CVE Tools

Red Hat Openshift Container Platform 4

324 CVEs tracked. None of them is in CISA KEV.

This hub aggregates every CVE we track for Red Hat Openshift Container Platform 4, a product in the cloud saas space. Use it to gauge the current risk picture and drill into individual advisories.

Red Hat Openshift Container Platform 4 CVEs per month

Oct 2024 to Sep 2026. Point at a month, or focus the strip and use the arrow keys.
Red Hat Openshift Container Platform 4 CVEs per month
MonthCVEs
2024-105
2024-117
2024-122
2025-019
2025-0216
2025-0312
2025-042
2025-056
2025-0613
2025-0714
2025-084
2025-094
2025-106
2025-118
2025-124
2026-016
2026-027
2026-0317
2026-0421
2026-0518
2026-0625
2026-0731
2026-0829
2026-0939

Severity

How the 324 CVEs score on CVSS. Severity is not exploitation: KEV is counted above.

  • Critical93%
  • High11435%
  • Medium17052%
  • Low3110%

Latest CVEs

The 15 most recently published vulnerabilities affecting Red Hat Openshift Container Platform 4.

  1. CVE-2026-93834Qemu-kvm: 9pfs: use-after-free race in tlcreate/twalk allows vm guest escape8.8
  2. CVE-2026-75887Openshift/console: openshift/console: unauthenticated path traversal in i18n locale handler7.5
  3. CVE-2026-75886Openshift/console: openshift/console: unauthenticated reverse proxy to in-cluster catalogd service with session token forwarding7.2
  4. CVE-2026-90462Sssd: sssd: fail-open in ldap ppolicy access check allows continued authorization5.4
  5. CVE-2026-94640Rpcbind: unbounded memory allocation in rpcbind statistics tracking allows unauthenticated remote denial of service7.5
  6. CVE-2026-95619Gcc: libstdc++ integer overflow in `new` operator7.7
  7. CVE-2026-95508Libslirp: libslirp: heap buffer overflow in dhcpv6/tftp response builders on small interface mtu7.4
  8. CVE-2026-75939Openshift/oc-mirror: release signature verification: openpgp signatureerror checked before signed body is consumed7.4
  9. CVE-2026-92574Cri-o: cri-o checkpoint restore bypasses destination security context8.8
  10. CVE-2026-15801Cri-o: cri-o: insufficient validation during container checkpoint restore8.0
  11. CVE-2026-75885Openshift/console: openshift/console: unauthenticated ssrf and resource exhaustion via devfile parser endpoint9.3
  12. CVE-2026-81627Qemu-kvm: vapic writable rom alias can escape the option-rom window and expose locked smram8.2
  13. CVE-2026-76781Libxml2: libxml2: null pointer dereference parsing nextcatalog without catalog attribute5.5
  14. CVE-2026-42784Sequoia-openpgp: sequoia-openpgp: cryptographic integrity compromise via key flag confusion7.4
  15. CVE-2025-11395Podman: arbitrary file write when importing oci archive5.5

Product grouping is registry-driven, with AI assist and human review. How it works

We use analytics cookies to see which pages and articles actually help people. Decline and none of them run — the site works the same. What we store