Last scanned:
This image poses a critical security risk and must not be used in production, especially as an internet-facing service. An attacker could exploit these vulnerabilities to achieve remote code execution, denial of service, or authentication bypass, potentially compromising the MySQL database. Disabling XML schema validation and using certificate-based TLS (instead of RSA-PSK) would eliminate some vulnerabilities (CVE-2024-56171 and CVE-2026-42010), but the critical CVE-2025-49796 in libxml2 requires no special configuration and is fully exploitable. Several vulnerabilities require non-default configurations (e.g., CRL checking, RSA-PSK, schema validation) and may not be exploitable under standard settings, but the overall risk remains high.
| CVE ID | Adjusted Severity | Package | Exploit Probability | Risk Context |
|---|---|---|---|---|
| CVE-2025-49796 | CRITICAL9.1 | libxml2 2.9.7-18.el8_10.1 fixed in 2.9.7-21.el8_10.1 | 1.4% Low-Moderate Risk | Directly ExposedContext importance: HIGH |
| CVE-2020-11023 | HIGH7.93 | libstdc++ 8.5.0-22.0.1.el8_10 fixed in 8.5.0-23.0.1.el8_10 | 83.8% Actively Exploited | Directly Exposed |
| CVE-2024-45491 | HIGH7.84 | expat 2.2.5-13.0.1.el8_10 fixed in 2.2.5-15.0.1.el8_10 | 1.1% Low-Moderate Risk | Directly ExposedContext importance: MEDIUM |
| CVE-2024-45492 | HIGH7.84 | expat 2.2.5-13.0.1.el8_10 fixed in 2.2.5-15.0.1.el8_10 | 1.4% Low-Moderate Risk | Directly ExposedContext importance: MEDIUM |
| CVE-2026-42010 | HIGH7.84 | gnutls 3.6.16-8.el8_9.3 fixed in 3.6.16-8.el8_10.6 | 1.1% Low-Moderate Risk | Directly ExposedContext importance: MEDIUM |
| CVE-2024-56171 | HIGH7.84 | libxml2 2.9.7-18.el8_10.1 fixed in 2.9.7-19.el8_10 | 1.1% Low-Moderate Risk | Directly ExposedContext importance: MEDIUM |
| CVE-2026-33845 | HIGH7.73 | gnutls 3.6.16-8.el8_9.3 fixed in 3.6.16-8.el8_10.6 | 0.8% Theoretical Threat | Directly Exposed |
| CVE-2025-49794 | HIGH7.73 | libxml2 2.9.7-18.el8_10.1 fixed in 2.9.7-21.el8_10.1 | 0.7% Theoretical Threat | Directly Exposed |
| CVE-2023-0286 | HIGH7.7 | compat-openssl10 1:1.0.2o-4.el8_6 fixed in 1:1.0.2o-4.el8_10.1 | 59.5% Actively Exploited | Directly ExposedContext importance: MEDIUM |
| CVE-2024-1737 | HIGH7.5 | bind-export-libs 32:9.11.36-14.el8_10 fixed in 32:9.11.36-16.el8_10.2 | 2.1% Low-Moderate Risk | Directly Exposed |
| CVE-2024-1975 | HIGH7.5 | bind-export-libs 32:9.11.36-14.el8_10 fixed in 32:9.11.36-16.el8_10.2 | 2.1% Low-Moderate Risk | Directly Exposed |
| CVE-2026-1519 | HIGH7.5 | bind-export-libs 32:9.11.36-14.el8_10 fixed in 32:9.11.36-16.el8_10.7 | 1.5% Low-Moderate Risk | Directly Exposed |
| CVE-2026-3039 | HIGH7.5 | bind-export-libs 32:9.11.36-14.el8_10 fixed in 32:9.11.36-16.el8_10.8 | 1.0% Low-Moderate Risk | Directly Exposed |
| CVE-2026-5946 | HIGH7.5 | bind-export-libs 32:9.11.36-14.el8_10 fixed in 32:9.11.36-16.el8_10.8 | 1.8% Low-Moderate Risk | Directly Exposed |
| CVE-2024-45490 | HIGH7.5 | expat 2.2.5-13.0.1.el8_10 fixed in 2.2.5-15.0.1.el8_10 | 1.7% Low-Moderate Risk | Directly Exposed |
| CVE-2024-8176 | HIGH7.5 | expat 2.2.5-13.0.1.el8_10 fixed in 2.2.5-17.0.1.el8_10 | 1.6% Low-Moderate Risk | Directly Exposed |
| CVE-2026-33846 | HIGH7.5 | gnutls 3.6.16-8.el8_9.3 fixed in 3.6.16-8.el8_10.6 | 1.3% Low-Moderate Risk | Directly Exposed |
| CVE-2026-42009 | HIGH7.5 | gnutls 3.6.16-8.el8_9.3 fixed in 3.6.16-8.el8_10.6 | 1.3% Low-Moderate Risk | Directly Exposed |
| CVE-2026-5121 | HIGH7.5 | libarchive 3.3.3-5.el8 fixed in 3.3.3-7.el8_10 | 1.1% Low-Moderate Risk | Directly Exposed |
| CVE-2025-6021 | HIGH7.5 | libxml2 2.9.7-18.el8_10.1 fixed in 2.9.7-21.el8_10.1 | 1.1% Low-Moderate Risk | Directly Exposed |
| CVE-2023-2953 | HIGH7.5 | openldap 2.4.46-18.el8 fixed in 2.4.46-19.el8_10 | 1.9% Low-Moderate Risk | Directly Exposed |
| CVE-2025-5372 | HIGH7.48 | libssh 0.9.6-14.el8 fixed in 0.9.6-16.el8_10 | 0.4% Theoretical Threat | Directly Exposed |
| CVE-2025-40778 | HIGH7.31 | bind-export-libs 32:9.11.36-14.el8_10 fixed in 32:9.11.36-16.el8_10.6 | 0.5% Theoretical Threat | Directly Exposed |
| CVE-2024-37371 | HIGH7.28 | krb5-libs 1.18.2-27.0.1.el8_10 fixed in 1.18.2-29.0.1.el8_10 | 1.9% Low-Moderate Risk | Directly ExposedContext importance: MEDIUM |
| CVE-2024-37371 | HIGH7.28 | libkadm5 1.18.2-27.0.1.el8_10 fixed in 1.18.2-29.0.1.el8_10 | 1.9% Low-Moderate Risk | Directly ExposedContext importance: MEDIUM |
| CVE-2024-52533 | HIGH7 | glib2 2.56.4-162.el8 fixed in 2.56.4-166.el8_10 | 1.3% Low-Moderate Risk | Directly Exposed |
| CVE-2026-42013 | MEDIUM6.97 | gnutls 3.6.16-8.el8_9.3 fixed in 3.6.16-8.el8_10.6 | 0.4% Theoretical Threat | Directly Exposed |
| CVE-2026-5260 | MEDIUM6.97 | gnutls 3.6.16-8.el8_9.3 fixed in 3.6.16-8.el8_10.6 | 0.7% Theoretical Threat | Directly Exposed |
| CVE-2025-32990 | MEDIUM6.97 | gnutls 3.6.16-8.el8_9.3 fixed in 3.6.16-8.el8_10.4 | 0.7% Theoretical Threat | Directly Exposed |
| CVE-2024-28182 | MEDIUM6.89 | libnghttp2 1.33.0-5.el8_9 fixed in 1.33.0-6.el8_10.1 | 85.0% Actively Exploited | Directly Exposed |
| CVE-2025-5914 | MEDIUM6.63 | libarchive 3.3.3-5.el8 fixed in 3.3.3-6.el8_10 | 0.3% Theoretical Threat | Directly Exposed |
| CVE-2026-48864 | MEDIUM6.63 | libsolv 0.7.20-6.el8 fixed in 0.7.20-7.el8_10 | 0.2% Theoretical Threat | Directly Exposed |
| CVE-2025-7425 | MEDIUM6.63 | libxml2 2.9.7-18.el8_10.1 fixed in 2.9.7-21.el8_10.2 | 0.3% Theoretical Threat | Directly Exposed |
| CVE-2022-49043 | MEDIUM6.63 | libxml2 2.9.7-18.el8_10.1 fixed in 2.9.7-18.el8_10.2 | 0.3% Theoretical Threat | Directly Exposed |
| CVE-2025-6020 | MEDIUM6.63 | pam 1.3.1-33.el8 fixed in 1.3.1-38.0.1.el8_10 | 0.4% Theoretical Threat | Directly Exposed |
| CVE-2025-32988 | MEDIUM6.56 | gnutls 3.6.16-8.el8_9.3 fixed in 3.6.16-8.el8_10.4 | 1.2% Low-Moderate Risk | Directly ExposedContext importance: MEDIUM |
| CVE-2025-13601 | MEDIUM6.54 | glib2 2.56.4-162.el8 fixed in 2.56.4-168.el8_10 | 0.3% Theoretical Threat | Directly Exposed |
| CVE-2025-24928 | MEDIUM6.54 | libxml2 2.9.7-18.el8_10.1 fixed in 2.9.7-19.el8_10 | 0.4% Theoretical Threat | Directly Exposed |
| CVE-2026-28390 | MEDIUM6.38 | compat-openssl10 1:1.0.2o-4.el8_6 fixed in 1:1.0.2o-4.el8_10.2 | 0.8% Theoretical Threat | Directly Exposed |
| CVE-2026-45186 | MEDIUM6.38 | expat 2.2.5-13.0.1.el8_10 fixed in 2.5.0-2.el8_10 | 0.4% Theoretical Threat | Directly Exposed |
| CVE-2026-40355 | MEDIUM6.38 | krb5-libs 1.18.2-27.0.1.el8_10 fixed in 1.18.2-34.0.1.el8_10 | 0.5% Theoretical Threat | Directly Exposed |
| CVE-2026-40356 | MEDIUM6.38 | krb5-libs 1.18.2-27.0.1.el8_10 fixed in 1.18.2-34.0.1.el8_10 | 0.5% Theoretical Threat | Directly Exposed |
| CVE-2024-37370 | MEDIUM6.38 | krb5-libs 1.18.2-27.0.1.el8_10 fixed in 1.18.2-29.0.1.el8_10 | 0.7% Theoretical Threat | Directly Exposed |
| CVE-2026-4424 | MEDIUM6.38 | libarchive 3.3.3-5.el8 fixed in 3.3.3-7.el8_10 | 0.9% Theoretical Threat | Directly Exposed |
| CVE-2026-40355 | MEDIUM6.38 | libkadm5 1.18.2-27.0.1.el8_10 fixed in 1.18.2-34.0.1.el8_10 | 0.5% Theoretical Threat | Directly Exposed |
| CVE-2026-40356 | MEDIUM6.38 | libkadm5 1.18.2-27.0.1.el8_10 fixed in 1.18.2-34.0.1.el8_10 | 0.5% Theoretical Threat | Directly Exposed |
| CVE-2024-37370 | MEDIUM6.38 | libkadm5 1.18.2-27.0.1.el8_10 fixed in 1.18.2-29.0.1.el8_10 | 0.7% Theoretical Threat | Directly Exposed |
| CVE-2026-27135 | MEDIUM6.38 | libnghttp2 1.33.0-5.el8_9 fixed in 1.33.0-6.el8_10.2 | 0.8% Theoretical Threat | Directly Exposed |
| CVE-2025-32414 | MEDIUM6.38 | libxml2 2.9.7-18.el8_10.1 fixed in 2.9.7-20.el8_10 | 0.4% Theoretical Threat | Directly Exposed |
| CVE-2025-32415 | MEDIUM6.38 | libxml2 2.9.7-18.el8_10.1 fixed in 2.9.7-21.el8_10.3 | 0.6% Theoretical Threat | Directly Exposed |
| CVE-2026-28390 | MEDIUM6.38 | openssl-libs 1:1.1.1k-12.el8_9 fixed in 1:1.1.1k-17.el8_6 | 0.8% Theoretical Threat | Directly Exposed |
| CVE-2026-3833 | MEDIUM6.29 | gnutls 3.6.16-8.el8_9.3 fixed in 3.6.16-8.el8_10.6 | 0.6% Theoretical Threat | Directly Exposed |
| CVE-2026-42011 | MEDIUM6.29 | gnutls 3.6.16-8.el8_9.3 fixed in 3.6.16-8.el8_10.6 | 0.5% Theoretical Threat | Directly Exposed |
| CVE-2025-69419 | MEDIUM6.29 | openssl-libs 1:1.1.1k-12.el8_9 fixed in 1:1.1.1k-15.el8_6 | 0.4% Theoretical Threat | Directly Exposed |
| CVE-2024-10963 | MEDIUM6.29 | pam 1.3.1-33.el8 fixed in 1.3.1-36.0.1.el8_10 | 0.8% Theoretical Threat | Directly Exposed |
| CVE-2026-42012 | MEDIUM6.03 | gnutls 3.6.16-8.el8_9.3 fixed in 3.6.16-8.el8_10.6 | 0.4% Theoretical Threat | Directly Exposed |
| CVE-2025-4802 | MEDIUM5.95 | glibc 2.28-251.0.2.el8_10.2 fixed in 2.28-251.0.3.el8_10.22 | 0.6% Theoretical Threat | Directly Exposed |
| CVE-2025-4802 | MEDIUM5.95 | glibc-common 2.28-251.0.2.el8_10.2 fixed in 2.28-251.0.3.el8_10.22 | 0.6% Theoretical Threat | Directly Exposed |
| CVE-2025-4802 | MEDIUM5.95 | glibc-langpack-en 2.28-251.0.2.el8_10.2 fixed in 2.28-251.0.3.el8_10.22 | 0.6% Theoretical Threat | Directly Exposed |
| CVE-2026-4878 | MEDIUM5.95 | libcap 2.48-6.el8_9 fixed in 2.48-6.el8_10.1 | 0.2% Theoretical Threat | Directly Exposed |
| CVE-2024-50602 | MEDIUM5.9 | expat 2.2.5-13.0.1.el8_10 fixed in 2.2.5-16.0.1.el8_10 | 1.0% Low-Moderate Risk | Directly Exposed |
| CVE-2025-13151 | MEDIUM5.9 | libtasn1 4.13-4.el8_7 fixed in 4.13-6.el8_10 | 1.1% Low-Moderate Risk | Directly Exposed |
| CVE-2024-5535 | MEDIUM5.9 | openssl-libs 1:1.1.1k-12.el8_9 fixed in 1:1.1.1k-14.el8_6 | 5.6% Low-Moderate Risk | Directly Exposed |
| CVE-2026-42014 | MEDIUM5.61 | gnutls 3.6.16-8.el8_9.3 fixed in 3.6.16-8.el8_10.6 | 0.1% Theoretical Threat | Directly Exposed |
| CVE-2024-4741 | MEDIUM5.6 | openssl-libs 1:1.1.1k-12.el8_9 fixed in 1:1.1.1k-16.el8_6 | 2.9% Low-Moderate Risk | Directly Exposed |
| CVE-2025-9230 | MEDIUM5.6 | openssl-libs 1:1.1.1k-12.el8_9 fixed in 1:1.1.1k-14.el8_10 | 1.7% Low-Moderate Risk | Directly Exposed |
| CVE-2025-14512 | MEDIUM5.52 | glib2 2.56.4-162.el8 fixed in 2.56.4-169.el8_10 | 0.5% Theoretical Threat | Directly Exposed |
| CVE-2025-6395 | MEDIUM5.52 | gnutls 3.6.16-8.el8_9.3 fixed in 3.6.16-8.el8_10.4 | 0.6% Theoretical Threat | Directly Exposed |
| CVE-2025-24528 | MEDIUM5.52 | krb5-libs 1.18.2-27.0.1.el8_10 fixed in 1.18.2-31.0.1.el8_10 | 0.6% Theoretical Threat | Directly Exposed |
| CVE-2025-24528 | MEDIUM5.52 | libkadm5 1.18.2-27.0.1.el8_10 fixed in 1.18.2-31.0.1.el8_10 | 0.6% Theoretical Threat | Directly Exposed |
| CVE-2024-34459 | MEDIUM5.5 | libxml2 2.9.7-18.el8_10.1 fixed in 2.9.7-21.el8_10.5 | 2.3% Low-Moderate Risk | Directly Exposed |
| CVE-2025-59375 | MEDIUM5.3 | expat 2.2.5-13.0.1.el8_10 fixed in 2.5.0-1.el8_10 | 1.3% Low-Moderate Risk | Directly Exposed |
| CVE-2024-12243 | MEDIUM5.3 | gnutls 3.6.16-8.el8_9.3 fixed in 3.6.16-8.el8_10.3 | 1.2% Low-Moderate Risk | Directly Exposed |
| CVE-2024-12133 | MEDIUM5.3 | libtasn1 4.13-4.el8_7 fixed in 4.13-5.el8_10 | 1.1% Low-Moderate Risk | Directly Exposed |
| CVE-2025-14104 | MEDIUM5.18 | libblkid 2.32.1-46.0.1.el8 fixed in 2.32.1-48.0.1.el8_10 | 0.2% Theoretical Threat | Directly Exposed |
| CVE-2025-14104 | MEDIUM5.18 | libfdisk 2.32.1-46.0.1.el8 fixed in 2.32.1-48.0.1.el8_10 | 0.2% Theoretical Threat | Directly Exposed |
| CVE-2025-14104 | MEDIUM5.18 | libmount 2.32.1-46.0.1.el8 fixed in 2.32.1-48.0.1.el8_10 | 0.2% Theoretical Threat | Directly Exposed |
| CVE-2025-14104 | MEDIUM5.18 | libsmartcols 2.32.1-46.0.1.el8 fixed in 2.32.1-48.0.1.el8_10 | 0.2% Theoretical Threat | Directly Exposed |
| CVE-2025-14104 | MEDIUM5.18 | libuuid 2.32.1-46.0.1.el8 fixed in 2.32.1-48.0.1.el8_10 | 0.2% Theoretical Threat | Directly Exposed |
| CVE-2025-15281 | MEDIUM5.02 | glibc 2.28-251.0.2.el8_10.2 fixed in 2.28-251.0.4.el8_10.31 | 0.3% Theoretical Threat | Directly Exposed |
| CVE-2025-15281 | MEDIUM5.02 | glibc-common 2.28-251.0.2.el8_10.2 fixed in 2.28-251.0.4.el8_10.31 | 0.3% Theoretical Threat | Directly Exposed |
| CVE-2025-15281 | MEDIUM5.02 | glibc-langpack-en 2.28-251.0.2.el8_10.2 fixed in 2.28-251.0.4.el8_10.31 | 0.3% Theoretical Threat | Directly Exposed |
| CVE-2025-3576 | MEDIUM5.02 | krb5-libs 1.18.2-27.0.1.el8_10 fixed in 1.18.2-32.0.1.el8_10 | 0.3% Theoretical Threat | Directly Exposed |
| CVE-2025-3576 | MEDIUM5.02 | libkadm5 1.18.2-27.0.1.el8_10 fixed in 1.18.2-32.0.1.el8_10 | 0.3% Theoretical Threat | Directly Exposed |
| CVE-2025-0395 | MEDIUM4.67 | glibc 2.28-251.0.2.el8_10.2 fixed in 2.28-251.0.3.el8_10.16 | 0.3% Theoretical Threat | Directly Exposed |
| CVE-2025-0395 | MEDIUM4.67 | glibc-common 2.28-251.0.2.el8_10.2 fixed in 2.28-251.0.3.el8_10.16 | 0.3% Theoretical Threat | Directly Exposed |
| CVE-2025-0395 | MEDIUM4.67 | glibc-langpack-en 2.28-251.0.2.el8_10.2 fixed in 2.28-251.0.3.el8_10.16 | 0.3% Theoretical Threat | Directly Exposed |
| CVE-2025-9714 | MEDIUM4.67 | libxml2 2.9.7-18.el8_10.1 fixed in 2.9.7-21.el8_10.4 | 0.1% Theoretical Threat | Directly Exposed |
| CVE-2026-42496 | MEDIUM4.64 | perl-PathTools 3.74-1.el8 fixed in 3.78-439.module+el8.10.0+90354+a7e78d72 | 0.4% Theoretical Threat | Post-Exploit |
| CVE-2026-42496 | MEDIUM4.64 | perl-Scalar-List-Utils 3:1.49-2.el8 fixed in 4:1.55-457.module+el8.10.0+90354+a7e78d72 | 0.4% Theoretical Threat | Post-Exploit |
| CVE-2026-42496 | MEDIUM4.64 | perl-Socket 4:2.027-3.el8 fixed in 4:2.031-1.module+el8.10.0+90354+a7e78d72 | 0.4% Theoretical Threat | Post-Exploit |
| CVE-2026-42496 | MEDIUM4.64 | perl-Storable 1:3.11-3.el8 fixed in 1:3.21-457.module+el8.10.0+90354+a7e78d72 | 0.4% Theoretical Threat | Post-Exploit |
| CVE-2026-42496 | MEDIUM4.64 | perl-Unicode-Normalize 1.25-396.el8 fixed in 1.27-458.module+el8.10.0+90354+a7e78d72 | 0.4% Theoretical Threat | Post-Exploit |
| CVE-2026-42496 | MEDIUM4.64 | perl-interpreter 4:5.26.3-422.el8 fixed in 4:5.32.1-474.module+el8.10.0+90933+61492164 | 0.4% Theoretical Threat | Post-Exploit |
| CVE-2026-42496 | MEDIUM4.64 | perl-libs 4:5.26.3-422.el8 fixed in 4:5.32.1-474.module+el8.10.0+90933+61492164 | 0.4% Theoretical Threat | Post-Exploit |
| CVE-2026-42496 | MEDIUM4.64 | perl-macros 4:5.26.3-422.el8 fixed in 4:5.32.1-474.module+el8.10.0+90933+61492164 | 0.4% Theoretical Threat | Post-Exploit |
| CVE-2026-42496 | MEDIUM4.64 | perl-threads 1:2.21-2.el8 fixed in 1:2.25-457.module+el8.10.0+90354+a7e78d72 | 0.4% Theoretical Threat | Post-Exploit |
| CVE-2026-42496 | MEDIUM4.64 | perl-threads-shared 1.58-2.el8 fixed in 1.61-457.module+el8.10.0+90354+a7e78d72 | 0.4% Theoretical Threat | Post-Exploit |
| CVE-2025-4517 | MEDIUM4.56 | platform-python 3.6.8-62.0.1.el8_10 fixed in 3.6.8-70.0.1.el8_10 | 1.2% Low-Moderate Risk | Post-Exploit |
| CVE-2025-4517 | MEDIUM4.56 | python3-libs 3.6.8-62.0.1.el8_10 fixed in 3.6.8-70.0.1.el8_10 | 1.2% Low-Moderate Risk | Post-Exploit |
| CVE-2026-3497 | MEDIUM4.5 | openssh 8.0p1-24.0.1.el8 fixed in 8.0p1-28.0.1.el8_10 | 2.2% Low-Moderate Risk | Post-Exploit |
| CVE-2026-3497 | MEDIUM4.5 | openssh-clients 8.0p1-24.0.1.el8 fixed in 8.0p1-28.0.1.el8_10 | 2.2% Low-Moderate Risk | Post-Exploit |
| CVE-2026-3497 | MEDIUM4.5 | openssh-server 8.0p1-24.0.1.el8 fixed in 8.0p1-28.0.1.el8_10 | 2.2% Low-Moderate Risk | Post-Exploit |
| CVE-2025-4138 | MEDIUM4.5 | platform-python 3.6.8-62.0.1.el8_10 fixed in 3.6.8-70.0.1.el8_10 | 1.1% Low-Moderate Risk | Post-Exploit |
| CVE-2024-6232 | MEDIUM4.5 | platform-python 3.6.8-62.0.1.el8_10 fixed in 3.6.8-67.0.1.el8_10 | 2.2% Low-Moderate Risk | Post-Exploit |
| CVE-2025-4138 | MEDIUM4.5 | python3-libs 3.6.8-62.0.1.el8_10 fixed in 3.6.8-70.0.1.el8_10 | 1.1% Low-Moderate Risk | Post-Exploit |
| CVE-2024-6232 | MEDIUM4.5 | python3-libs 3.6.8-62.0.1.el8_10 fixed in 3.6.8-67.0.1.el8_10 | 2.2% Low-Moderate Risk | Post-Exploit |
| CVE-2026-0915 | MEDIUM4.5 | glibc 2.28-251.0.2.el8_10.2 fixed in 2.28-251.0.4.el8_10.31 | 0.6% Theoretical Threat | Directly Exposed |
| CVE-2026-4046 | MEDIUM4.5 | glibc 2.28-251.0.2.el8_10.2 fixed in 2.28-251.0.4.el8_10.37 | 0.4% Theoretical Threat | Directly Exposed |
| CVE-2026-0915 | MEDIUM4.5 | glibc-common 2.28-251.0.2.el8_10.2 fixed in 2.28-251.0.4.el8_10.31 | 0.6% Theoretical Threat | Directly Exposed |
| CVE-2026-4046 | MEDIUM4.5 | glibc-common 2.28-251.0.2.el8_10.2 fixed in 2.28-251.0.4.el8_10.37 | 0.4% Theoretical Threat | Directly Exposed |
| CVE-2026-0915 | MEDIUM4.5 | glibc-langpack-en 2.28-251.0.2.el8_10.2 fixed in 2.28-251.0.4.el8_10.31 | 0.6% Theoretical Threat | Directly Exposed |
| CVE-2026-4046 | MEDIUM4.5 | glibc-langpack-en 2.28-251.0.2.el8_10.2 fixed in 2.28-251.0.4.el8_10.37 | 0.4% Theoretical Threat | Directly Exposed |
| CVE-2026-42015 | MEDIUM4.5 | gnutls 3.6.16-8.el8_9.3 fixed in 3.6.16-8.el8_10.6 | 0.7% Theoretical Threat | Directly Exposed |
| CVE-2025-14831 | MEDIUM4.5 | gnutls 3.6.16-8.el8_9.3 fixed in 3.6.16-8.el8_10.5 | 0.6% Theoretical Threat | Directly Exposed |
| CVE-2026-47162 | MEDIUM4.49 | vim-minimal 2:8.0.1763-19.0.1.el8_6.4 fixed in 2:8.0.1763-27.0.1.el8_10 | 0.2% Theoretical Threat | Post-Exploit |
| CVE-2026-5450 | MEDIUM4.25 | glibc 2.28-251.0.2.el8_10.2 fixed in 2.28-251.0.4.el8_10.38 | 0.5% Theoretical Threat | Directly Exposed |
| CVE-2026-5450 | MEDIUM4.25 | glibc-common 2.28-251.0.2.el8_10.2 fixed in 2.28-251.0.4.el8_10.38 | 0.5% Theoretical Threat | Directly Exposed |
| CVE-2026-5450 | MEDIUM4.25 | glibc-langpack-en 2.28-251.0.2.el8_10.2 fixed in 2.28-251.0.4.el8_10.38 | 0.5% Theoretical Threat | Directly Exposed |
| CVE-2026-34982 | MEDIUM4.18 | vim-minimal 2:8.0.1763-19.0.1.el8_6.4 fixed in 2:8.0.1763-22.0.1.el8_10.3 | 0.5% Theoretical Threat | Post-Exploit |
| CVE-2026-35385 | MEDIUM4.13 | openssh 8.0p1-24.0.1.el8 fixed in 8.0p1-29.0.1.el8_10 | 0.4% Theoretical Threat | Post-Exploit |
| CVE-2026-35386 | MEDIUM4.13 | openssh 8.0p1-24.0.1.el8 fixed in 8.0p1-29.0.1.el8_10 | 0.2% Theoretical Threat | Post-Exploit |
| CVE-2026-35414 | MEDIUM4.13 | openssh 8.0p1-24.0.1.el8 fixed in 8.0p1-29.0.1.el8_10 | 0.2% Theoretical Threat | Post-Exploit |
| CVE-2026-35385 | MEDIUM4.13 | openssh-clients 8.0p1-24.0.1.el8 fixed in 8.0p1-29.0.1.el8_10 | 0.4% Theoretical Threat | Post-Exploit |
| CVE-2026-35386 | MEDIUM4.13 | openssh-clients 8.0p1-24.0.1.el8 fixed in 8.0p1-29.0.1.el8_10 | 0.2% Theoretical Threat | Post-Exploit |
| CVE-2026-35414 | MEDIUM4.13 | openssh-clients 8.0p1-24.0.1.el8 fixed in 8.0p1-29.0.1.el8_10 | 0.2% Theoretical Threat | Post-Exploit |
| CVE-2026-35385 | MEDIUM4.13 | openssh-server 8.0p1-24.0.1.el8 fixed in 8.0p1-29.0.1.el8_10 | 0.4% Theoretical Threat | Post-Exploit |
| CVE-2026-35386 | MEDIUM4.13 | openssh-server 8.0p1-24.0.1.el8 fixed in 8.0p1-29.0.1.el8_10 | 0.2% Theoretical Threat | Post-Exploit |
| CVE-2026-35414 | MEDIUM4.13 | openssh-server 8.0p1-24.0.1.el8 fixed in 8.0p1-29.0.1.el8_10 | 0.2% Theoretical Threat | Post-Exploit |
| CVE-2026-6100 | MEDIUM4.13 | platform-python 3.6.8-62.0.1.el8_10 fixed in 3.6.8-76.0.1.el8_10 | 0.6% Theoretical Threat | Post-Exploit |
| CVE-2026-6100 | MEDIUM4.13 | python3-libs 3.6.8-62.0.1.el8_10 fixed in 3.6.8-76.0.1.el8_10 | 0.6% Theoretical Threat | Post-Exploit |
| CVE-2025-26465 | MEDIUM4.08 | openssh 8.0p1-24.0.1.el8 fixed in 8.0p1-26.0.1.el8_10 | 7.0% Low-Moderate Risk | Post-Exploit |
| CVE-2025-26465 | MEDIUM4.08 | openssh-clients 8.0p1-24.0.1.el8 fixed in 8.0p1-26.0.1.el8_10 | 7.0% Low-Moderate Risk | Post-Exploit |
| CVE-2025-26465 | MEDIUM4.08 | openssh-server 8.0p1-24.0.1.el8 fixed in 8.0p1-26.0.1.el8_10 | 7.0% Low-Moderate Risk | Post-Exploit |
| CVE-2025-0938 | MEDIUM4.08 | platform-python 3.6.8-62.0.1.el8_10 fixed in 3.6.8-74.0.1.el8_10 | 1.5% Low-Moderate Risk | Post-Exploit |
| CVE-2025-0938 | MEDIUM4.08 | python3-libs 3.6.8-62.0.1.el8_10 fixed in 3.6.8-74.0.1.el8_10 | 1.5% Low-Moderate Risk | Post-Exploit |
| CVE-2025-4373 | MEDIUM4.08 | glib2 2.56.4-162.el8 fixed in 2.56.4-166.el8_10 | 0.5% Theoretical Threat | Directly Exposed |
| CVE-2024-10041 | MEDIUM4 | pam 1.3.1-33.el8 fixed in 1.3.1-36.0.1.el8_10 | 0.3% Theoretical Threat | Directly Exposed |
| CVE-2025-4598 | MEDIUM4 | systemd-libs 239-82.0.1.el8 fixed in 239-82.0.4.el8_10.5 | 0.7% Theoretical Threat | Directly Exposed |
| CVE-2025-4598 | MEDIUM4 | systemd-pam 239-82.0.1.el8 fixed in 239-82.0.4.el8_10.5 | 0.7% Theoretical Threat | Directly Exposed |
| CVE-2026-48962 | LOW3.98 | perl-Data-Dumper 2.167-399.el8 fixed in 2.174-440.module+el8.10.0+90354+a7e78d72 | 0.3% Theoretical Threat | Post-Exploit |
| CVE-2023-47038 | LOW3.98 | perl-Data-Dumper 2.167-399.el8 fixed in 2.174-440.module+el8.10.0+90267+7012ad3b | 0.8% Theoretical Threat | Post-Exploit |
| CVE-2026-48962 | LOW3.98 | perl-Digest-MD5 2.55-396.el8 fixed in 2.58-1.module+el8.10.0+90354+a7e78d72 | 0.3% Theoretical Threat | Post-Exploit |
| CVE-2023-47038 | LOW3.98 | perl-Digest-MD5 2.55-396.el8 fixed in 2.58-1.module+el8.10.0+90267+7012ad3b | 0.8% Theoretical Threat | Post-Exploit |
| CVE-2026-48962 | LOW3.98 | perl-Encode 4:2.97-3.el8 fixed in 4:3.08-461.module+el8.10.0+90354+a7e78d72 | 0.3% Theoretical Threat | Post-Exploit |
| CVE-2023-47038 | LOW3.98 | perl-Encode 4:2.97-3.el8 fixed in 4:3.08-461.module+el8.10.0+90267+7012ad3b | 0.8% Theoretical Threat | Post-Exploit |
| CVE-2026-48962 | LOW3.98 | perl-Errno 1.28-422.el8 fixed in 1.30-474.module+el8.10.0+90933+61492164 | 0.3% Theoretical Threat | Post-Exploit |
| CVE-2023-47038 | LOW3.98 | perl-Errno 1.28-422.el8 fixed in 1.30-473.module+el8.10.0+90267+7012ad3b | 0.8% Theoretical Threat | Post-Exploit |
| CVE-2026-48962 | LOW3.98 | perl-IO 1.38-422.el8 fixed in 1.43-474.module+el8.10.0+90933+61492164 | 0.3% Theoretical Threat | Post-Exploit |
| CVE-2023-47038 | LOW3.98 | perl-IO 1.38-422.el8 fixed in 1.43-473.module+el8.10.0+90267+7012ad3b | 0.8% Theoretical Threat | Post-Exploit |
| CVE-2026-48962 | LOW3.98 | perl-MIME-Base64 3.15-396.el8 fixed in 3.15-1001.module+el8.10.0+90354+a7e78d72 | 0.3% Theoretical Threat | Post-Exploit |
| CVE-2023-47038 | LOW3.98 | perl-MIME-Base64 3.15-396.el8 fixed in 3.15-1001.module+el8.10.0+90267+7012ad3b | 0.8% Theoretical Threat | Post-Exploit |
| CVE-2026-48962 | LOW3.98 | perl-PathTools 3.74-1.el8 fixed in 3.78-439.module+el8.10.0+90354+a7e78d72 | 0.3% Theoretical Threat | Post-Exploit |
| CVE-2023-47038 | LOW3.98 | perl-PathTools 3.74-1.el8 fixed in 3.78-439.module+el8.10.0+90267+7012ad3b | 0.8% Theoretical Threat | Post-Exploit |
| CVE-2026-48962 | LOW3.98 | perl-Scalar-List-Utils 3:1.49-2.el8 fixed in 4:1.55-457.module+el8.10.0+90354+a7e78d72 | 0.3% Theoretical Threat | Post-Exploit |
| CVE-2023-47038 | LOW3.98 | perl-Scalar-List-Utils 3:1.49-2.el8 fixed in 4:1.55-457.module+el8.10.0+90267+7012ad3b | 0.8% Theoretical Threat | Post-Exploit |
| CVE-2026-48962 | LOW3.98 | perl-Socket 4:2.027-3.el8 fixed in 4:2.031-1.module+el8.10.0+90354+a7e78d72 | 0.3% Theoretical Threat | Post-Exploit |
| CVE-2023-47038 | LOW3.98 | perl-Socket 4:2.027-3.el8 fixed in 4:2.031-1.module+el8.10.0+90267+7012ad3b | 0.8% Theoretical Threat | Post-Exploit |
| CVE-2026-48962 | LOW3.98 | perl-Storable 1:3.11-3.el8 fixed in 1:3.21-457.module+el8.10.0+90354+a7e78d72 | 0.3% Theoretical Threat | Post-Exploit |
| CVE-2023-47038 | LOW3.98 | perl-Storable 1:3.11-3.el8 fixed in 1:3.21-457.module+el8.10.0+90267+7012ad3b | 0.8% Theoretical Threat | Post-Exploit |
| CVE-2026-48962 | LOW3.98 | perl-Unicode-Normalize 1.25-396.el8 fixed in 1.27-458.module+el8.10.0+90354+a7e78d72 | 0.3% Theoretical Threat | Post-Exploit |
| CVE-2023-47038 | LOW3.98 | perl-Unicode-Normalize 1.25-396.el8 fixed in 1.27-458.module+el8.10.0+90267+7012ad3b | 0.8% Theoretical Threat | Post-Exploit |
| CVE-2026-48962 | LOW3.98 | perl-interpreter 4:5.26.3-422.el8 fixed in 4:5.32.1-474.module+el8.10.0+90933+61492164 | 0.3% Theoretical Threat | Post-Exploit |
| CVE-2023-47038 | LOW3.98 | perl-interpreter 4:5.26.3-422.el8 fixed in 4:5.32.1-473.module+el8.10.0+90267+7012ad3b | 0.8% Theoretical Threat | Post-Exploit |
| CVE-2026-48962 | LOW3.98 | perl-libs 4:5.26.3-422.el8 fixed in 4:5.32.1-474.module+el8.10.0+90933+61492164 | 0.3% Theoretical Threat | Post-Exploit |
| CVE-2023-47038 | LOW3.98 | perl-libs 4:5.26.3-422.el8 fixed in 4:5.32.1-473.module+el8.10.0+90267+7012ad3b | 0.8% Theoretical Threat | Post-Exploit |
| CVE-2026-48962 | LOW3.98 | perl-macros 4:5.26.3-422.el8 fixed in 4:5.32.1-474.module+el8.10.0+90933+61492164 | 0.3% Theoretical Threat | Post-Exploit |
| CVE-2023-47038 | LOW3.98 | perl-macros 4:5.26.3-422.el8 fixed in 4:5.32.1-473.module+el8.10.0+90267+7012ad3b | 0.8% Theoretical Threat | Post-Exploit |
| CVE-2026-48962 | LOW3.98 | perl-threads 1:2.21-2.el8 fixed in 1:2.25-457.module+el8.10.0+90354+a7e78d72 | 0.3% Theoretical Threat | Post-Exploit |
| CVE-2023-47038 | LOW3.98 | perl-threads 1:2.21-2.el8 fixed in 1:2.25-457.module+el8.10.0+90267+7012ad3b | 0.8% Theoretical Threat | Post-Exploit |
| CVE-2026-48962 | LOW3.98 | perl-threads-shared 1.58-2.el8 fixed in 1.61-457.module+el8.10.0+90354+a7e78d72 | 0.3% Theoretical Threat | Post-Exploit |
| CVE-2023-47038 | LOW3.98 | perl-threads-shared 1.58-2.el8 fixed in 1.61-457.module+el8.10.0+90267+7012ad3b | 0.8% Theoretical Threat | Post-Exploit |
| CVE-2024-9287 | LOW3.98 | platform-python 3.6.8-62.0.1.el8_10 fixed in 3.6.8-69.0.1.el8_10 | 0.6% Theoretical Threat | Post-Exploit |
| CVE-2024-9287 | LOW3.98 | python3-libs 3.6.8-62.0.1.el8_10 fixed in 3.6.8-69.0.1.el8_10 | 0.6% Theoretical Threat | Post-Exploit |
| CVE-2026-28421 | LOW3.98 | vim-minimal 2:8.0.1763-19.0.1.el8_6.4 fixed in 2:8.0.1763-22.0.1.el8_10.1 | 0.2% Theoretical Threat | Post-Exploit |
| CVE-2026-52858 | LOW3.98 | vim-minimal 2:8.0.1763-19.0.1.el8_6.4 fixed in 2:8.0.1763-27.0.1.el8_10 | 0.2% Theoretical Threat | Post-Exploit |
| CVE-2024-12718 | LOW3.88 | platform-python 3.6.8-62.0.1.el8_10 fixed in 3.6.8-70.0.1.el8_10 | 0.6% Theoretical Threat | Post-Exploit |
| CVE-2024-12718 | LOW3.88 | python3-libs 3.6.8-62.0.1.el8_10 fixed in 3.6.8-70.0.1.el8_10 | 0.6% Theoretical Threat | Post-Exploit |
| CVE-2025-6176 | LOW3.82 | brotli 1.0.6-3.el8 fixed in 1.0.6-4.el8_10 | 0.5% Theoretical Threat | Post-Exploit |
| CVE-2026-28390 | LOW3.82 | openssl 1:1.1.1k-12.el8_9 fixed in 1:1.1.1k-17.el8_6 | 0.8% Theoretical Threat | Post-Exploit |
| CVE-2025-4435 | LOW3.82 | platform-python 3.6.8-62.0.1.el8_10 fixed in 3.6.8-70.0.1.el8_10 | 0.5% Theoretical Threat | Post-Exploit |
| CVE-2026-15308 | LOW3.82 | platform-python 3.6.8-62.0.1.el8_10 fixed in 3.6.8-77.0.1.el8_10 | 0.6% Theoretical Threat | Post-Exploit |
| CVE-2025-8194 | LOW3.82 | platform-python 3.6.8-62.0.1.el8_10 fixed in 3.6.8-71.0.1.el8_10 | 0.6% Theoretical Threat | Post-Exploit |
| CVE-2025-4435 | LOW3.82 | python3-libs 3.6.8-62.0.1.el8_10 fixed in 3.6.8-70.0.1.el8_10 | 0.5% Theoretical Threat | Post-Exploit |
| CVE-2026-15308 | LOW3.82 | python3-libs 3.6.8-62.0.1.el8_10 fixed in 3.6.8-77.0.1.el8_10 | 0.6% Theoretical Threat | Post-Exploit |
| CVE-2025-8194 | LOW3.82 | python3-libs 3.6.8-62.0.1.el8_10 fixed in 3.6.8-71.0.1.el8_10 | 0.6% Theoretical Threat | Post-Exploit |
| CVE-2025-69419 | LOW3.77 | openssl 1:1.1.1k-12.el8_9 fixed in 1:1.1.1k-15.el8_6 | 0.4% Theoretical Threat | Post-Exploit |
| CVE-2024-3596 | LOW3.73 | krb5-libs 1.18.2-27.0.1.el8_10 fixed in 1.18.2-30.0.1.el8_10 | 14.9% High Exploitation Risk | Post-Exploit |
| CVE-2024-3596 | LOW3.73 | libkadm5 1.18.2-27.0.1.el8_10 fixed in 1.18.2-30.0.1.el8_10 | 14.9% High Exploitation Risk | Post-Exploit |
| CVE-2025-4330 | LOW3.72 | platform-python 3.6.8-62.0.1.el8_10 fixed in 3.6.8-70.0.1.el8_10 | 0.8% Theoretical Threat | Post-Exploit |
| CVE-2025-4330 | LOW3.72 | python3-libs 3.6.8-62.0.1.el8_10 fixed in 3.6.8-70.0.1.el8_10 | 0.8% Theoretical Threat | Post-Exploit |
| CVE-2026-25749 | LOW3.72 | vim-minimal 2:8.0.1763-19.0.1.el8_6.4 fixed in 2:8.0.1763-22.0.1.el8_10 | 0.2% Theoretical Threat | Post-Exploit |
| CVE-2026-33412 | LOW3.72 | vim-minimal 2:8.0.1763-19.0.1.el8_6.4 fixed in 2:8.0.1763-22.0.1.el8_10.1 | 0.8% Theoretical Threat | Post-Exploit |
| CVE-2026-41411 | LOW3.72 | vim-minimal 2:8.0.1763-19.0.1.el8_6.4 fixed in 2:8.0.1763-24.0.1.el8_10 | 0.5% Theoretical Threat | Post-Exploit |
| CVE-2026-4786 | LOW3.62 | platform-python 3.6.8-62.0.1.el8_10 fixed in 3.6.8-76.0.1.el8_10 | 0.3% Theoretical Threat | Post-Exploit |
| CVE-2025-15366 | LOW3.62 | platform-python 3.6.8-62.0.1.el8_10 fixed in 3.6.8-73.0.1.el8_10 | 0.4% Theoretical Threat | Post-Exploit |
| CVE-2025-15367 | LOW3.62 | platform-python 3.6.8-62.0.1.el8_10 fixed in 3.6.8-73.0.1.el8_10 | 0.3% Theoretical Threat | Post-Exploit |
| CVE-2026-1299 | LOW3.62 | platform-python 3.6.8-62.0.1.el8_10 fixed in 3.6.8-73.0.1.el8_10 | 0.6% Theoretical Threat | Post-Exploit |
| CVE-2026-4786 | LOW3.62 | python3-libs 3.6.8-62.0.1.el8_10 fixed in 3.6.8-76.0.1.el8_10 | 0.3% Theoretical Threat | Post-Exploit |
| CVE-2025-15366 | LOW3.62 | python3-libs 3.6.8-62.0.1.el8_10 fixed in 3.6.8-73.0.1.el8_10 | 0.4% Theoretical Threat | Post-Exploit |
| CVE-2025-15367 | LOW3.62 | python3-libs 3.6.8-62.0.1.el8_10 fixed in 3.6.8-73.0.1.el8_10 | 0.3% Theoretical Threat | Post-Exploit |
| CVE-2026-1299 | LOW3.62 | python3-libs 3.6.8-62.0.1.el8_10 fixed in 3.6.8-73.0.1.el8_10 | 0.6% Theoretical Threat | Post-Exploit |
| CVE-2026-35177 | LOW3.62 | vim-minimal 2:8.0.1763-19.0.1.el8_6.4 fixed in 2:8.0.1763-23.0.1.el8_10 | 0.1% Theoretical Threat | Post-Exploit |
| CVE-2025-6965 | LOW3.61 | sqlite-libs 3.26.0-19.0.1.el8_9 fixed in 3.26.0-20.el8_10 | 73.5% Actively Exploited | Post-Exploit |
| CVE-2025-68973 | LOW3.57 | gnupg2 2.2.20-3.el8_6 fixed in 2.2.20-4.el8_10 | 0.1% Theoretical Threat | Post-Exploit |
| CVE-2026-46483 | LOW3.57 | vim-minimal 2:8.0.1763-19.0.1.el8_6.4 fixed in 2:8.0.1763-27.0.1.el8_10 | 0.6% Theoretical Threat | Post-Exploit |
| CVE-2025-8058 | LOW3.57 | glibc 2.28-251.0.2.el8_10.2 fixed in 2.28-251.0.3.el8_10.25 | 0.2% Theoretical Threat | Directly Exposed |
| CVE-2025-8058 | LOW3.57 | glibc-common 2.28-251.0.2.el8_10.2 fixed in 2.28-251.0.3.el8_10.25 | 0.2% Theoretical Threat | Directly Exposed |
| CVE-2025-8058 | LOW3.57 | glibc-langpack-en 2.28-251.0.2.el8_10.2 fixed in 2.28-251.0.3.el8_10.25 | 0.2% Theoretical Threat | Directly Exposed |
| CVE-2024-5535 | LOW3.54 | openssl 1:1.1.1k-12.el8_9 fixed in 1:1.1.1k-14.el8_6 | 5.6% Low-Moderate Risk | Post-Exploit |
| CVE-2019-12900 | LOW3.53 | bzip2-libs 1.0.6-26.el8 fixed in 1.0.6-28.el8_10 | 8.1% Low-Moderate Risk | Post-Exploit |
| CVE-2024-6923 | LOW3.47 | platform-python 3.6.8-62.0.1.el8_10 fixed in 3.6.8-67.0.1.el8_10 | 0.8% Theoretical Threat | Post-Exploit |
| CVE-2024-6923 | LOW3.47 | python3-libs 3.6.8-62.0.1.el8_10 fixed in 3.6.8-67.0.1.el8_10 | 0.8% Theoretical Threat | Post-Exploit |
| CVE-2025-9820 | LOW3.4 | gnutls 3.6.16-8.el8_9.3 fixed in 3.6.16-8.el8_10.5 | 0.2% Theoretical Threat | Directly Exposed |
| CVE-2024-4741 | LOW3.36 | openssl 1:1.1.1k-12.el8_9 fixed in 1:1.1.1k-16.el8_6 | 2.9% Low-Moderate Risk | Post-Exploit |
| CVE-2025-9230 | LOW3.36 | openssl 1:1.1.1k-12.el8_9 fixed in 1:1.1.1k-14.el8_10 | 1.7% Low-Moderate Risk | Post-Exploit |
| CVE-2026-35387 | LOW3.31 | openssh 8.0p1-24.0.1.el8 fixed in 8.0p1-29.0.1.el8_10 | 0.2% Theoretical Threat | Post-Exploit |
| CVE-2026-35387 | LOW3.31 | openssh-clients 8.0p1-24.0.1.el8 fixed in 8.0p1-29.0.1.el8_10 | 0.2% Theoretical Threat | Post-Exploit |
| CVE-2026-35387 | LOW3.31 | openssh-server 8.0p1-24.0.1.el8 fixed in 8.0p1-29.0.1.el8_10 | 0.2% Theoretical Threat | Post-Exploit |
| CVE-2024-34397 | LOW3.23 | glib2 2.56.4-162.el8 fixed in 2.56.4-166.el8_10 | 0.8% Theoretical Threat | Directly Exposed |
| CVE-2025-9086 | LOW3.18 | curl 7.61.1-34.el8 fixed in 7.61.1-34.el8_10.9 | 1.3% Low-Moderate Risk | Post-Exploit |
| CVE-2025-9086 | LOW3.18 | libcurl 7.61.1-34.el8 fixed in 7.61.1-34.el8_10.9 | 1.3% Low-Moderate Risk | Post-Exploit |
| CVE-2025-14104 | LOW3.11 | util-linux 2.32.1-46.0.1.el8 fixed in 2.32.1-48.0.1.el8_10 | 0.2% Theoretical Threat | Post-Exploit |
| CVE-2024-11187 | LOW3.1 | bind-export-libs 32:9.11.36-14.el8_10 fixed in 32:9.11.36-16.el8_10.4 | 15.3% High Exploitation Risk | Post-Exploit |
| CVE-2024-2398 | LOW3.1 | curl 7.61.1-34.el8 fixed in 7.61.1-34.el8_10.2 | 36.1% High Exploitation Risk | Post-Exploit |
| CVE-2024-2398 | LOW3.1 | libcurl 7.61.1-34.el8 fixed in 7.61.1-34.el8_10.2 | 36.1% High Exploitation Risk | Post-Exploit |
| CVE-2025-40909 | LOW3.01 | perl-Data-Dumper 2.167-399.el8 fixed in 2.174-440.module+el8.10.0+90354+a7e78d72 | 0.4% Theoretical Threat | Post-Exploit |
| CVE-2025-40909 | LOW3.01 | perl-Digest-MD5 2.55-396.el8 fixed in 2.58-1.module+el8.10.0+90354+a7e78d72 | 0.4% Theoretical Threat | Post-Exploit |
| CVE-2025-40909 | LOW3.01 | perl-Encode 4:2.97-3.el8 fixed in 4:3.08-461.module+el8.10.0+90354+a7e78d72 | 0.4% Theoretical Threat | Post-Exploit |
| CVE-2025-40909 | LOW3.01 | perl-Errno 1.28-422.el8 fixed in 1.30-474.module+el8.10.0+90876+9a50c25b | 0.4% Theoretical Threat | Post-Exploit |
| CVE-2025-40909 | LOW3.01 | perl-IO 1.38-422.el8 fixed in 1.43-474.module+el8.10.0+90876+9a50c25b | 0.4% Theoretical Threat | Post-Exploit |
| CVE-2025-40909 | LOW3.01 | perl-MIME-Base64 3.15-396.el8 fixed in 3.15-1001.module+el8.10.0+90354+a7e78d72 | 0.4% Theoretical Threat | Post-Exploit |
| CVE-2025-40909 | LOW3.01 | perl-PathTools 3.74-1.el8 fixed in 3.78-439.module+el8.10.0+90354+a7e78d72 | 0.4% Theoretical Threat | Post-Exploit |
| CVE-2025-40909 | LOW3.01 | perl-Scalar-List-Utils 3:1.49-2.el8 fixed in 4:1.55-457.module+el8.10.0+90354+a7e78d72 | 0.4% Theoretical Threat | Post-Exploit |
| CVE-2025-40909 | LOW3.01 | perl-Socket 4:2.027-3.el8 fixed in 4:2.031-1.module+el8.10.0+90354+a7e78d72 | 0.4% Theoretical Threat | Post-Exploit |
| CVE-2025-40909 | LOW3.01 | perl-Storable 1:3.11-3.el8 fixed in 1:3.21-457.module+el8.10.0+90354+a7e78d72 | 0.4% Theoretical Threat | Post-Exploit |
| CVE-2025-40909 | LOW3.01 | perl-Unicode-Normalize 1.25-396.el8 fixed in 1.27-458.module+el8.10.0+90354+a7e78d72 | 0.4% Theoretical Threat | Post-Exploit |
| CVE-2025-40909 | LOW3.01 | perl-interpreter 4:5.26.3-422.el8 fixed in 4:5.32.1-474.module+el8.10.0+90876+9a50c25b | 0.4% Theoretical Threat | Post-Exploit |
| CVE-2025-40909 | LOW3.01 | perl-libs 4:5.26.3-422.el8 fixed in 4:5.32.1-474.module+el8.10.0+90876+9a50c25b | 0.4% Theoretical Threat | Post-Exploit |
| CVE-2025-40909 | LOW3.01 | perl-macros 4:5.26.3-422.el8 fixed in 4:5.32.1-474.module+el8.10.0+90876+9a50c25b | 0.4% Theoretical Threat | Post-Exploit |
| CVE-2025-40909 | LOW3.01 | perl-threads 1:2.21-2.el8 fixed in 1:2.25-457.module+el8.10.0+90354+a7e78d72 | 0.4% Theoretical Threat | Post-Exploit |
| CVE-2025-40909 | LOW3.01 | perl-threads-shared 1.58-2.el8 fixed in 1.61-457.module+el8.10.0+90354+a7e78d72 | 0.4% Theoretical Threat | Post-Exploit |
| CVE-2025-14087 | LOW3 | glib2 2.56.4-162.el8 fixed in 2.56.4-169.el8_10 | 0.8% Theoretical Threat | Post-Exploit |
| CVE-2026-45447 | LOW2.92 | compat-openssl10 1:1.0.2o-4.el8_6 fixed in 1:1.0.2o-4.el8_10.3 | 2.7% Low-Moderate Risk | Post-Exploit |
| CVE-2025-5318 | LOW2.92 | libssh 0.9.6-14.el8 fixed in 0.9.6-15.el8_10 | 2.4% Low-Moderate Risk | Post-Exploit |
| CVE-2019-17543 | LOW2.92 | lz4-libs 1.8.3-3.el8_4 fixed in 1.8.3-5.el8_10 | 9.1% Low-Moderate Risk | Post-Exploit |
| CVE-2026-45447 | LOW2.92 | openssl 1:1.1.1k-12.el8_9 fixed in 1:1.1.1k-16.el8_6 | 2.7% Low-Moderate Risk | Post-Exploit |
| CVE-2026-45447 | LOW2.92 | openssl-libs 1:1.1.1k-12.el8_9 fixed in 1:1.1.1k-16.el8_6 | 2.7% Low-Moderate Risk | Post-Exploit |
| CVE-2020-11023 | LOW2.86 | libgcc 8.5.0-22.0.1.el8_10 fixed in 8.5.0-23.0.1.el8_10 | 83.8% Actively Exploited | Post-Exploit |
| CVE-2026-28417 | LOW2.81 | vim-minimal 2:8.0.1763-19.0.1.el8_6.4 fixed in 2:8.0.1763-22.0.1.el8_10.1 | 1.2% Low-Moderate Risk | Post-Exploit |
| CVE-2026-42496 | LOW2.78 | perl-Data-Dumper 2.167-399.el8 fixed in 2.174-440.module+el8.10.0+90354+a7e78d72 | 0.4% Theoretical Threat | Post-Exploit |
| CVE-2026-42496 | LOW2.78 | perl-Digest-MD5 2.55-396.el8 fixed in 2.58-1.module+el8.10.0+90354+a7e78d72 | 0.4% Theoretical Threat | Post-Exploit |
| CVE-2026-42496 | LOW2.78 | perl-Encode 4:2.97-3.el8 fixed in 4:3.08-461.module+el8.10.0+90354+a7e78d72 | 0.4% Theoretical Threat | Post-Exploit |
| CVE-2026-42496 | LOW2.78 | perl-Errno 1.28-422.el8 fixed in 1.30-474.module+el8.10.0+90933+61492164 | 0.4% Theoretical Threat | Post-Exploit |
| CVE-2026-42496 | LOW2.78 | perl-IO 1.38-422.el8 fixed in 1.43-474.module+el8.10.0+90933+61492164 | 0.4% Theoretical Threat | Post-Exploit |
| CVE-2026-42496 | LOW2.78 | perl-MIME-Base64 3.15-396.el8 fixed in 3.15-1001.module+el8.10.0+90354+a7e78d72 | 0.4% Theoretical Threat | Post-Exploit |
| CVE-2025-61984 | LOW2.7 | openssh 8.0p1-24.0.1.el8 fixed in 8.0p1-27.0.1.el8_10 | 0.2% Theoretical Threat | Post-Exploit |
| CVE-2025-61985 | LOW2.7 | openssh 8.0p1-24.0.1.el8 fixed in 8.0p1-27.0.1.el8_10 | 0.1% Theoretical Threat | Post-Exploit |
| CVE-2025-61984 | LOW2.7 | openssh-clients 8.0p1-24.0.1.el8 fixed in 8.0p1-27.0.1.el8_10 | 0.2% Theoretical Threat | Post-Exploit |
| CVE-2025-61985 | LOW2.7 | openssh-clients 8.0p1-24.0.1.el8 fixed in 8.0p1-27.0.1.el8_10 | 0.1% Theoretical Threat | Post-Exploit |
| CVE-2025-61984 | LOW2.7 | openssh-server 8.0p1-24.0.1.el8 fixed in 8.0p1-27.0.1.el8_10 | 0.2% Theoretical Threat | Post-Exploit |
| CVE-2025-61985 | LOW2.7 | openssh-server 8.0p1-24.0.1.el8 fixed in 8.0p1-27.0.1.el8_10 | 0.1% Theoretical Threat | Post-Exploit |
| CVE-2025-12084 | LOW2.7 | platform-python 3.6.8-62.0.1.el8_10 fixed in 3.6.8-72.0.1.el8_10 | 0.7% Theoretical Threat | Post-Exploit |
| CVE-2025-12084 | LOW2.7 | python3-libs 3.6.8-62.0.1.el8_10 fixed in 3.6.8-72.0.1.el8_10 | 0.7% Theoretical Threat | Post-Exploit |
| CVE-2026-47167 | LOW2.7 | vim-minimal 2:8.0.1763-19.0.1.el8_6.4 fixed in 2:8.0.1763-27.0.1.el8_10 | 0.1% Theoretical Threat | Post-Exploit |
| CVE-2026-0865 | LOW2.29 | platform-python 3.6.8-62.0.1.el8_10 fixed in 3.6.8-73.0.1.el8_10 | 0.5% Theoretical Threat | Post-Exploit |
| CVE-2026-0865 | LOW2.29 | python3-libs 3.6.8-62.0.1.el8_10 fixed in 3.6.8-73.0.1.el8_10 | 0.5% Theoretical Threat | Post-Exploit |
| CVE-2024-4032 | LOW2.22 | platform-python 3.6.8-62.0.1.el8_10 fixed in 3.6.8-67.0.1.el8_10 | 1.0% Low-Moderate Risk | Post-Exploit |
| CVE-2024-4032 | LOW2.22 | python3-libs 3.6.8-62.0.1.el8_10 fixed in 3.6.8-67.0.1.el8_10 | 1.0% Low-Moderate Risk | Post-Exploit |
| CVE-2025-6170 | LOW2.12 | libxml2 2.9.7-18.el8_10.1 fixed in 2.9.7-21.el8_10.6 | 0.2% Theoretical Threat | Directly Exposed |
| CVE-2025-53905 | LOW2.09 | vim-minimal 2:8.0.1763-19.0.1.el8_6.4 fixed in 2:8.0.1763-21.0.1.el8_10 | 0.2% Theoretical Threat | Post-Exploit |
| CVE-2025-53906 | LOW2.09 | vim-minimal 2:8.0.1763-19.0.1.el8_6.4 fixed in 2:8.0.1763-21.0.1.el8_10 | 0.7% Theoretical Threat | Post-Exploit |
| CVE-2024-11168 | LOW1.89 | platform-python 3.6.8-62.0.1.el8_10 fixed in 3.6.8-69.0.1.el8_10 | 0.7% Theoretical Threat | Post-Exploit |
| CVE-2024-11168 | LOW1.89 | python3-libs 3.6.8-62.0.1.el8_10 fixed in 3.6.8-69.0.1.el8_10 | 0.7% Theoretical Threat | Post-Exploit |
| CVE-2026-4519 | LOW1.68 | platform-python 3.6.8-62.0.1.el8_10 fixed in 3.6.8-75.0.1.el8_10 | 0.3% Theoretical Threat | Post-Exploit |
| CVE-2026-4519 | LOW1.68 | python3-libs 3.6.8-62.0.1.el8_10 fixed in 3.6.8-75.0.1.el8_10 | 0.3% Theoretical Threat | Post-Exploit |
| CVE-2026-35388 | LOW1.27 | openssh 8.0p1-24.0.1.el8 fixed in 8.0p1-29.0.1.el8_10 | 0.1% Theoretical Threat | Post-Exploit |
| CVE-2026-35388 | LOW1.27 | openssh-clients 8.0p1-24.0.1.el8 fixed in 8.0p1-29.0.1.el8_10 | 0.1% Theoretical Threat | Post-Exploit |
| CVE-2026-35388 | LOW1.27 | openssh-server 8.0p1-24.0.1.el8 fixed in 8.0p1-29.0.1.el8_10 | 0.1% Theoretical Threat | Post-Exploit |
| CVE-2024-37371 | NONE0 | krb5-devel 1.18.2-27.0.1.el8_10 fixed in 1.18.2-29.0.1.el8_10 | 1.9% Low-Moderate Risk | Not Applicable |
| CVE-2024-3596 | NONE0 | krb5-devel 1.18.2-27.0.1.el8_10 fixed in 1.18.2-30.0.1.el8_10 | 14.9% High Exploitation Risk | Not Applicable |
| CVE-2026-45447 | NONE0 | openssl-devel 1:1.1.1k-12.el8_9 fixed in 1:1.1.1k-16.el8_6 | 2.7% Low-Moderate Risk | Not Applicable |
| CVE-2026-40355 | NONE0 | krb5-devel 1.18.2-27.0.1.el8_10 fixed in 1.18.2-34.0.1.el8_10 | 0.5% Theoretical Threat | Not Applicable |
| CVE-2026-40356 | NONE0 | krb5-devel 1.18.2-27.0.1.el8_10 fixed in 1.18.2-34.0.1.el8_10 | 0.5% Theoretical Threat | Not Applicable |
| CVE-2024-37370 | NONE0 | krb5-devel 1.18.2-27.0.1.el8_10 fixed in 1.18.2-29.0.1.el8_10 | 0.7% Theoretical Threat | Not Applicable |
| CVE-2026-28390 | NONE0 | openssl-devel 1:1.1.1k-12.el8_9 fixed in 1:1.1.1k-17.el8_6 | 0.8% Theoretical Threat | Not Applicable |
| CVE-2025-69419 | NONE0 | openssl-devel 1:1.1.1k-12.el8_9 fixed in 1:1.1.1k-15.el8_6 | 0.4% Theoretical Threat | Not Applicable |
| CVE-2025-24528 | NONE0 | krb5-devel 1.18.2-27.0.1.el8_10 fixed in 1.18.2-31.0.1.el8_10 | 0.6% Theoretical Threat | Not Applicable |
| CVE-2025-3576 | NONE0 | krb5-devel 1.18.2-27.0.1.el8_10 fixed in 1.18.2-32.0.1.el8_10 | 0.3% Theoretical Threat | Not Applicable |
| CVE-2024-5535 | NONE0 | openssl-devel 1:1.1.1k-12.el8_9 fixed in 1:1.1.1k-14.el8_6 | 5.6% Low-Moderate Risk | Not Applicable |
| CVE-2024-4741 | NONE0 | openssl-devel 1:1.1.1k-12.el8_9 fixed in 1:1.1.1k-16.el8_6 | 2.9% Low-Moderate Risk | Not Applicable |
| CVE-2025-9230 | NONE0 | openssl-devel 1:1.1.1k-12.el8_9 fixed in 1:1.1.1k-14.el8_10 | 1.7% Low-Moderate Risk | Not Applicable |
| CVE-2025-4598 | NONE0 | systemd 239-82.0.1.el8 fixed in 239-82.0.4.el8_10.5 | 0.7% Theoretical Threat | Not Applicable |
Which CVEs are actually reachable — is the vulnerable code even linked and callable.
Live-container probes: default user, writable paths, capabilities, exposed ports.
A step-by-step hardened build plan, with parity tests proving nothing breaks.
Want to check another image? Run a full scan with the Docker Security Scanner.