web

Instant breach scanning across billions of leaked records. Free tier available.

Scan now
OffSeq TrainingCredly Certified

Lead Pen Test Professional

Technical5-day eLearningPECB Accredited
View courses