Threats Tagged 'cve-2026-42284'
View all threats tagged with 'cve-2026-42284'. Filter and sort to focus on specific types of threats.
Stop chasing alerts. Route them.
Start free, then upgrade once to turn Radar into an automated delivery engine for your security stack.
Custom feeds / Automations: email, Slack, webhooks, SIEM/MISP / API access (baseline limits)
API access activates after upgrading in Console -> Billing.
Check if your credentials are on the dark web
Instant breach scanning across billions of leaked records. Free tier available.
Filter Threats
Narrow down the results by type, severity, or affected countries
Threats Tagged 'cve-2026-42284'
Click on any threat for detailed analysis and mitigation recommendations
0 Red Hat Satellite 6.19.0 through 6.19.4 for RHEL 9 contains multiple security vulnerabilities affecting components such as ansible-core, openvox-server, puppetserver, rubygem-jwt, python-aiohttp, and python-gitpython. These vulnerabilities include arbitrary code execution, authentication bypass, denial of service, HTTP request smuggling, information disclosure, and arbitrary file overwrite. Red Hat has released an update (6.19.4 Async Update) addressing these issues. Join the discussion | GCVE Database | 09/03/2026, 23:00:57 UTC Added: 09/04/2026, 14:25:19 UTC |
0 Red Hat Ansible Automation Platform provides an enterprise framework for building, deploying and managing IT automation at scale. IT Managers can provide top-down guidelines on how automation is applied to individual teams, while automation developers retain the freedom to write tasks that leverage existing knowledge without the overhead. Ansible Automation Platform makes it possible for users across an organization to share, vet, and manage automation content by means of a simple, powerful, and agentless language. For details about this release, refer to the release notes listed in the References section. Join the discussion | GCVE Database | 07/20/2026, 17:41:32 UTC Added: 07/02/2026, 22:57:40 UTC |
CVE-2026-42284 is a high-severity vulnerability in GitPython prior to version 3.1.47. It involves improper neutralization of argument delimiters in the _clone() function, allowing crafted multi_options strings to bypass validation and inject additional Git command arguments. This can lead to execution of attacker-controlled Git hooks during repository cloning. The issue has been fixed in GitPython version 3.1.47. Join the discussion | CVE Database V5 | 05/07/2026, 18:19:20 UTC Added: 05/07/2026, 18:51:25 UTC |
Showing 1 to 3 of 3 results