#Red Hat
Red Hat Satellite Authorization Flaw Can Expose Root Passwords and Enable Code Execution
Red Hat has patched a CVSS 9.1 authorization flaw in Satellite's Foreman component that lets low-privileged users view protected host data, potentially including root passwords. Unsafe Safemode configurations...
Red Hat Patches Kubernetes Flaw That Let Developers Seize Full Cluster-Admin Rights
A critical privilege escalation vulnerability in Red Hat Advanced Cluster Management, tracked as CVE-2026-10090 and rated 9.9 in severity, allowed any user with basic namespace-level edit permissions to...
Critical Supply Chain Attack: 31 Red Hat Cloud Services npm Packages Backdoored to Steal Cloud and Dev Credentials
A sophisticated supply chain attack dubbed "Miasma: The Spreading Blight" has backdoored over 30 official @redhat-cloud-services npm packages, deploying credential-stealing malware that targets AWS, Azure, GCP secrets, GitHub...