Threats Tagged 'cve-2025-61726'
View all threats tagged with 'cve-2025-61726'. Filter and sort to focus on specific types of threats.
Stop chasing alerts. Route them.
Start free, then upgrade once to turn Radar into an automated delivery engine for your security stack.
Custom feeds / Automations: email, Slack, webhooks, SIEM/MISP / API access (baseline limits)
API access activates after upgrading in Console -> Billing.
Check if your credentials are on the dark web
Instant breach scanning across billions of leaked records. Free tier available.
Filter Threats
Narrow down the results by type, severity, or affected countries
Threats Tagged 'cve-2025-61726'
Click on any threat for detailed analysis and mitigation recommendations
Red Hat Security Advisory: OpenShift Container Platform 4.15.62 packages and security updateCVE-2025-58183 0 Red Hat OpenShift Container Platform is Red Hat's cloud computing Kubernetes application platform solution designed for on-premise or private cloud deployments. This advisory contains the RPM packages for Red Hat OpenShift Container Platform 4.15.62. See the following advisory for the container images for this release: https://access.redhat.com/errata/RHSA-2026:4423 Security Fix(es): * golang: archive/tar: Unbounded allocation when parsing GNU sparse map (CVE-2025-58183) * github.com/sirupsen/logrus: github.com/sirupsen/logrus: Denial-of-Service due to large single-line payload (CVE-2025-65637) For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section. All OpenShift Container Platform 4.15 users are advised to upgrade to these updated packages and images when they are available in the appropriate release channel. To check for available updates, use the OpenShift CLI (oc) or web console. Instructions for upgrading a cluster are available at https://docs.redhat.com/en/documentation/openshift_container_platform/4.15/html-single/updating_clusters/index#updating-cluster-cli. Join the discussion | GCVE Database | 03/19/2026, 05:59:29 UTC Added: 05/26/2026, 20:58:30 UTC |
Red Hat Security Advisory: Kiali 1.73.25 for Red Hat OpenShift Service Mesh 2.6CVE-2025-12816 0 Kiali 1.73.25, for Red Hat OpenShift Service Mesh 2.6, provides observability for the service mesh by offering a visual representation of the mesh topology and metrics, helping users monitor, trace, and manage efficiently Security Fix(es): * kiali-ossmc-rhel9: node-forge ASN.1 Unbounded Recursion (CVE-2025-66031) * kiali-rhel9: node-forge ASN.1 Unbounded Recursion (CVE-2025-66031) * kiali-ossmc-rhel9: glob CLI: Command injection via -c/--cmd executes matches with shell:true (CVE-2025-64756) * kiali-rhel9: glob CLI: Command injection via -c/--cmd executes matches with shell:true (CVE-2025-64756) Join the discussion | GCVE Database | 12/09/2025, 14:58:58 UTC Added: 05/26/2026, 20:58:28 UTC |
Red Hat Security Advisory: Red Hat OpenShift Service Mesh 3.1.5CVE-2025-58183 0 Red Hat OpenShift Service Mesh 3.1.5, which is based on the open source Istio project, addresses a variety of problems in a microservice architecture by creating a centralized point of control in an application. Fixes/Improvements: * Updated to Istio version 1.26.8 * OCSP Memory Leak Check BSSL-Compatability Security Fix(es): * istio-rhel9-operator: Excessive resource consumption when printing error string for host certificate validation in crypto/x509 (CVE-2025-61729) * istio-pilot-rhel9: Excessive resource consumption when printing error string for host certificate validation in crypto/x509 (CVE-2025-61729) * istio-cni-rhel9: Excessive resource consumption when printing error string for host certificate validation in crypto/x509 (CVE-2025-61729) * istio-cni-rhel9: Unbounded allocation when parsing GNU sparse map (CVE-2025-58183) Join the discussion | GCVE Database | 02/23/2026, 17:24:11 UTC Added: 05/26/2026, 20:58:24 UTC |
Red Hat Security Advisory: Red Hat Developer Hub 1.7.4 release.CVE-2025-12816 0 Red Hat Developer Hub (RHDH) is Red Hat's enterprise-grade, self-managed, customizable developer portal based on Backstage.io. RHDH is supported on OpenShift and other major Kubernetes clusters (AKS, EKS, GKE). The core features of RHDH include a single pane of glass, a centralized software catalog, self-service via golden path templates, and Tech Docs. RHDH is extensible by plugins. Join the discussion | GCVE Database | 01/07/2026, 18:34:52 UTC Added: 05/26/2026, 20:58:24 UTC |
Red Hat Security Advisory: RHACS 4.9.3 security and bug fix updateCVE-2025-12816 0 See the release notes (link in the references section) for a description of the fixes and enhancements in this particular release. Join the discussion | GCVE Database | 02/09/2026, 15:50:42 UTC Added: 05/26/2026, 20:58:23 UTC |
Red Hat Security Advisory: Red Hat OpenShift Pipelines Release 1.20.3CVE-2025-12816 0 The 1.20.3 release of Red Hat OpenShift Pipelines Operator. Join the discussion | GCVE Database | 03/05/2026, 07:08:51 UTC Added: 05/26/2026, 20:58:23 UTC |
Red Hat Security Advisory: Red Hat Openshift Mirror Registry v2.0.11CVE-2025-61726 0 Openshift Mirror Registry v2.0.11 Join the discussion | GCVE Database | 06/23/2026, 17:33:12 UTC Added: 05/26/2026, 20:58:21 UTC |
Red Hat Security Advisory: OpenShift Container Platform 4.12.88 bug fix and security updateCVE-2025-61726 0 Red Hat OpenShift Container Platform is Red Hat's cloud computing Kubernetes application platform solution designed for on-premise or private cloud deployments. This advisory contains the container images for Red Hat OpenShift Container Platform 4.12.88. See the following advisory for the RPM packages for this release: https://access.redhat.com/errata/RHSA-2026:12273 Space precludes documenting all of the container images in this advisory. See the following Release Notes documentation, which will be updated shortly for this release, for details about these changes: https://docs.redhat.com/en/documentation/openshift_container_platform/4.12/html/release_notes Join the discussion | GCVE Database | 05/06/2026, 13:32:35 UTC Added: 05/26/2026, 20:58:20 UTC |
Red Hat Security Advisory: buildah security updateCVE-2025-47913 0 The buildah package provides a tool for facilitating building OCI container images. Among other things, buildah enables you to: Create a working container, either from scratch or using an image as a starting point; Create an image, either from a working container or using the instructions in a Dockerfile; Build both Docker and OCI images. Security Fix(es): * golang.org/x/crypto/ssh/agent: golang.org/x/crypto/ssh/agent: SSH client panic due to unexpected SSH_AGENT_SUCCESS (CVE-2025-47913) * crypto/x509: golang: Denial of Service due to excessive resource consumption via crafted certificate (CVE-2025-61729) * golang: net/url: Memory exhaustion in query parameter parsing in net/url (CVE-2025-61726) * crypto/tls: Unexpected session resumption in crypto/tls (CVE-2025-68121) * net/url: Incorrect parsing of IPv6 host literals in net/url (CVE-2026-25679) * crypto/tls: golang: Go crypto/tls: Denial of Service via multiple TLS 1.3 key update messages (CVE-2026-32283) For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section. Join the discussion | GCVE Database | 05/11/2026, 22:53:25 UTC Added: 05/26/2026, 20:58:20 UTC |
Red Hat Security Advisory: gvisor-tap-vsock security updateCVE-2025-61726 0 A replacement for libslirp and VPNKit, written in pure Go. It is based on the network stack of gVisor. Compared to libslirp, gvisor-tap-vsock brings a configurable DNS server and dynamic port forwarding. Security Fix(es): * crypto/x509: golang: Denial of Service due to excessive resource consumption via crafted certificate (CVE-2025-61729) * golang: net/url: Memory exhaustion in query parameter parsing in net/url (CVE-2025-61726) * crypto/tls: Unexpected session resumption in crypto/tls (CVE-2025-68121) * net/url: Incorrect parsing of IPv6 host literals in net/url (CVE-2026-25679) * golang: internal/syscall/unix: Root.Chmod can follow symlinks out of the root (CVE-2026-32282) * crypto/tls: golang: Go crypto/tls: Denial of Service via multiple TLS 1.3 key update messages (CVE-2026-32283) * crypto/x509: crypto/tls: golang: Go: Denial of Service vulnerability in certificate chain building (CVE-2026-32280) For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section. Join the discussion | GCVE Database | 05/13/2026, 15:39:24 UTC Added: 05/26/2026, 20:58:20 UTC |
Showing 1 to 10 of 82 results