Vulnerability Reportconfluentinc/cp-kafka:8.1.3

confluentinc/cp-kafka:8.1.3confluentinc/cp-kafka:8.1.3-1-ubi9
DIGESTsha256:162efbbc27f70245778b2fc4d2ed74581abf4b9b505c84a0769a61d305fc1d1d

Executive Summary

Threat Score
50/100CAUTION
Reputation
RELIABLE

This image carries significant risk; production deployment is highly discouraged without strict compensating controls. The most impactful vulnerability, CVE-2026-42010, could allow authentication bypass, but only if the RSA-PSK ciphersuite is explicitly enabled in Kafka's TLS configuration, which is not the default. Most other top findings are denial-of-service vectors (e.g., CVE-2026-34183 affecting OpenSSL QUIC, CVE-2026-45186 in libexpat) that could disrupt availability but require specific attack conditions. Mitigating controls include disabling QUIC support in OpenSSL and ensuring the Kafka broker is not exposed to untrusted networks. The image has a high reputation and no critical-severity issues, but the sheer volume of vulnerabilities warrants caution.

Vulnerabilities

Vulnerability Log

259 total
CVE IDAdjusted SeverityPackageExploit ProbabilityRisk Context
CVE-2026-42010MEDIUM6.66
gnutls
3.8.3-10.el9_7
fixed in 3.8.10-4.el9_8
0.8%
Theoretical Threat
Directly ExposedContext importance: MEDIUM
CVE-2026-45186MEDIUM6.38
expat
2.5.0-5.el9_7.1
fixed in 2.5.0-6.el9_8.1
0.5%
Theoretical Threat
Directly Exposed
CVE-2026-42009MEDIUM6.38
gnutls
3.8.3-10.el9_7
fixed in 3.8.10-4.el9_8
0.8%
Theoretical Threat
Directly Exposed
CVE-2026-41989MEDIUM6.38
libgcrypt
1.10.0-11.el9
No fix yet
0.2%
Theoretical Threat
Directly Exposed
CVE-2026-6732MEDIUM6.38
libxml2
2.9.13-14.el9_7
No fix yet
0.6%
Theoretical Threat
Directly Exposed
CVE-2026-34183MEDIUM6.38
openssl-libs
1:3.5.1-7.el9_7
fixed in 1:3.5.5-4.el9_8
0.5%
Theoretical Threat
Directly Exposed
CVE-2026-3644MEDIUM6.38
python3-libs
3.9.25-3.el9_7.3
No fix yet
0.4%
Theoretical Threat
Directly Exposed
CVE-2026-4224MEDIUM6.38
python3-libs
3.9.25-3.el9_7.3
No fix yet
0.6%
Theoretical Threat
Directly Exposed
CVE-2026-7210MEDIUM6.38
python3-libs
3.9.25-3.el9_7.3
No fix yet
0.8%
Theoretical Threat
Directly Exposed
CVE-2026-34478MEDIUM6.38
org.apache.logging.log4j:log4j-core
2.25.3
fixed in 2.25.4
0.8%
Theoretical Threat
Directly Exposed
CVE-2026-34480MEDIUM6.38
org.apache.logging.log4j:log4j-core
2.25.3
fixed in 2.25.4
0.9%
Theoretical Threat
Directly Exposed
CVE-2026-3833MEDIUM6.29
gnutls
3.8.3-10.el9_7
fixed in 3.8.10-4.el9_8
0.3%
Theoretical Threat
Directly Exposed
CVE-2026-42011MEDIUM6.29
gnutls
3.8.3-10.el9_7
fixed in 3.8.10-4.el9_8
0.3%
Theoretical Threat
Directly Exposed
CVE-2026-34182MEDIUM6.29
openssl-libs
1:3.5.1-7.el9_7
fixed in 1:3.5.5-4.el9_8
0.2%
Theoretical Threat
Directly Exposed
CVE-2026-42012MEDIUM6.03
gnutls
3.8.3-10.el9_7
fixed in 3.8.10-4.el9_8
0.3%
Theoretical Threat
Directly Exposed
CVE-2026-4786MEDIUM6.03
python3-libs
3.9.25-3.el9_7.3
fixed in 3.9.25-7.el9_8
0.2%
Theoretical Threat
Directly Exposed
CVE-2026-2100MEDIUM6
p11-kit
0.25.3-3.el9_5
fixed in 0.26.2-1.el9
1.0%
Low-Moderate Risk
Directly ExposedContext importance: MEDIUM
CVE-2026-2100MEDIUM6
p11-kit-trust
0.25.3-3.el9_5
fixed in 0.26.2-1.el9
1.0%
Low-Moderate Risk
Directly ExposedContext importance: MEDIUM
CVE-2026-4878MEDIUM5.95
libcap
2.48-10.el9_7.1
fixed in 2.48-10.el9_8.1
0.2%
Theoretical Threat
Directly Exposed
CVE-2026-44604MEDIUM5.95
rpm-libs
4.16.1.3-39.el9
No fix yet
0.5%
Theoretical Threat
Directly Exposed
CVE-2025-13151MEDIUM5.9
libtasn1
4.16.0-9.el9
No fix yet
1.1%
Low-Moderate Risk
Directly Exposed
CVE-2024-41996MEDIUM5.9
openssl-libs
1:3.5.1-7.el9_7
No fix yet
1.1%
Low-Moderate Risk
Directly Exposed
CVE-2026-22185MEDIUM5.78
openldap
2.6.8-4.el9
No fix yet
0.1%
Theoretical Threat
Directly Exposed
CVE-2026-42014MEDIUM5.61
gnutls
3.8.3-10.el9_7
fixed in 3.8.10-4.el9_8
0.2%
Theoretical Threat
Directly Exposed
CVE-2025-5915MEDIUM5.61
libarchive
3.5.3-9.el9_7
No fix yet
0.2%
Theoretical Threat
Directly Exposed
CVE-2025-5918MEDIUM5.61
libarchive
3.5.3-9.el9_7
No fix yet
0.3%
Theoretical Threat
Directly Exposed
CVE-2026-42013MEDIUM5.58
gnutls
3.8.3-10.el9_7
fixed in 3.8.10-4.el9_8
0.4%
Theoretical Threat
Directly ExposedContext importance: MEDIUM
CVE-2026-5260MEDIUM5.58
gnutls
3.8.3-10.el9_7
fixed in 3.8.10-4.el9_8
0.7%
Theoretical Threat
Directly ExposedContext importance: MEDIUM
CVE-2025-14512MEDIUM5.52
glib2
2.68.4-18.el9_7.1
fixed in 2.68.4-19.el9_8.1
0.5%
Theoretical Threat
Directly Exposed
CVE-2026-4437MEDIUM5.52
glibc
2.34-231.el9_7.10
fixed in 2.34-270.el9_8
0.3%
Theoretical Threat
Directly Exposed
CVE-2026-4437MEDIUM5.52
glibc-common
2.34-231.el9_7.10
fixed in 2.34-270.el9_8
0.3%
Theoretical Threat
Directly Exposed
CVE-2026-4437MEDIUM5.52
glibc-minimal-langpack
2.34-231.el9_7.10
fixed in 2.34-270.el9_8
0.3%
Theoretical Threat
Directly Exposed
CVE-2026-4426MEDIUM5.52
libarchive
3.5.3-9.el9_7
No fix yet
0.3%
Theoretical Threat
Directly Exposed
CVE-2023-45322MEDIUM5.52
libxml2
2.9.13-14.el9_7
No fix yet
0.8%
Theoretical Threat
Directly Exposed
CVE-2026-2673MEDIUM5.52
openssl-fips-provider
3.0.7-8.el9
No fix yet
0.4%
Theoretical Threat
Directly Exposed
CVE-2026-2673MEDIUM5.52
openssl-fips-provider-so
3.0.7-8.el9
No fix yet
0.4%
Theoretical Threat
Directly Exposed
CVE-2026-2673MEDIUM5.52
openssl-libs
1:3.5.1-7.el9_7
No fix yet
0.4%
Theoretical Threat
Directly Exposed
CVE-2024-34459MEDIUM5.5
libxml2
2.9.13-14.el9_7
No fix yet
2.3%
Low-Moderate Risk
Directly Exposed
CVE-2026-34181MEDIUM5.35
openssl-libs
1:3.5.1-7.el9_7
fixed in 1:3.5.5-4.el9_8
0.2%
Theoretical Threat
Directly Exposed
CVE-2026-42768MEDIUM5.35
openssl-libs
1:3.5.1-7.el9_7
fixed in 1:3.5.5-4.el9_8
0.4%
Theoretical Threat
Directly Exposed
CVE-2026-1757MEDIUM5.27
libxml2
2.9.13-14.el9_7
No fix yet
0.2%
Theoretical Threat
Directly Exposed
CVE-2026-6019MEDIUM5.18
python3-libs
3.9.25-3.el9_7.3
No fix yet
0.2%
Theoretical Threat
Directly Exposed
CVE-2026-5713MEDIUM5.1
python3-libs
3.9.25-3.el9_7.3
No fix yet
0.1%
Theoretical Threat
Directly Exposed
CVE-2026-50219MEDIUM5.02
expat
2.5.0-5.el9_7.1
No fix yet
0.1%
Theoretical Threat
Directly Exposed
CVE-2026-5435MEDIUM5.02
glibc
2.34-231.el9_7.10
No fix yet
0.2%
Theoretical Threat
Directly Exposed
CVE-2026-5435MEDIUM5.02
glibc-common
2.34-231.el9_7.10
No fix yet
0.2%
Theoretical Threat
Directly Exposed
CVE-2026-5435MEDIUM5.02
glibc-minimal-langpack
2.34-231.el9_7.10
No fix yet
0.2%
Theoretical Threat
Directly Exposed
CVE-2026-40355MEDIUM5.02
krb5-libs
1.21.1-9.el9_7
fixed in 1.21.1-10.el9_8
0.5%
Theoretical Threat
Directly Exposed
CVE-2026-40356MEDIUM5.02
krb5-libs
1.21.1-9.el9_7
fixed in 1.21.1-10.el9_8
0.5%
Theoretical Threat
Directly Exposed
CVE-2026-0990MEDIUM5.02
libxml2
2.9.13-14.el9_7
No fix yet
0.7%
Theoretical Threat
Directly Exposed
CVE-2026-31790MEDIUM5.02
openssl-fips-provider
3.0.7-8.el9
No fix yet
1.0%
Theoretical Threat
Directly Exposed
CVE-2026-31790MEDIUM5.02
openssl-fips-provider-so
3.0.7-8.el9
No fix yet
1.0%
Theoretical Threat
Directly Exposed
CVE-2026-31790MEDIUM5.02
openssl-libs
1:3.5.1-7.el9_7
fixed in 1:3.5.5-2.el9_8
1.0%
Theoretical Threat
Directly Exposed
CVE-2026-42764MEDIUM5.02
openssl-libs
1:3.5.1-7.el9_7
fixed in 1:3.5.5-4.el9_8
0.7%
Theoretical Threat
Directly Exposed
CVE-2026-42769MEDIUM5.02
openssl-libs
1:3.5.1-7.el9_7
fixed in 1:3.5.5-4.el9_8
0.3%
Theoretical Threat
Directly Exposed
CVE-2026-42770MEDIUM5.02
openssl-libs
1:3.5.1-7.el9_7
fixed in 1:3.5.5-4.el9_8
0.2%
Theoretical Threat
Directly Exposed
CVE-2026-9076MEDIUM5.02
openssl-libs
1:3.5.1-7.el9_7
fixed in 1:3.5.5-4.el9_8
0.3%
Theoretical Threat
Directly Exposed
CVE-2026-34477MEDIUM5.02
org.apache.logging.log4j:log4j-core
2.25.3
fixed in 2.25.4
0.4%
Theoretical Threat
Directly Exposed
CVE-2026-31789MEDIUM5
openssl-libs
1:3.5.1-7.el9_7
No fix yet
0.2%
Theoretical Threat
Directly Exposed
CVE-2025-5916MEDIUM4.76
libarchive
3.5.3-9.el9_7
No fix yet
0.2%
Theoretical Threat
Directly Exposed
CVE-2026-32776MEDIUM4.67
expat
2.5.0-5.el9_7.1
No fix yet
0.1%
Theoretical Threat
Directly Exposed
CVE-2026-32777MEDIUM4.67
expat
2.5.0-5.el9_7.1
No fix yet
0.2%
Theoretical Threat
Directly Exposed
CVE-2026-32778MEDIUM4.67
expat
2.5.0-5.el9_7.1
No fix yet
0.1%
Theoretical Threat
Directly Exposed
CVE-2025-66382MEDIUM4.67
expat
2.5.0-5.el9_7.1
No fix yet
0.2%
Theoretical Threat
Directly Exposed
CVE-2025-60753MEDIUM4.67
libarchive
3.5.3-9.el9_7
No fix yet
0.1%
Theoretical Threat
Directly Exposed
CVE-2026-5745MEDIUM4.67
libarchive
3.5.3-9.el9_7
No fix yet
0.2%
Theoretical Threat
Directly Exposed
CVE-2025-1632MEDIUM4.67
libarchive
3.5.3-9.el9_7
No fix yet
0.3%
Theoretical Threat
Directly Exposed
CVE-2021-46195MEDIUM4.67
libgcc
11.5.0-11.el9
No fix yet
0.8%
Theoretical Threat
Directly Exposed
CVE-2022-27943MEDIUM4.67
libgcc
11.5.0-11.el9
No fix yet
0.9%
Theoretical Threat
Directly Exposed
CVE-2021-46195MEDIUM4.67
libstdc++
11.5.0-11.el9
No fix yet
0.8%
Theoretical Threat
Directly Exposed
CVE-2022-27943MEDIUM4.67
libstdc++
11.5.0-11.el9
No fix yet
0.9%
Theoretical Threat
Directly Exposed
CVE-2026-7383MEDIUM4.67
openssl-libs
1:3.5.1-7.el9_7
fixed in 1:3.5.5-4.el9_8
0.3%
Theoretical Threat
Directly Exposed
CVE-2025-13837MEDIUM4.67
python3-libs
3.9.25-3.el9_7.3
No fix yet
0.2%
Theoretical Threat
Directly Exposed
CVE-2026-42308MEDIUM4.67
python3-libs
3.9.25-3.el9_7.3
No fix yet
0.1%
Theoretical Threat
Directly Exposed
CVE-2024-0232MEDIUM4.67
sqlite-libs
3.34.1-9.el9_7
No fix yet
0.3%
Theoretical Threat
Directly Exposed
CVE-2026-27171MEDIUM4.67
zlib
1.2.11-40.el9
No fix yet
0.2%
Theoretical Threat
Directly Exposed
CVE-2026-1489MEDIUM4.59
glib2
2.68.4-18.el9_7.1
No fix yet
0.3%
Theoretical Threat
Directly Exposed
CVE-2026-4046MEDIUM4.5
glibc
2.34-231.el9_7.10
fixed in 2.34-270.el9_8
0.4%
Theoretical Threat
Directly Exposed
CVE-2026-4046MEDIUM4.5
glibc-common
2.34-231.el9_7.10
fixed in 2.34-270.el9_8
0.4%
Theoretical Threat
Directly Exposed
CVE-2026-4046MEDIUM4.5
glibc-minimal-langpack
2.34-231.el9_7.10
fixed in 2.34-270.el9_8
0.4%
Theoretical Threat
Directly Exposed
CVE-2026-42015MEDIUM4.5
gnutls
3.8.3-10.el9_7
fixed in 3.8.10-4.el9_8
0.7%
Theoretical Threat
Directly Exposed
CVE-2023-30571MEDIUM4.5
libarchive
3.5.3-9.el9_7
No fix yet
0.2%
Theoretical Threat
Directly Exposed
CVE-2026-42766MEDIUM4.5
openssl-libs
1:3.5.1-7.el9_7
fixed in 1:3.5.5-4.el9_8
0.6%
Theoretical Threat
Directly Exposed
CVE-2026-42767MEDIUM4.5
openssl-libs
1:3.5.1-7.el9_7
fixed in 1:3.5.5-4.el9_8
0.3%
Theoretical Threat
Directly Exposed
CVE-2025-12781MEDIUM4.5
python3-libs
3.9.25-3.el9_7.3
No fix yet
0.5%
Theoretical Threat
Directly Exposed
CVE-2026-3276MEDIUM4.5
python3-libs
3.9.25-3.el9_7.3
No fix yet
0.4%
Theoretical Threat
Directly Exposed
CVE-2026-34743MEDIUM4.5
xz-libs
5.2.5-8.el9_0
No fix yet
0.4%
Theoretical Threat
Directly Exposed
CVE-2025-4516MEDIUM4.33
python3-libs
3.9.25-3.el9_7.3
No fix yet
0.2%
Theoretical Threat
Directly Exposed
CVE-2026-42250MEDIUM4.25
bzip2-libs
1.0.8-10.el9_5
No fix yet
0.1%
Theoretical Threat
Directly Exposed
CVE-2026-5450MEDIUM4.25
glibc
2.34-231.el9_7.10
No fix yet
0.5%
Theoretical Threat
Directly Exposed
CVE-2026-5928MEDIUM4.25
glibc
2.34-231.el9_7.10
No fix yet
0.3%
Theoretical Threat
Directly Exposed
CVE-2026-5450MEDIUM4.25
glibc-common
2.34-231.el9_7.10
No fix yet
0.5%
Theoretical Threat
Directly Exposed
CVE-2026-5928MEDIUM4.25
glibc-common
2.34-231.el9_7.10
No fix yet
0.3%
Theoretical Threat
Directly Exposed
CVE-2026-5450MEDIUM4.25
glibc-minimal-langpack
2.34-231.el9_7.10
No fix yet
0.5%
Theoretical Threat
Directly Exposed
CVE-2026-5928MEDIUM4.25
glibc-minimal-langpack
2.34-231.el9_7.10
No fix yet
0.3%
Theoretical Threat
Directly Exposed
CVE-2026-11850MEDIUM4.25
krb5-libs
1.21.1-9.el9_7
No fix yet
0.3%
Theoretical Threat
Directly Exposed
CVE-2025-5917MEDIUM4.25
libarchive
3.5.3-9.el9_7
No fix yet
0.2%
Theoretical Threat
Directly Exposed
CVE-2026-34180MEDIUM4.25
openssl-libs
1:3.5.1-7.el9_7
fixed in 1:3.5.5-4.el9_8
0.5%
Theoretical Threat
Directly Exposed
CVE-2026-28387MEDIUM4.13
openssl-libs
1:3.5.1-7.el9_7
No fix yet
0.6%
Theoretical Threat
Directly Exposed
CVE-2025-15282MEDIUM4.08
python3-libs
3.9.25-3.el9_7.3
No fix yet
0.5%
Theoretical Threat
Directly Exposed
CVE-2026-0672MEDIUM4.08
python3-libs
3.9.25-3.el9_7.3
No fix yet
0.4%
Theoretical Threat
Directly Exposed
CVE-2026-27456MEDIUM4
libblkid
2.37.4-21.el9_7
No fix yet
0.1%
Theoretical Threat
Directly Exposed
CVE-2026-27456MEDIUM4
libmount
2.37.4-21.el9_7
No fix yet
0.1%
Theoretical Threat
Directly Exposed
CVE-2026-27456MEDIUM4
libuuid
2.37.4-21.el9_7
No fix yet
0.1%
Theoretical Threat
Directly Exposed
CVE-2024-13176MEDIUM4
openssl-libs
1:3.5.1-7.el9_7
No fix yet
0.6%
Theoretical Threat
Directly Exposed
CVE-2026-5773LOW3.82
curl-minimal
7.76.1-35.el9_7.3
No fix yet
0.4%
Theoretical Threat
Post-Exploit
CVE-2026-6276LOW3.82
curl-minimal
7.76.1-35.el9_7.3
No fix yet
0.3%
Theoretical Threat
Post-Exploit
CVE-2026-5773LOW3.82
libcurl-minimal
7.76.1-35.el9_7.3
No fix yet
0.4%
Theoretical Threat
Post-Exploit
CVE-2026-6276LOW3.82
libcurl-minimal
7.76.1-35.el9_7.3
No fix yet
0.3%
Theoretical Threat
Post-Exploit
CVE-2026-4224LOW3.82
python-unversioned-command
3.9.25-3.el9_7.3
No fix yet
0.6%
Theoretical Threat
Post-Exploit
CVE-2026-7210LOW3.82
python-unversioned-command
3.9.25-3.el9_7.3
No fix yet
0.8%
Theoretical Threat
Post-Exploit
CVE-2026-4224LOW3.82
python3
3.9.25-3.el9_7.3
No fix yet
0.6%
Theoretical Threat
Post-Exploit
CVE-2026-7210LOW3.82
python3
3.9.25-3.el9_7.3
No fix yet
0.8%
Theoretical Threat
Post-Exploit
CVE-2025-11468LOW3.82
python3-libs
3.9.25-3.el9_7.3
No fix yet
0.5%
Theoretical Threat
Directly Exposed
CVE-2026-0865LOW3.82
python3-libs
3.9.25-3.el9_7.3
fixed in 3.9.25-5.el9_8
0.5%
Theoretical Threat
Directly Exposed
CVE-2026-1502LOW3.82
python3-libs
3.9.25-3.el9_7.3
No fix yet
0.5%
Theoretical Threat
Directly Exposed
CVE-2023-4156LOW3.62
gawk
5.1.0-6.el9
No fix yet
0.4%
Theoretical Threat
Post-Exploit
CVE-2026-4786LOW3.62
python-unversioned-command
3.9.25-3.el9_7.3
fixed in 3.9.25-7.el9_8
0.2%
Theoretical Threat
Post-Exploit
CVE-2026-4786LOW3.62
python3
3.9.25-3.el9_7.3
fixed in 3.9.25-7.el9_8
0.2%
Theoretical Threat
Post-Exploit
CVE-2026-44604LOW3.57
rpm
4.16.1.3-39.el9
No fix yet
0.5%
Theoretical Threat
Post-Exploit
CVE-2026-1484LOW3.57
glib2
2.68.4-18.el9_7.1
No fix yet
0.3%
Theoretical Threat
Directly Exposed
CVE-2024-11053LOW3.54
curl-minimal
7.76.1-35.el9_7.3
No fix yet
1.4%
Low-Moderate Risk
Post-Exploit
CVE-2024-11053LOW3.54
libcurl-minimal
7.76.1-35.el9_7.3
No fix yet
1.4%
Low-Moderate Risk
Post-Exploit
CVE-2025-13034LOW3.47
curl-minimal
7.76.1-35.el9_7.3
No fix yet
0.2%
Theoretical Threat
Post-Exploit
CVE-2026-1965LOW3.47
curl-minimal
7.76.1-35.el9_7.3
No fix yet
0.3%
Theoretical Threat
Post-Exploit
CVE-2025-13034LOW3.47
libcurl-minimal
7.76.1-35.el9_7.3
No fix yet
0.2%
Theoretical Threat
Post-Exploit
CVE-2026-1965LOW3.47
libcurl-minimal
7.76.1-35.el9_7.3
No fix yet
0.3%
Theoretical Threat
Post-Exploit
CVE-2021-3572LOW3.42
python3-pip-wheel
21.3.1-1.el9
No fix yet
1.7%
Low-Moderate Risk
Post-Exploit
CVE-2026-4438LOW3.4
glibc
2.34-231.el9_7.10
fixed in 2.34-270.el9_8
0.2%
Theoretical Threat
Directly Exposed
CVE-2026-4438LOW3.4
glibc-common
2.34-231.el9_7.10
fixed in 2.34-270.el9_8
0.2%
Theoretical Threat
Directly Exposed
CVE-2026-4438LOW3.4
glibc-minimal-langpack
2.34-231.el9_7.10
fixed in 2.34-270.el9_8
0.2%
Theoretical Threat
Directly Exposed
CVE-2026-3784LOW3.31
curl-minimal
7.76.1-35.el9_7.3
No fix yet
0.3%
Theoretical Threat
Post-Exploit
CVE-2026-5545LOW3.31
curl-minimal
7.76.1-35.el9_7.3
No fix yet
0.4%
Theoretical Threat
Post-Exploit
CVE-2026-6429LOW3.31
curl-minimal
7.76.1-35.el9_7.3
No fix yet
0.4%
Theoretical Threat
Post-Exploit
CVE-2025-14524LOW3.31
curl-minimal
7.76.1-35.el9_7.3
No fix yet
0.6%
Theoretical Threat
Post-Exploit
CVE-2026-3784LOW3.31
libcurl-minimal
7.76.1-35.el9_7.3
No fix yet
0.3%
Theoretical Threat
Post-Exploit
CVE-2026-5545LOW3.31
libcurl-minimal
7.76.1-35.el9_7.3
No fix yet
0.4%
Theoretical Threat
Post-Exploit
CVE-2026-6429LOW3.31
libcurl-minimal
7.76.1-35.el9_7.3
No fix yet
0.4%
Theoretical Threat
Post-Exploit
CVE-2025-14524LOW3.31
libcurl-minimal
7.76.1-35.el9_7.3
No fix yet
0.6%
Theoretical Threat
Post-Exploit
CVE-2026-3805LOW3.21
curl-minimal
7.76.1-35.el9_7.3
No fix yet
0.7%
Theoretical Threat
Post-Exploit
CVE-2026-3805LOW3.21
libcurl-minimal
7.76.1-35.el9_7.3
No fix yet
0.7%
Theoretical Threat
Post-Exploit
CVE-2026-5958LOW3.21
sed
4.8-9.el9
No fix yet
0.1%
Theoretical Threat
Post-Exploit
CVE-2026-41080LOW3.15
expat
2.5.0-5.el9_7.1
No fix yet
0.4%
Theoretical Threat
Directly Exposed
CVE-2025-3360LOW3.15
glib2
2.68.4-18.el9_7.1
No fix yet
0.4%
Theoretical Threat
Directly Exposed
CVE-2025-7039LOW3.15
glib2
2.68.4-18.el9_7.1
No fix yet
0.4%
Theoretical Threat
Directly Exposed
CVE-2026-0988LOW3.15
glib2
2.68.4-18.el9_7.1
No fix yet
0.4%
Theoretical Threat
Directly Exposed
CVE-2026-3832LOW3.15
gnutls
3.8.3-10.el9_7
fixed in 3.8.10-4.el9_8
0.3%
Theoretical Threat
Directly Exposed
CVE-2026-5419LOW3.15
gnutls
3.8.3-10.el9_7
fixed in 3.8.10-4.el9_8
0.5%
Theoretical Threat
Directly Exposed
CVE-2026-0989LOW3.15
libxml2
2.9.13-14.el9_7
No fix yet
0.4%
Theoretical Threat
Directly Exposed
CVE-2026-45446LOW3.15
openssl-libs
1:3.5.1-7.el9_7
fixed in 1:3.5.5-4.el9_8
0.2%
Theoretical Threat
Directly Exposed
CVE-2026-6019LOW3.11
python-unversioned-command
3.9.25-3.el9_7.3
No fix yet
0.2%
Theoretical Threat
Post-Exploit
CVE-2026-6019LOW3.11
python3
3.9.25-3.el9_7.3
No fix yet
0.2%
Theoretical Threat
Post-Exploit
CVE-2025-50181LOW3.11
python3-pip-wheel
21.3.1-1.el9
No fix yet
0.3%
Theoretical Threat
Post-Exploit
CVE-2025-50182LOW3.11
python3-pip-wheel
21.3.1-1.el9
No fix yet
0.3%
Theoretical Threat
Post-Exploit
CVE-2025-9232LOW3.1
openssl-libs
1:3.5.1-7.el9_7
No fix yet
2.0%
Low-Moderate Risk
Directly Exposed
CVE-2026-5713LOW3.06
python-unversioned-command
3.9.25-3.el9_7.3
No fix yet
0.1%
Theoretical Threat
Post-Exploit
CVE-2026-5713LOW3.06
python3
3.9.25-3.el9_7.3
No fix yet
0.1%
Theoretical Threat
Post-Exploit
CVE-2026-32284LOW3.01
python3-pip-wheel
21.3.1-1.el9
No fix yet
0.4%
Theoretical Threat
Post-Exploit
CVE-2025-14087LOW3
glib2
2.68.4-18.el9_7.1
fixed in 2.68.4-19.el9_8.1
0.8%
Theoretical Threat
Post-Exploit
CVE-2026-45447LOW2.92
openssl-libs
1:3.5.1-7.el9_7
fixed in 1:3.5.5-4.el9_8
1.4%
Low-Moderate Risk
Post-Exploit
CVE-2026-3783LOW2.91
curl-minimal
7.76.1-35.el9_7.3
No fix yet
0.3%
Theoretical Threat
Post-Exploit
CVE-2026-3783LOW2.91
libcurl-minimal
7.76.1-35.el9_7.3
No fix yet
0.3%
Theoretical Threat
Post-Exploit
CVE-2026-24883LOW2.8
gnupg2
2.3.3-5.el9_7
No fix yet
0.4%
Theoretical Threat
Post-Exploit
CVE-2025-13837LOW2.8
python-unversioned-command
3.9.25-3.el9_7.3
No fix yet
0.2%
Theoretical Threat
Post-Exploit
CVE-2026-42308LOW2.8
python-unversioned-command
3.9.25-3.el9_7.3
No fix yet
0.1%
Theoretical Threat
Post-Exploit
CVE-2025-13837LOW2.8
python3
3.9.25-3.el9_7.3
No fix yet
0.2%
Theoretical Threat
Post-Exploit
CVE-2026-42308LOW2.8
python3
3.9.25-3.el9_7.3
No fix yet
0.1%
Theoretical Threat
Post-Exploit
CVE-2026-25645LOW2.8
python3-pip-wheel
21.3.1-1.el9
No fix yet
0.2%
Theoretical Threat
Post-Exploit
CVE-2026-41990LOW2.8
libgcrypt
1.10.0-11.el9
No fix yet
0.2%
Theoretical Threat
Directly Exposed
CVE-2026-4519LOW2.8
python3-libs
3.9.25-3.el9_7.3
fixed in 3.9.25-7.el9_8
0.2%
Theoretical Threat
Directly Exposed
CVE-2026-2297LOW2.8
python3-libs
3.9.25-3.el9_7.3
No fix yet
0.2%
Theoretical Threat
Directly Exposed
CVE-2026-3479LOW2.8
python3-libs
3.9.25-3.el9_7.3
No fix yet
0.2%
Theoretical Threat
Directly Exposed
CVE-2025-70873LOW2.8
sqlite-libs
3.34.1-9.el9_7
No fix yet
0.3%
Theoretical Threat
Directly Exposed
CVE-2026-33845LOW2.78
gnutls
3.8.3-10.el9_7
fixed in 3.8.10-4.el9_8
0.6%
Theoretical Threat
Post-Exploit
CVE-2026-45445LOW2.78
openssl-libs
1:3.5.1-7.el9_7
fixed in 1:3.5.5-4.el9_8
0.3%
Theoretical Threat
Post-Exploit
CVE-2025-27113LOW2.7
libxml2
2.9.13-14.el9_7
No fix yet
1.0%
Low-Moderate Risk
Post-Exploit
CVE-2026-4873LOW2.7
curl-minimal
7.76.1-35.el9_7.3
No fix yet
0.3%
Theoretical Threat
Post-Exploit
CVE-2026-6253LOW2.7
curl-minimal
7.76.1-35.el9_7.3
No fix yet
0.5%
Theoretical Threat
Post-Exploit
CVE-2026-7168LOW2.7
curl-minimal
7.76.1-35.el9_7.3
No fix yet
0.4%
Theoretical Threat
Post-Exploit
CVE-2026-4873LOW2.7
libcurl-minimal
7.76.1-35.el9_7.3
No fix yet
0.3%
Theoretical Threat
Post-Exploit
CVE-2026-6253LOW2.7
libcurl-minimal
7.76.1-35.el9_7.3
No fix yet
0.5%
Theoretical Threat
Post-Exploit
CVE-2026-7168LOW2.7
libcurl-minimal
7.76.1-35.el9_7.3
No fix yet
0.4%
Theoretical Threat
Post-Exploit
CVE-2025-12781LOW2.7
python-unversioned-command
3.9.25-3.el9_7.3
No fix yet
0.5%
Theoretical Threat
Post-Exploit
CVE-2026-3276LOW2.7
python-unversioned-command
3.9.25-3.el9_7.3
No fix yet
0.4%
Theoretical Threat
Post-Exploit
CVE-2025-12781LOW2.7
python3
3.9.25-3.el9_7.3
No fix yet
0.5%
Theoretical Threat
Post-Exploit
CVE-2026-3276LOW2.7
python3
3.9.25-3.el9_7.3
No fix yet
0.4%
Theoretical Threat
Post-Exploit
CVE-2024-7264LOW2.69
curl-minimal
7.76.1-35.el9_7.3
No fix yet
16.2%
High Exploitation Risk
Post-Exploit
CVE-2024-7264LOW2.69
libcurl-minimal
7.76.1-35.el9_7.3
No fix yet
16.2%
High Exploitation Risk
Post-Exploit
CVE-2025-1795LOW2.63
python3-libs
3.9.25-3.el9_7.3
No fix yet
0.6%
Theoretical Threat
Directly Exposed
CVE-2025-4516LOW2.6
python-unversioned-command
3.9.25-3.el9_7.3
No fix yet
0.2%
Theoretical Threat
Post-Exploit
CVE-2025-4516LOW2.6
python3
3.9.25-3.el9_7.3
No fix yet
0.2%
Theoretical Threat
Post-Exploit
CVE-2025-15079LOW2.48
curl-minimal
7.76.1-35.el9_7.3
No fix yet
0.5%
Theoretical Threat
Post-Exploit
CVE-2025-15079LOW2.48
libcurl-minimal
7.76.1-35.el9_7.3
No fix yet
0.5%
Theoretical Threat
Post-Exploit
CVE-2026-6100LOW2.48
python-unversioned-command
3.9.25-3.el9_7.3
fixed in 3.9.25-7.el9_8
0.5%
Theoretical Threat
Post-Exploit
CVE-2026-6100LOW2.48
python3
3.9.25-3.el9_7.3
fixed in 3.9.25-7.el9_8
0.5%
Theoretical Threat
Post-Exploit
CVE-2026-6100LOW2.48
python3-libs
3.9.25-3.el9_7.3
fixed in 3.9.25-7.el9_8
0.5%
Theoretical Threat
Post-Exploit
CVE-2026-0992LOW2.46
libxml2
2.9.13-14.el9_7
No fix yet
0.3%
Theoretical Threat
Directly Exposed
CVE-2025-14017LOW2.45
curl-minimal
7.76.1-35.el9_7.3
No fix yet
0.1%
Theoretical Threat
Post-Exploit
CVE-2025-14017LOW2.45
libcurl-minimal
7.76.1-35.el9_7.3
No fix yet
0.1%
Theoretical Threat
Post-Exploit
CVE-2025-15282LOW2.45
python-unversioned-command
3.9.25-3.el9_7.3
No fix yet
0.5%
Theoretical Threat
Post-Exploit
CVE-2026-0672LOW2.45
python-unversioned-command
3.9.25-3.el9_7.3
No fix yet
0.4%
Theoretical Threat
Post-Exploit
CVE-2025-15282LOW2.45
python3
3.9.25-3.el9_7.3
No fix yet
0.5%
Theoretical Threat
Post-Exploit
CVE-2026-0672LOW2.45
python3
3.9.25-3.el9_7.3
No fix yet
0.4%
Theoretical Threat
Post-Exploit
CVE-2025-15224LOW2.4
curl-minimal
7.76.1-35.el9_7.3
No fix yet
0.4%
Theoretical Threat
Post-Exploit
CVE-2025-68972LOW2.4
gnupg2
2.3.3-5.el9_7
No fix yet
0.1%
Theoretical Threat
Post-Exploit
CVE-2025-30258LOW2.4
gnupg2
2.3.3-5.el9_7
No fix yet
0.2%
Theoretical Threat
Post-Exploit
CVE-2025-15224LOW2.4
libcurl-minimal
7.76.1-35.el9_7.3
No fix yet
0.4%
Theoretical Threat
Post-Exploit
CVE-2026-1485LOW2.38
glib2
2.68.4-18.el9_7.1
No fix yet
0.1%
Theoretical Threat
Directly Exposed
CVE-2024-9681LOW2.34
curl-minimal
7.76.1-35.el9_7.3
No fix yet
2.0%
Low-Moderate Risk
Post-Exploit
CVE-2024-9681LOW2.34
libcurl-minimal
7.76.1-35.el9_7.3
No fix yet
2.0%
Low-Moderate Risk
Post-Exploit
CVE-2023-32636LOW2.29
glib2
2.68.4-18.el9_7.1
No fix yet
0.8%
Theoretical Threat
Post-Exploit
CVE-2026-33846LOW2.29
gnutls
3.8.3-10.el9_7
fixed in 3.8.10-4.el9_8
0.9%
Theoretical Threat
Post-Exploit
CVE-2026-28390LOW2.29
openssl-libs
1:3.5.1-7.el9_7
fixed in 1:3.5.5-3.el9_8
0.8%
Theoretical Threat
Post-Exploit
CVE-2026-28388LOW2.29
openssl-libs
1:3.5.1-7.el9_7
No fix yet
0.9%
Theoretical Threat
Post-Exploit
CVE-2026-28389LOW2.29
openssl-libs
1:3.5.1-7.el9_7
No fix yet
0.8%
Theoretical Threat
Post-Exploit
CVE-2022-41409LOW2.29
pcre2
10.40-6.el9
No fix yet
1.0%
Theoretical Threat
Post-Exploit
CVE-2022-41409LOW2.29
pcre2-syntax
10.40-6.el9
No fix yet
1.0%
Theoretical Threat
Post-Exploit
CVE-2026-3644LOW2.29
python-unversioned-command
3.9.25-3.el9_7.3
No fix yet
0.4%
Theoretical Threat
Post-Exploit
CVE-2026-3644LOW2.29
python3
3.9.25-3.el9_7.3
No fix yet
0.4%
Theoretical Threat
Post-Exploit
CVE-2025-11468LOW2.29
python-unversioned-command
3.9.25-3.el9_7.3
No fix yet
0.5%
Theoretical Threat
Post-Exploit
CVE-2026-0865LOW2.29
python-unversioned-command
3.9.25-3.el9_7.3
fixed in 3.9.25-5.el9_8
0.5%
Theoretical Threat
Post-Exploit
CVE-2026-1502LOW2.29
python-unversioned-command
3.9.25-3.el9_7.3
No fix yet
0.5%
Theoretical Threat
Post-Exploit
CVE-2025-11468LOW2.29
python3
3.9.25-3.el9_7.3
No fix yet
0.5%
Theoretical Threat
Post-Exploit
CVE-2026-0865LOW2.29
python3
3.9.25-3.el9_7.3
fixed in 3.9.25-5.el9_8
0.5%
Theoretical Threat
Post-Exploit
CVE-2026-1502LOW2.29
python3
3.9.25-3.el9_7.3
No fix yet
0.5%
Theoretical Threat
Post-Exploit
CVE-2025-5278LOW2.24
coreutils-single
8.32-39.el9
No fix yet
0.2%
Theoretical Threat
Post-Exploit
CVE-2023-45803LOW2.14
python3-pip-wheel
21.3.1-1.el9
No fix yet
0.5%
Theoretical Threat
Post-Exploit
CVE-2026-24515LOW2.12
expat
2.5.0-5.el9_7.1
No fix yet
0.2%
Theoretical Threat
Directly Exposed
CVE-2025-6170LOW2.12
libxml2
2.9.13-14.el9_7
No fix yet
0.2%
Theoretical Threat
Directly Exposed
CVE-2022-3219LOW1.68
gnupg2
2.3.3-5.el9_7
No fix yet
0.3%
Theoretical Threat
Post-Exploit
CVE-2026-4519LOW1.68
python-unversioned-command
3.9.25-3.el9_7.3
fixed in 3.9.25-7.el9_8
0.2%
Theoretical Threat
Post-Exploit
CVE-2026-2297LOW1.68
python-unversioned-command
3.9.25-3.el9_7.3
No fix yet
0.2%
Theoretical Threat
Post-Exploit
CVE-2026-3479LOW1.68
python-unversioned-command
3.9.25-3.el9_7.3
No fix yet
0.2%
Theoretical Threat
Post-Exploit
CVE-2026-4519LOW1.68
python3
3.9.25-3.el9_7.3
fixed in 3.9.25-7.el9_8
0.2%
Theoretical Threat
Post-Exploit
CVE-2026-2297LOW1.68
python3
3.9.25-3.el9_7.3
No fix yet
0.2%
Theoretical Threat
Post-Exploit
CVE-2026-3479LOW1.68
python3
3.9.25-3.el9_7.3
No fix yet
0.2%
Theoretical Threat
Post-Exploit
CVE-2025-1795LOW1.58
python-unversioned-command
3.9.25-3.el9_7.3
No fix yet
0.6%
Theoretical Threat
Post-Exploit
CVE-2025-1795LOW1.58
python3
3.9.25-3.el9_7.3
No fix yet
0.6%
Theoretical Threat
Post-Exploit
CVE-2026-48864NONE0
libsolv
0.7.24-3.el9
No fix yet
0.2%
Theoretical Threat
Not Applicable
CVE-2026-29111NONE0
systemd-libs
252-55.el9_7.9
fixed in 252-67.el9_8.2
0.1%
Theoretical Threat
Not Applicable
CVE-2026-33416NONE0
libpng
2:1.6.37-12.el9_7.3
fixed in 2:1.6.37-12.el9_7.4
1.1%
Low-Moderate Risk
Not Applicable
CVE-2026-4105NONE0
systemd-libs
252-55.el9_7.9
No fix yet
0.1%
Theoretical Threat
Not Applicable
CVE-2026-9149NONE0
libsolv
0.7.24-3.el9
No fix yet
0.3%
Theoretical Threat
Not Applicable
CVE-2026-9150NONE0
libsolv
0.7.24-3.el9
No fix yet
0.4%
Theoretical Threat
Not Applicable
CVE-2023-50495NONE0
ncurses-base
6.2-12.20210508.el9
No fix yet
1.0%
Theoretical Threat
Not Applicable
CVE-2023-50495NONE0
ncurses-libs
6.2-12.20210508.el9
No fix yet
1.0%
Theoretical Threat
Not Applicable
CVE-2025-64506NONE0
libpng
2:1.6.37-12.el9_7.3
No fix yet
0.1%
Theoretical Threat
Not Applicable
CVE-2026-23865NONE0
freetype
2.10.4-10.el9_5
No fix yet
0.1%
Theoretical Threat
Not Applicable
CVE-2026-22693NONE0
harfbuzz
2.7.4-10.el9
No fix yet
0.4%
Theoretical Threat
Not Applicable
CVE-2025-28164NONE0
libpng
2:1.6.37-12.el9_7.3
No fix yet
0.1%
Theoretical Threat
Not Applicable
CVE-2026-27456NONE0
libsmartcols
2.37.4-21.el9_7
No fix yet
0.1%
Theoretical Threat
Not Applicable
CVE-2025-64505NONE0
libpng
2:1.6.37-12.el9_7.3
No fix yet
0.2%
Theoretical Threat
Not Applicable
CVE-2026-34757NONE0
libpng
2:1.6.37-12.el9_7.3
No fix yet
0.2%
Theoretical Threat
Not Applicable
CVE-2026-25068NONE0
alsa-lib
1.2.14-1.el9
No fix yet
0.2%
Theoretical Threat
Not Applicable
CVE-2026-22020NONE0
libpng
2:1.6.37-12.el9_7.3
No fix yet
Not Applicable
GHSA-72hv-8253-57qqNONE0
com.fasterxml.jackson.core:jackson-core
2.19.0
fixed in 2.21.1, 2.18.6
Not Applicable
CVE-2026-42504NONE0
stdlib
v1.26.3
fixed in 1.25.11, 1.26.4
0.4%
Theoretical Threat
Not Applicable
CVE-2026-27145NONE0
stdlib
v1.26.3
fixed in 1.25.11, 1.26.4
0.3%
Theoretical Threat
Not Applicable
CVE-2026-42507NONE0
stdlib
v1.26.3
fixed in 1.25.11, 1.26.4
0.3%
Theoretical Threat
Not Applicable