Vulnerabilities
Aggregated CVE / GHSA / KEV / OSV — filter by tag and category.
| ID | Title | |
|---|---|---|
| CVE-2026-73196 |
|
Vulnerability in dos (CVE-2026-73196)
vulnerability in dos (CVE-2026-73196). Risk of unauthorized operations or information disclosure.
|
| CVE-2026-73197 |
|
A flaw was found in FreeIPA. A remote, unauthenticated attacker can exploit this vulnerability by...
A flaw was found in FreeIPA. A remote, unauthenticated attacker can exploit this vulnerability by...
|
| CVE-2026-73198 |
|
A flaw was found in FreeIPA. A remote, unauthenticated attacker can exploit a vulnerability in...
A flaw was found in FreeIPA. A remote, unauthenticated attacker can exploit a vulnerability in...
|
| CVE-2026-13097 |
|
Vulnerability in privilege-escalation (CVE-2026-13097)
vulnerability in privilege-escalation (CVE-2026-13097). Confidential information can be exposed externally.
|
| CVE-2026-11861 |
|
Vulnerability in freeipa (CVE-2026-11861)
vulnerability in freeipa (CVE-2026-11861). Confidential information can be exposed externally.
|
| CVE-2026-19550 |
|
Authorization Flaw in redhat (CVE-2026-19550)
vulnerability in redhat (CVE-2026-19550). Confidential information can be exposed externally.
|
| CVE-2017-11191 |
|
Vulnerability in freeipa (CVE-2017-11191)
vulnerability in freeipa (CVE-2017-11191). Successful exploitation can lead to full system takeover.
|
| CVE-2015-5284 |
|
Information Disclosure in freeipa (CVE-2015-5284)
vulnerability in freeipa (CVE-2015-5284). Successful exploitation can lead to full system takeover.
|
| CVE-2015-5179 |
|
FreeIPA might display user data improperly via vectors involving non-printable characters.
FreeIPA might display user data improperly via vectors involving non-printable characters.
|
| CVE-2016-7030 |
|
Vulnerability in dos (CVE-2016-7030)
vulnerability in dos (CVE-2016-7030). Risk of unauthorized operations or information disclosure.
|
| CVE-2016-5414 |
|
FreeIPA 4.4.0 allows remote attackers to request an arbitrary SAN name for services.
FreeIPA 4.4.0 allows remote attackers to request an arbitrary SAN name for services.
|