Skip to main content
Press slash or control plus K to focus the search. Use the arrow keys to navigate results and press enter to open a threat.

Threats Tagged 'cve-2026-35030'

View all threats tagged with 'cve-2026-35030'. Filter and sort to focus on specific types of threats.

Pro Console Lifetime

Stop chasing alerts. Route them.

Start free, then upgrade once to turn Radar into an automated delivery engine for your security stack.

Custom feeds / Automations: email, Slack, webhooks, SIEM/MISP / API access (baseline limits)

View Plans & Pricing

API access activates after upgrading in Console -> Billing.

Breach by OffSeqOFFSEQFRIENDS — 25% OFF

Check if your credentials are on the dark web

Instant breach scanning across billions of leaked records. Free tier available.

Scan now

Filter Threats

Narrow down the results by type, severity, or affected countries

Search threats by title, CVE ID, or description. Maximum 100 characters.
Active filters (1):Tag: cve-2026-35030

Threats Tagged 'cve-2026-35030'

Click on any threat for detailed analysis and mitigation recommendations

Red Hat Security Advisory: Red Hat Ansible Automation Platform 2.6 Container Release UpdateCVE-2025-68121
0

Red Hat has issued a security advisory for Red Hat Ansible Automation Platform 2. 6 container release update addressing multiple vulnerabilities. The update includes fixes for a total of 24 CVEs affecting the platform, which provides an enterprise framework for IT automation. The advisory emphasizes applying all previously released errata before this update. No known exploits are reported in the wild. The vulnerabilities cover a broad range of weaknesses as indicated by multiple CWE identifiers. The update is classified with high severity.

Join the discussion
Red Hat Security Advisory: osbuild-composer security updateCVE-2025-68121
0

The Red Hat Trusted Artifact Signer (RHTAS) Operator version 1. 3. 4 is associated with multiple vulnerabilities, including CVE-2025-68121 and seven others. It is designed for use with OpenShift Container Platform versions 4. 16 through 4. 21 to facilitate cryptographic signing and verification of software artifacts. The advisory does not specify any fixes or patches for these vulnerabilities. No known exploits are reported in the wild. The vulnerabilities have been classified with a high severity level by the source, but no CVSS score is provided.

Join the discussion
CVE-2026-35030: CWE-287: Improper Authentication in BerriAI litellmCVE-2026-35030
0

CVE-2026-35030 is a critical improper authentication vulnerability in BerriAI's LiteLLM proxy server versions prior to 1. 83. 0 when JWT authentication is enabled. The vulnerability arises because the OIDC userinfo cache uses only the first 20 characters of the JWT token as the cache key. Since JWT headers generated by the same signing algorithm share identical first 20 characters, an attacker can craft a token that matches a legitimate user's cache key, thereby inheriting that user's identity and permissions. This issue affects only deployments with JWT/OIDC authentication enabled, which is not the default configuration. The vulnerability is fixed in version 1. 83. 0.

Join the discussion

Showing 1 to 3 of 3 results

Filters:Tag: cve-2026-35030
Page 1 of 1
OffSeq TrainingCredly Certified

Lead Pen Test Professional

Technical5-day eLearningPECB Accredited
View courses