Share of each bar's KEVs linked to ransomware. Thresholds track the catalog average of 20.9%, so they stay meaningful as it grows. Bars under 5 KEVs are left uncoloured — too few to rate a share.
Share of each bar's KEVs linked to ransomware. Thresholds track the catalog average of 20.9%, so they stay meaningful as it grows. Bars under 5 KEVs are left uncoloured — too few to rate a share.
| CVE | Vendor | Product | Vulnerability | CVSS | Added | Due per BOD 22-01 | Ransomware |
|---|---|---|---|---|---|---|---|
| CVE-2015-5287 | Red Hat | Automatic Bug Reporting Tool | Red Hat Automatic Bug Reporting Tool Privilege Escalation Vulnerability Red Hat Automatic Bug Reporting Tool (ABRT) contains a privilege escalation vulnerability that could allow local users with certain permissions to gain privileges via a symlink attack on a file with a predictable name. The impacted product(s) could be end-of-life (EoL) and/or end-of-service (EoS). Users are advised to discontinue use and/or transition to a supported version. | 7.8 CISA | 2026-08-26 | 2026-09-09 | Unknown |
| CVE-2015-3246 | Red Hat | Libuser | Red Hat Libuser Race Condition Vulnerability Red Hat libuser contains a race condition vulnerability that allows authenticated local users to corrupt the /etc/passwd file to cause a denial of service or privilege escalation. | 5.1 CISA | 2026-08-26 | 2026-09-09 | Unknown |
| CVE-2018-14667 | Red Hat | JBoss RichFaces Framework | Red Hat JBoss RichFaces Framework Expression Language Injection Vulnerability Red Hat JBoss RichFaces Framework contains an expression language injection vulnerability via the UserResource resource. A remote, unauthenticated attacker could exploit this vulnerability to execute malicious code using a chain of Java serialized objects via org.ajax4jsf.resource.UserResource$UriData. | 9.8 CNA | 2023-09-28 | 2023-10-19 | Unknown |
| CVE-2021-3560 | Red Hat | Polkit | Red Hat Polkit Incorrect Authorization Vulnerability Red Hat Polkit contains an incorrect authorization vulnerability through the bypassing of credential checks for D-Bus requests, allowing for privilege escalation. | 7.8 CISA | 2023-05-12 | 2023-06-02 | Unknown |
| CVE-2021-4034 | Red Hat | Polkit | Red Hat Polkit Out-of-Bounds Read and Write Vulnerability The Red Hat polkit pkexec utility contains an out-of-bounds read and write vulnerability that allows for privilege escalation with administrative rights. | 7.8 CISA | 2022-06-27 | 2022-07-18 | Known |
| CVE-2010-0738 | Red Hat | JBoss | Red Hat JBoss Authentication Bypass Vulnerability The JMX-Console web application in JBossAs in Red Hat JBoss Enterprise Application Platform performs access control only for the GET and POST methods, which allows remote attackers to send requests to this application's GET handler by using a different method. | 5.3 CISA | 2022-05-25 | 2022-06-15 | Known |
| CVE-2010-1428 | Red Hat | JBoss | Red Hat JBoss Information Disclosure Vulnerability Unauthenticated access to the JBoss Application Server Web Console (/web-console) is blocked by default. However, it was found that this block was incomplete, and only blocked GET and POST HTTP verbs. A remote attacker could use this flaw to gain access to sensitive information. | 7.5 CISA | 2022-05-25 | 2022-06-15 | Known |
| CVE-2010-1871 | Red Hat | JBoss Seam 2 | Red Hat Linux JBoss Seam 2 Remote Code Execution Vulnerability JBoss Seam 2 (jboss-seam2), as used in JBoss Enterprise Application Platform 4.3.0 for Red Hat Linux, allows attackers to perform remote code execution. This vulnerability can only be exploited when the Java Security Manager is not properly configured. | 8.8 CISA | 2021-12-10 | 2022-06-10 | Unknown |
| CVE-2017-12149 | Red Hat | JBoss Application Server | Red Hat JBoss Application Server Remote Code Execution Vulnerability The JBoss Application Server, shipped with Red Hat Enterprise Application Platform 5.2, allows an attacker to execute arbitrary code via crafted serialized data. | 9.8 CISA | 2021-12-10 | 2022-06-10 | Known |