Red Hat Migration Toolkit For Containers
16 CVEs tracked. None of them is in CISA KEV.
This hub aggregates every CVE we track for Red Hat Migration Toolkit For Containers, a product in the operating systems space. Use it to gauge the current risk picture and drill into individual advisories.
Red Hat Migration Toolkit For Containers CVEs per month
| Month | CVEs |
|---|---|
| 2024-10 | 0 |
| 2024-11 | 0 |
| 2024-12 | 0 |
| 2025-01 | 0 |
| 2025-02 | 0 |
| 2025-03 | 0 |
| 2025-04 | 0 |
| 2025-05 | 0 |
| 2025-06 | 0 |
| 2025-07 | 0 |
| 2025-08 | 0 |
| 2025-09 | 0 |
| 2025-10 | 0 |
| 2025-11 | 0 |
| 2025-12 | 0 |
| 2026-01 | 0 |
| 2026-02 | 0 |
| 2026-03 | 0 |
| 2026-04 | 0 |
| 2026-05 | 0 |
| 2026-06 | 0 |
| 2026-07 | 0 |
| 2026-08 | 0 |
| 2026-09 | 0 |
Severity
How the 16 CVEs score on CVSS. Severity is not exploitation: KEV is counted above.
- Critical1
- High9
- Medium5
- Low1
Latest CVEs
The 15 most recently published vulnerabilities affecting Red Hat Migration Toolkit For Containers.
- CVE-2024-3727Containers/image: digest type does not guarantee valid type8.3
- CVE-2023-26159Versions of the package follow-redirects before 1.15.4 are vulnerable to Improper Input Validation due to the improper handling of URLs by the url.parse() function. When new URL() throws an error, ...7.3
- CVE-2023-4039GCC's-fstack-protector fails to guard dynamically-sized local variables on AArch644.8
- CVE-2023-3978Improper rendering of text nodes in golang.org/x/net/html6.1
- CVE-2023-24539Improper sanitization of CSS values in html/template7.3
- CVE-2023-24540Improper handling of JavaScript whitespace in html/template9.8
- CVE-2023-24537Infinite loop in parsing in go/scanner7.5
- CVE-2022-41723Denial of service via crafted HTTP/2 stream in net/http and golang.org/x/net7.5
- CVE-2022-41725Excessive resource consumption in mime/multipart7.5
- CVE-2022-46175JSON5 is an extension to the popular JSON file format that aims to be easier to write and maintain by hand (e.g. for config files). The `parse` method of the JSON5 library before and including vers...7.1
- CVE-2022-29526Go before 1.17.10 and 1.18.x before 1.18.2 has Incorrect Privilege Assignment. When called with a non-zero flags parameter, the Faccessat function could incorrectly report that a file is accessible.5.3
- CVE-2022-1365Exposure of Private Personal Information to an Unauthorized Actor in lquixada/cross-fetch6.5
- CVE-2022-27191The golang.org/x/crypto/ssh package before 0.0.0-20220314234659-1baeb1ce4c0b for Go allows an attacker to crash a server in certain circumstances involving AddHostKey.7.5
- CVE-2022-23772Rat.SetString in math/big in Go before 1.16.14 and 1.17.x before 1.17.7 has an overflow that can lead to Uncontrolled Memory Consumption.7.5
- CVE-2021-41190Clarify Content-Type handling in OCI spec3.0
Product grouping is registry-driven, with AI assist and human review. How it works