product of redhat

jboss enterprise application platform

13 thingsrelated by NVD
Severity
Exploited

Being told

Watch: its feed Ask more of it

The feed says each thing that enters, leaves or changes; a reader adds its address, /zetlyn/trackers/cve/things.atom?q=…, to theirs.

Every thing

undertow: Undertow: Request Smuggling via Malformed HTTP Request Headers
CVE-2026-28369
Severity critical
undertow: Undertow: Request smuggling via inconsistent header parsing
CVE-2026-28368
Severity critical
undertow: Undertow: Request smuggling via `\r\r\r` as a header block terminator
CVE-2026-28367
Severity critical
org.keycloak/keycloak-services: Improper Enforcement of Disabled Identity Provider in IdentityBrokerService (Authentication Bypass)
CVE-2026-3009
Severity high
org.wildfly.core:wildfly-elytron-integration: Wildfly Elytron Brute Force Attack via CLI
CVE-2025-23368
Severity high
org.wildfly.core:wildfly-server: Wildfly improper RBAC permission
CVE-2025-23367
Severity medium
undertow-core: Undertow HTTP Server Fails to Reject Malformed Host Headers Leading to Potential Cache Poisoning and SSRF
CVE-2025-12543
Severity critical
undertow: Undertow MadeYouReset HTTP/2 DDoS Vulnerability
CVE-2025-9784
Severity high
A vulnerability was found in Undertow where the ProxyProtocolReadListener reuses the same StringBuilder instance across multiple requests…
CVE-2024-7885
Severity high
A vulnerability was found in Undertow. This vulnerability impacts a server that supports the wildfly-http-client protocol. Whenever a…
CVE-2024-1635
Severity high
A flaw was found in wildfly-core. A management user could use the resolve-expression in the HAL Interface to read possible sensitive…
CVE-2023-4061
Severity medium
Red Hat JBoss Information Disclosure Vulnerability
CVE-2010-1428
Severity high Exploited yes
Red Hat JBoss Authentication Bypass Vulnerability
CVE-2010-0738
Severity medium Exploited yes