product of redhat

data grid

9 thingsrelated by NVD

Being told

Watch: its feed Ask more of it

The feed says each thing that enters, leaves or changes; a reader adds its address, /zetlyn/trackers/cve/things.atom?q=…, to theirs.

Every thing

axios: Axios: Information disclosure due to prototype pollution vulnerability
CVE-2026-44495
Severity high
undertow: Undertow: Request Smuggling via Malformed HTTP Request Headers
CVE-2026-28369
Severity critical
undertow: Undertow: Request smuggling via inconsistent header parsing
CVE-2026-28368
Severity critical
undertow: Undertow: Request smuggling via `\r\r\r` as a header block terminator
CVE-2026-28367
Severity critical
keycloak-services: keycloak-services: Required signed-JWT assertion policy can be bypassed with unsigned assertion headers
CVE-2026-16093
Severity medium
keycloak-services: keycloak-services: Group hierarchy search discloses hidden parent groups under FGAP v2
CVE-2026-15945
Severity medium
org.wildfly.core:wildfly-elytron-integration: Wildfly Elytron Brute Force Attack via CLI
CVE-2025-23368
Severity high
undertow-core: Undertow HTTP Server Fails to Reject Malformed Host Headers Leading to Potential Cache Poisoning and SSRF
CVE-2025-12543
Severity critical
A vulnerability was found in Undertow where the ProxyProtocolReadListener reuses the same StringBuilder instance across multiple requests…
CVE-2024-7885
Severity high