Red Hat / Ansible Inside
9 CVEs
| CVE ID | Description | Severity | CVSS | Published |
|---|---|---|---|---|
| CVE-2025-9909 | Aap-gateway: improper path validation in gateway allows credential exfiltration | MEDIUM | 6.7 | Feb 27, 2026 |
| CVE-2025-9908 | Event-driven-ansible: sensitive internal headers disclosure in aap eda event streams | MEDIUM | 6.7 | Feb 27, 2026 |
| CVE-2025-9907 | Event-driven-ansible: event stream test mode exposes sensitive headers in aap eda | MEDIUM | 6.7 | Feb 27, 2026 |
| CVE-2024-10033 | Aap-gateway: xss on aap-gateway | MEDIUM | 6.1 | Oct 16, 2024 |
| CVE-2024-0690 | Ansible-core: possible information leak in tasks that ignore ansible_no_log configuration | MEDIUM | 5.5 | Feb 6, 2024 |
| CVE-2023-5115 | Ansible: malicious role archive can cause ansible-galaxy to overwrite arbitrary files | MEDIUM | 6.3 | Dec 18, 2023 |
| CVE-2023-5764 | Ansible: template injection | HIGH | 7.8 | Dec 12, 2023 |
| CVE-2023-3971 | Controller: html injection in custom login info | HIGH | 7.3 | Oct 4, 2023 |
| CVE-2023-4380 | Platform: token exposed at importing project | MEDIUM | 6.3 | Oct 4, 2023 |
Showing 1 to 9 of 9 CVEs