Vulnerability Reportpercona:5

percona:ps-5.7.44percona:ps-5.7percona:ps-5percona:centospercona:5.7.44-centospercona:5.7.44percona:5.7-centospercona:5.7percona:5-centospercona:5
digestsha256:c93cff42702f0f94477c1ddc8ee36784e8bfd8c91bbe6be9126f1fb2461fcd62

Executive Summary

Last scanned:

Threat Score
100/100DANGEROUS
Reputation
TRUSTED

This image poses a critical security risk and must not be used in production, especially as an internet-facing service. An attacker could exploit these vulnerabilities to achieve remote code execution, denial of service, or authentication bypass, potentially compromising the MySQL database. Disabling XML schema validation and using certificate-based TLS (instead of RSA-PSK) would eliminate some vulnerabilities (CVE-2024-56171 and CVE-2026-42010), but the critical CVE-2025-49796 in libxml2 requires no special configuration and is fully exploitable. Several vulnerabilities require non-default configurations (e.g., CRL checking, RSA-PSK, schema validation) and may not be exploitable under standard settings, but the overall risk remains high.

Vulnerabilities

Vulnerability Log

293 total
CVE IDAdjusted SeverityPackageExploit ProbabilityRisk Context
CVE-2025-49796CRITICAL9.1
libxml2
2.9.7-18.el8_10.1
fixed in 2.9.7-21.el8_10.1
1.4%
Low-Moderate Risk
Directly ExposedContext importance: HIGH
CVE-2020-11023HIGH7.93
libstdc++
8.5.0-22.0.1.el8_10
fixed in 8.5.0-23.0.1.el8_10
83.8%
Actively Exploited
Directly Exposed
CVE-2024-45491HIGH7.84
expat
2.2.5-13.0.1.el8_10
fixed in 2.2.5-15.0.1.el8_10
1.1%
Low-Moderate Risk
Directly ExposedContext importance: MEDIUM
CVE-2024-45492HIGH7.84
expat
2.2.5-13.0.1.el8_10
fixed in 2.2.5-15.0.1.el8_10
1.4%
Low-Moderate Risk
Directly ExposedContext importance: MEDIUM
CVE-2026-42010HIGH7.84
gnutls
3.6.16-8.el8_9.3
fixed in 3.6.16-8.el8_10.6
1.1%
Low-Moderate Risk
Directly ExposedContext importance: MEDIUM
CVE-2024-56171HIGH7.84
libxml2
2.9.7-18.el8_10.1
fixed in 2.9.7-19.el8_10
1.1%
Low-Moderate Risk
Directly ExposedContext importance: MEDIUM
CVE-2026-33845HIGH7.73
gnutls
3.6.16-8.el8_9.3
fixed in 3.6.16-8.el8_10.6
0.8%
Theoretical Threat
Directly Exposed
CVE-2025-49794HIGH7.73
libxml2
2.9.7-18.el8_10.1
fixed in 2.9.7-21.el8_10.1
0.7%
Theoretical Threat
Directly Exposed
CVE-2023-0286HIGH7.7
compat-openssl10
1:1.0.2o-4.el8_6
fixed in 1:1.0.2o-4.el8_10.1
59.5%
Actively Exploited
Directly ExposedContext importance: MEDIUM
CVE-2024-1737HIGH7.5
bind-export-libs
32:9.11.36-14.el8_10
fixed in 32:9.11.36-16.el8_10.2
2.1%
Low-Moderate Risk
Directly Exposed
CVE-2024-1975HIGH7.5
bind-export-libs
32:9.11.36-14.el8_10
fixed in 32:9.11.36-16.el8_10.2
2.1%
Low-Moderate Risk
Directly Exposed
CVE-2026-1519HIGH7.5
bind-export-libs
32:9.11.36-14.el8_10
fixed in 32:9.11.36-16.el8_10.7
1.5%
Low-Moderate Risk
Directly Exposed
CVE-2026-3039HIGH7.5
bind-export-libs
32:9.11.36-14.el8_10
fixed in 32:9.11.36-16.el8_10.8
1.0%
Low-Moderate Risk
Directly Exposed
CVE-2026-5946HIGH7.5
bind-export-libs
32:9.11.36-14.el8_10
fixed in 32:9.11.36-16.el8_10.8
1.8%
Low-Moderate Risk
Directly Exposed
CVE-2024-45490HIGH7.5
expat
2.2.5-13.0.1.el8_10
fixed in 2.2.5-15.0.1.el8_10
1.7%
Low-Moderate Risk
Directly Exposed
CVE-2024-8176HIGH7.5
expat
2.2.5-13.0.1.el8_10
fixed in 2.2.5-17.0.1.el8_10
1.6%
Low-Moderate Risk
Directly Exposed
CVE-2026-33846HIGH7.5
gnutls
3.6.16-8.el8_9.3
fixed in 3.6.16-8.el8_10.6
1.3%
Low-Moderate Risk
Directly Exposed
CVE-2026-42009HIGH7.5
gnutls
3.6.16-8.el8_9.3
fixed in 3.6.16-8.el8_10.6
1.3%
Low-Moderate Risk
Directly Exposed
CVE-2026-5121HIGH7.5
libarchive
3.3.3-5.el8
fixed in 3.3.3-7.el8_10
1.1%
Low-Moderate Risk
Directly Exposed
CVE-2025-6021HIGH7.5
libxml2
2.9.7-18.el8_10.1
fixed in 2.9.7-21.el8_10.1
1.1%
Low-Moderate Risk
Directly Exposed
CVE-2023-2953HIGH7.5
openldap
2.4.46-18.el8
fixed in 2.4.46-19.el8_10
1.9%
Low-Moderate Risk
Directly Exposed
CVE-2025-5372HIGH7.48
libssh
0.9.6-14.el8
fixed in 0.9.6-16.el8_10
0.4%
Theoretical Threat
Directly Exposed
CVE-2025-40778HIGH7.31
bind-export-libs
32:9.11.36-14.el8_10
fixed in 32:9.11.36-16.el8_10.6
0.5%
Theoretical Threat
Directly Exposed
CVE-2024-37371HIGH7.28
krb5-libs
1.18.2-27.0.1.el8_10
fixed in 1.18.2-29.0.1.el8_10
1.9%
Low-Moderate Risk
Directly ExposedContext importance: MEDIUM
CVE-2024-37371HIGH7.28
libkadm5
1.18.2-27.0.1.el8_10
fixed in 1.18.2-29.0.1.el8_10
1.9%
Low-Moderate Risk
Directly ExposedContext importance: MEDIUM
CVE-2024-52533HIGH7
glib2
2.56.4-162.el8
fixed in 2.56.4-166.el8_10
1.3%
Low-Moderate Risk
Directly Exposed
CVE-2026-42013MEDIUM6.97
gnutls
3.6.16-8.el8_9.3
fixed in 3.6.16-8.el8_10.6
0.4%
Theoretical Threat
Directly Exposed
CVE-2026-5260MEDIUM6.97
gnutls
3.6.16-8.el8_9.3
fixed in 3.6.16-8.el8_10.6
0.7%
Theoretical Threat
Directly Exposed
CVE-2025-32990MEDIUM6.97
gnutls
3.6.16-8.el8_9.3
fixed in 3.6.16-8.el8_10.4
0.7%
Theoretical Threat
Directly Exposed
CVE-2024-28182MEDIUM6.89
libnghttp2
1.33.0-5.el8_9
fixed in 1.33.0-6.el8_10.1
85.0%
Actively Exploited
Directly Exposed
CVE-2025-5914MEDIUM6.63
libarchive
3.3.3-5.el8
fixed in 3.3.3-6.el8_10
0.3%
Theoretical Threat
Directly Exposed
CVE-2026-48864MEDIUM6.63
libsolv
0.7.20-6.el8
fixed in 0.7.20-7.el8_10
0.2%
Theoretical Threat
Directly Exposed
CVE-2025-7425MEDIUM6.63
libxml2
2.9.7-18.el8_10.1
fixed in 2.9.7-21.el8_10.2
0.3%
Theoretical Threat
Directly Exposed
CVE-2022-49043MEDIUM6.63
libxml2
2.9.7-18.el8_10.1
fixed in 2.9.7-18.el8_10.2
0.3%
Theoretical Threat
Directly Exposed
CVE-2025-6020MEDIUM6.63
pam
1.3.1-33.el8
fixed in 1.3.1-38.0.1.el8_10
0.4%
Theoretical Threat
Directly Exposed
CVE-2025-32988MEDIUM6.56
gnutls
3.6.16-8.el8_9.3
fixed in 3.6.16-8.el8_10.4
1.2%
Low-Moderate Risk
Directly ExposedContext importance: MEDIUM
CVE-2025-13601MEDIUM6.54
glib2
2.56.4-162.el8
fixed in 2.56.4-168.el8_10
0.3%
Theoretical Threat
Directly Exposed
CVE-2025-24928MEDIUM6.54
libxml2
2.9.7-18.el8_10.1
fixed in 2.9.7-19.el8_10
0.4%
Theoretical Threat
Directly Exposed
CVE-2026-28390MEDIUM6.38
compat-openssl10
1:1.0.2o-4.el8_6
fixed in 1:1.0.2o-4.el8_10.2
0.8%
Theoretical Threat
Directly Exposed
CVE-2026-45186MEDIUM6.38
expat
2.2.5-13.0.1.el8_10
fixed in 2.5.0-2.el8_10
0.4%
Theoretical Threat
Directly Exposed
CVE-2026-40355MEDIUM6.38
krb5-libs
1.18.2-27.0.1.el8_10
fixed in 1.18.2-34.0.1.el8_10
0.5%
Theoretical Threat
Directly Exposed
CVE-2026-40356MEDIUM6.38
krb5-libs
1.18.2-27.0.1.el8_10
fixed in 1.18.2-34.0.1.el8_10
0.5%
Theoretical Threat
Directly Exposed
CVE-2024-37370MEDIUM6.38
krb5-libs
1.18.2-27.0.1.el8_10
fixed in 1.18.2-29.0.1.el8_10
0.7%
Theoretical Threat
Directly Exposed
CVE-2026-4424MEDIUM6.38
libarchive
3.3.3-5.el8
fixed in 3.3.3-7.el8_10
0.9%
Theoretical Threat
Directly Exposed
CVE-2026-40355MEDIUM6.38
libkadm5
1.18.2-27.0.1.el8_10
fixed in 1.18.2-34.0.1.el8_10
0.5%
Theoretical Threat
Directly Exposed
CVE-2026-40356MEDIUM6.38
libkadm5
1.18.2-27.0.1.el8_10
fixed in 1.18.2-34.0.1.el8_10
0.5%
Theoretical Threat
Directly Exposed
CVE-2024-37370MEDIUM6.38
libkadm5
1.18.2-27.0.1.el8_10
fixed in 1.18.2-29.0.1.el8_10
0.7%
Theoretical Threat
Directly Exposed
CVE-2026-27135MEDIUM6.38
libnghttp2
1.33.0-5.el8_9
fixed in 1.33.0-6.el8_10.2
0.8%
Theoretical Threat
Directly Exposed
CVE-2025-32414MEDIUM6.38
libxml2
2.9.7-18.el8_10.1
fixed in 2.9.7-20.el8_10
0.4%
Theoretical Threat
Directly Exposed
CVE-2025-32415MEDIUM6.38
libxml2
2.9.7-18.el8_10.1
fixed in 2.9.7-21.el8_10.3
0.6%
Theoretical Threat
Directly Exposed
CVE-2026-28390MEDIUM6.38
openssl-libs
1:1.1.1k-12.el8_9
fixed in 1:1.1.1k-17.el8_6
0.8%
Theoretical Threat
Directly Exposed
CVE-2026-3833MEDIUM6.29
gnutls
3.6.16-8.el8_9.3
fixed in 3.6.16-8.el8_10.6
0.6%
Theoretical Threat
Directly Exposed
CVE-2026-42011MEDIUM6.29
gnutls
3.6.16-8.el8_9.3
fixed in 3.6.16-8.el8_10.6
0.5%
Theoretical Threat
Directly Exposed
CVE-2025-69419MEDIUM6.29
openssl-libs
1:1.1.1k-12.el8_9
fixed in 1:1.1.1k-15.el8_6
0.4%
Theoretical Threat
Directly Exposed
CVE-2024-10963MEDIUM6.29
pam
1.3.1-33.el8
fixed in 1.3.1-36.0.1.el8_10
0.8%
Theoretical Threat
Directly Exposed
CVE-2026-42012MEDIUM6.03
gnutls
3.6.16-8.el8_9.3
fixed in 3.6.16-8.el8_10.6
0.4%
Theoretical Threat
Directly Exposed
CVE-2025-4802MEDIUM5.95
glibc
2.28-251.0.2.el8_10.2
fixed in 2.28-251.0.3.el8_10.22
0.6%
Theoretical Threat
Directly Exposed
CVE-2025-4802MEDIUM5.95
glibc-common
2.28-251.0.2.el8_10.2
fixed in 2.28-251.0.3.el8_10.22
0.6%
Theoretical Threat
Directly Exposed
CVE-2025-4802MEDIUM5.95
glibc-langpack-en
2.28-251.0.2.el8_10.2
fixed in 2.28-251.0.3.el8_10.22
0.6%
Theoretical Threat
Directly Exposed
CVE-2026-4878MEDIUM5.95
libcap
2.48-6.el8_9
fixed in 2.48-6.el8_10.1
0.2%
Theoretical Threat
Directly Exposed
CVE-2024-50602MEDIUM5.9
expat
2.2.5-13.0.1.el8_10
fixed in 2.2.5-16.0.1.el8_10
1.0%
Low-Moderate Risk
Directly Exposed
CVE-2025-13151MEDIUM5.9
libtasn1
4.13-4.el8_7
fixed in 4.13-6.el8_10
1.1%
Low-Moderate Risk
Directly Exposed
CVE-2024-5535MEDIUM5.9
openssl-libs
1:1.1.1k-12.el8_9
fixed in 1:1.1.1k-14.el8_6
5.6%
Low-Moderate Risk
Directly Exposed
CVE-2026-42014MEDIUM5.61
gnutls
3.6.16-8.el8_9.3
fixed in 3.6.16-8.el8_10.6
0.1%
Theoretical Threat
Directly Exposed
CVE-2024-4741MEDIUM5.6
openssl-libs
1:1.1.1k-12.el8_9
fixed in 1:1.1.1k-16.el8_6
2.9%
Low-Moderate Risk
Directly Exposed
CVE-2025-9230MEDIUM5.6
openssl-libs
1:1.1.1k-12.el8_9
fixed in 1:1.1.1k-14.el8_10
1.7%
Low-Moderate Risk
Directly Exposed
CVE-2025-14512MEDIUM5.52
glib2
2.56.4-162.el8
fixed in 2.56.4-169.el8_10
0.5%
Theoretical Threat
Directly Exposed
CVE-2025-6395MEDIUM5.52
gnutls
3.6.16-8.el8_9.3
fixed in 3.6.16-8.el8_10.4
0.6%
Theoretical Threat
Directly Exposed
CVE-2025-24528MEDIUM5.52
krb5-libs
1.18.2-27.0.1.el8_10
fixed in 1.18.2-31.0.1.el8_10
0.6%
Theoretical Threat
Directly Exposed
CVE-2025-24528MEDIUM5.52
libkadm5
1.18.2-27.0.1.el8_10
fixed in 1.18.2-31.0.1.el8_10
0.6%
Theoretical Threat
Directly Exposed
CVE-2024-34459MEDIUM5.5
libxml2
2.9.7-18.el8_10.1
fixed in 2.9.7-21.el8_10.5
2.3%
Low-Moderate Risk
Directly Exposed
CVE-2025-59375MEDIUM5.3
expat
2.2.5-13.0.1.el8_10
fixed in 2.5.0-1.el8_10
1.3%
Low-Moderate Risk
Directly Exposed
CVE-2024-12243MEDIUM5.3
gnutls
3.6.16-8.el8_9.3
fixed in 3.6.16-8.el8_10.3
1.2%
Low-Moderate Risk
Directly Exposed
CVE-2024-12133MEDIUM5.3
libtasn1
4.13-4.el8_7
fixed in 4.13-5.el8_10
1.1%
Low-Moderate Risk
Directly Exposed
CVE-2025-14104MEDIUM5.18
libblkid
2.32.1-46.0.1.el8
fixed in 2.32.1-48.0.1.el8_10
0.2%
Theoretical Threat
Directly Exposed
CVE-2025-14104MEDIUM5.18
libfdisk
2.32.1-46.0.1.el8
fixed in 2.32.1-48.0.1.el8_10
0.2%
Theoretical Threat
Directly Exposed
CVE-2025-14104MEDIUM5.18
libmount
2.32.1-46.0.1.el8
fixed in 2.32.1-48.0.1.el8_10
0.2%
Theoretical Threat
Directly Exposed
CVE-2025-14104MEDIUM5.18
libsmartcols
2.32.1-46.0.1.el8
fixed in 2.32.1-48.0.1.el8_10
0.2%
Theoretical Threat
Directly Exposed
CVE-2025-14104MEDIUM5.18
libuuid
2.32.1-46.0.1.el8
fixed in 2.32.1-48.0.1.el8_10
0.2%
Theoretical Threat
Directly Exposed
CVE-2025-15281MEDIUM5.02
glibc
2.28-251.0.2.el8_10.2
fixed in 2.28-251.0.4.el8_10.31
0.3%
Theoretical Threat
Directly Exposed
CVE-2025-15281MEDIUM5.02
glibc-common
2.28-251.0.2.el8_10.2
fixed in 2.28-251.0.4.el8_10.31
0.3%
Theoretical Threat
Directly Exposed
CVE-2025-15281MEDIUM5.02
glibc-langpack-en
2.28-251.0.2.el8_10.2
fixed in 2.28-251.0.4.el8_10.31
0.3%
Theoretical Threat
Directly Exposed
CVE-2025-3576MEDIUM5.02
krb5-libs
1.18.2-27.0.1.el8_10
fixed in 1.18.2-32.0.1.el8_10
0.3%
Theoretical Threat
Directly Exposed
CVE-2025-3576MEDIUM5.02
libkadm5
1.18.2-27.0.1.el8_10
fixed in 1.18.2-32.0.1.el8_10
0.3%
Theoretical Threat
Directly Exposed
CVE-2025-0395MEDIUM4.67
glibc
2.28-251.0.2.el8_10.2
fixed in 2.28-251.0.3.el8_10.16
0.3%
Theoretical Threat
Directly Exposed
CVE-2025-0395MEDIUM4.67
glibc-common
2.28-251.0.2.el8_10.2
fixed in 2.28-251.0.3.el8_10.16
0.3%
Theoretical Threat
Directly Exposed
CVE-2025-0395MEDIUM4.67
glibc-langpack-en
2.28-251.0.2.el8_10.2
fixed in 2.28-251.0.3.el8_10.16
0.3%
Theoretical Threat
Directly Exposed
CVE-2025-9714MEDIUM4.67
libxml2
2.9.7-18.el8_10.1
fixed in 2.9.7-21.el8_10.4
0.1%
Theoretical Threat
Directly Exposed
CVE-2026-42496MEDIUM4.64
perl-PathTools
3.74-1.el8
fixed in 3.78-439.module+el8.10.0+90354+a7e78d72
0.4%
Theoretical Threat
Post-Exploit
CVE-2026-42496MEDIUM4.64
perl-Scalar-List-Utils
3:1.49-2.el8
fixed in 4:1.55-457.module+el8.10.0+90354+a7e78d72
0.4%
Theoretical Threat
Post-Exploit
CVE-2026-42496MEDIUM4.64
perl-Socket
4:2.027-3.el8
fixed in 4:2.031-1.module+el8.10.0+90354+a7e78d72
0.4%
Theoretical Threat
Post-Exploit
CVE-2026-42496MEDIUM4.64
perl-Storable
1:3.11-3.el8
fixed in 1:3.21-457.module+el8.10.0+90354+a7e78d72
0.4%
Theoretical Threat
Post-Exploit
CVE-2026-42496MEDIUM4.64
perl-Unicode-Normalize
1.25-396.el8
fixed in 1.27-458.module+el8.10.0+90354+a7e78d72
0.4%
Theoretical Threat
Post-Exploit
CVE-2026-42496MEDIUM4.64
perl-interpreter
4:5.26.3-422.el8
fixed in 4:5.32.1-474.module+el8.10.0+90933+61492164
0.4%
Theoretical Threat
Post-Exploit
CVE-2026-42496MEDIUM4.64
perl-libs
4:5.26.3-422.el8
fixed in 4:5.32.1-474.module+el8.10.0+90933+61492164
0.4%
Theoretical Threat
Post-Exploit
CVE-2026-42496MEDIUM4.64
perl-macros
4:5.26.3-422.el8
fixed in 4:5.32.1-474.module+el8.10.0+90933+61492164
0.4%
Theoretical Threat
Post-Exploit
CVE-2026-42496MEDIUM4.64
perl-threads
1:2.21-2.el8
fixed in 1:2.25-457.module+el8.10.0+90354+a7e78d72
0.4%
Theoretical Threat
Post-Exploit
CVE-2026-42496MEDIUM4.64
perl-threads-shared
1.58-2.el8
fixed in 1.61-457.module+el8.10.0+90354+a7e78d72
0.4%
Theoretical Threat
Post-Exploit
CVE-2025-4517MEDIUM4.56
platform-python
3.6.8-62.0.1.el8_10
fixed in 3.6.8-70.0.1.el8_10
1.2%
Low-Moderate Risk
Post-Exploit
CVE-2025-4517MEDIUM4.56
python3-libs
3.6.8-62.0.1.el8_10
fixed in 3.6.8-70.0.1.el8_10
1.2%
Low-Moderate Risk
Post-Exploit
CVE-2026-3497MEDIUM4.5
openssh
8.0p1-24.0.1.el8
fixed in 8.0p1-28.0.1.el8_10
2.2%
Low-Moderate Risk
Post-Exploit
CVE-2026-3497MEDIUM4.5
openssh-clients
8.0p1-24.0.1.el8
fixed in 8.0p1-28.0.1.el8_10
2.2%
Low-Moderate Risk
Post-Exploit
CVE-2026-3497MEDIUM4.5
openssh-server
8.0p1-24.0.1.el8
fixed in 8.0p1-28.0.1.el8_10
2.2%
Low-Moderate Risk
Post-Exploit
CVE-2025-4138MEDIUM4.5
platform-python
3.6.8-62.0.1.el8_10
fixed in 3.6.8-70.0.1.el8_10
1.1%
Low-Moderate Risk
Post-Exploit
CVE-2024-6232MEDIUM4.5
platform-python
3.6.8-62.0.1.el8_10
fixed in 3.6.8-67.0.1.el8_10
2.2%
Low-Moderate Risk
Post-Exploit
CVE-2025-4138MEDIUM4.5
python3-libs
3.6.8-62.0.1.el8_10
fixed in 3.6.8-70.0.1.el8_10
1.1%
Low-Moderate Risk
Post-Exploit
CVE-2024-6232MEDIUM4.5
python3-libs
3.6.8-62.0.1.el8_10
fixed in 3.6.8-67.0.1.el8_10
2.2%
Low-Moderate Risk
Post-Exploit
CVE-2026-0915MEDIUM4.5
glibc
2.28-251.0.2.el8_10.2
fixed in 2.28-251.0.4.el8_10.31
0.6%
Theoretical Threat
Directly Exposed
CVE-2026-4046MEDIUM4.5
glibc
2.28-251.0.2.el8_10.2
fixed in 2.28-251.0.4.el8_10.37
0.4%
Theoretical Threat
Directly Exposed
CVE-2026-0915MEDIUM4.5
glibc-common
2.28-251.0.2.el8_10.2
fixed in 2.28-251.0.4.el8_10.31
0.6%
Theoretical Threat
Directly Exposed
CVE-2026-4046MEDIUM4.5
glibc-common
2.28-251.0.2.el8_10.2
fixed in 2.28-251.0.4.el8_10.37
0.4%
Theoretical Threat
Directly Exposed
CVE-2026-0915MEDIUM4.5
glibc-langpack-en
2.28-251.0.2.el8_10.2
fixed in 2.28-251.0.4.el8_10.31
0.6%
Theoretical Threat
Directly Exposed
CVE-2026-4046MEDIUM4.5
glibc-langpack-en
2.28-251.0.2.el8_10.2
fixed in 2.28-251.0.4.el8_10.37
0.4%
Theoretical Threat
Directly Exposed
CVE-2026-42015MEDIUM4.5
gnutls
3.6.16-8.el8_9.3
fixed in 3.6.16-8.el8_10.6
0.7%
Theoretical Threat
Directly Exposed
CVE-2025-14831MEDIUM4.5
gnutls
3.6.16-8.el8_9.3
fixed in 3.6.16-8.el8_10.5
0.6%
Theoretical Threat
Directly Exposed
CVE-2026-47162MEDIUM4.49
vim-minimal
2:8.0.1763-19.0.1.el8_6.4
fixed in 2:8.0.1763-27.0.1.el8_10
0.2%
Theoretical Threat
Post-Exploit
CVE-2026-5450MEDIUM4.25
glibc
2.28-251.0.2.el8_10.2
fixed in 2.28-251.0.4.el8_10.38
0.5%
Theoretical Threat
Directly Exposed
CVE-2026-5450MEDIUM4.25
glibc-common
2.28-251.0.2.el8_10.2
fixed in 2.28-251.0.4.el8_10.38
0.5%
Theoretical Threat
Directly Exposed
CVE-2026-5450MEDIUM4.25
glibc-langpack-en
2.28-251.0.2.el8_10.2
fixed in 2.28-251.0.4.el8_10.38
0.5%
Theoretical Threat
Directly Exposed
CVE-2026-34982MEDIUM4.18
vim-minimal
2:8.0.1763-19.0.1.el8_6.4
fixed in 2:8.0.1763-22.0.1.el8_10.3
0.5%
Theoretical Threat
Post-Exploit
CVE-2026-35385MEDIUM4.13
openssh
8.0p1-24.0.1.el8
fixed in 8.0p1-29.0.1.el8_10
0.4%
Theoretical Threat
Post-Exploit
CVE-2026-35386MEDIUM4.13
openssh
8.0p1-24.0.1.el8
fixed in 8.0p1-29.0.1.el8_10
0.2%
Theoretical Threat
Post-Exploit
CVE-2026-35414MEDIUM4.13
openssh
8.0p1-24.0.1.el8
fixed in 8.0p1-29.0.1.el8_10
0.2%
Theoretical Threat
Post-Exploit
CVE-2026-35385MEDIUM4.13
openssh-clients
8.0p1-24.0.1.el8
fixed in 8.0p1-29.0.1.el8_10
0.4%
Theoretical Threat
Post-Exploit
CVE-2026-35386MEDIUM4.13
openssh-clients
8.0p1-24.0.1.el8
fixed in 8.0p1-29.0.1.el8_10
0.2%
Theoretical Threat
Post-Exploit
CVE-2026-35414MEDIUM4.13
openssh-clients
8.0p1-24.0.1.el8
fixed in 8.0p1-29.0.1.el8_10
0.2%
Theoretical Threat
Post-Exploit
CVE-2026-35385MEDIUM4.13
openssh-server
8.0p1-24.0.1.el8
fixed in 8.0p1-29.0.1.el8_10
0.4%
Theoretical Threat
Post-Exploit
CVE-2026-35386MEDIUM4.13
openssh-server
8.0p1-24.0.1.el8
fixed in 8.0p1-29.0.1.el8_10
0.2%
Theoretical Threat
Post-Exploit
CVE-2026-35414MEDIUM4.13
openssh-server
8.0p1-24.0.1.el8
fixed in 8.0p1-29.0.1.el8_10
0.2%
Theoretical Threat
Post-Exploit
CVE-2026-6100MEDIUM4.13
platform-python
3.6.8-62.0.1.el8_10
fixed in 3.6.8-76.0.1.el8_10
0.6%
Theoretical Threat
Post-Exploit
CVE-2026-6100MEDIUM4.13
python3-libs
3.6.8-62.0.1.el8_10
fixed in 3.6.8-76.0.1.el8_10
0.6%
Theoretical Threat
Post-Exploit
CVE-2025-26465MEDIUM4.08
openssh
8.0p1-24.0.1.el8
fixed in 8.0p1-26.0.1.el8_10
7.0%
Low-Moderate Risk
Post-Exploit
CVE-2025-26465MEDIUM4.08
openssh-clients
8.0p1-24.0.1.el8
fixed in 8.0p1-26.0.1.el8_10
7.0%
Low-Moderate Risk
Post-Exploit
CVE-2025-26465MEDIUM4.08
openssh-server
8.0p1-24.0.1.el8
fixed in 8.0p1-26.0.1.el8_10
7.0%
Low-Moderate Risk
Post-Exploit
CVE-2025-0938MEDIUM4.08
platform-python
3.6.8-62.0.1.el8_10
fixed in 3.6.8-74.0.1.el8_10
1.5%
Low-Moderate Risk
Post-Exploit
CVE-2025-0938MEDIUM4.08
python3-libs
3.6.8-62.0.1.el8_10
fixed in 3.6.8-74.0.1.el8_10
1.5%
Low-Moderate Risk
Post-Exploit
CVE-2025-4373MEDIUM4.08
glib2
2.56.4-162.el8
fixed in 2.56.4-166.el8_10
0.5%
Theoretical Threat
Directly Exposed
CVE-2024-10041MEDIUM4
pam
1.3.1-33.el8
fixed in 1.3.1-36.0.1.el8_10
0.3%
Theoretical Threat
Directly Exposed
CVE-2025-4598MEDIUM4
systemd-libs
239-82.0.1.el8
fixed in 239-82.0.4.el8_10.5
0.7%
Theoretical Threat
Directly Exposed
CVE-2025-4598MEDIUM4
systemd-pam
239-82.0.1.el8
fixed in 239-82.0.4.el8_10.5
0.7%
Theoretical Threat
Directly Exposed
CVE-2026-48962LOW3.98
perl-Data-Dumper
2.167-399.el8
fixed in 2.174-440.module+el8.10.0+90354+a7e78d72
0.3%
Theoretical Threat
Post-Exploit
CVE-2023-47038LOW3.98
perl-Data-Dumper
2.167-399.el8
fixed in 2.174-440.module+el8.10.0+90267+7012ad3b
0.8%
Theoretical Threat
Post-Exploit
CVE-2026-48962LOW3.98
perl-Digest-MD5
2.55-396.el8
fixed in 2.58-1.module+el8.10.0+90354+a7e78d72
0.3%
Theoretical Threat
Post-Exploit
CVE-2023-47038LOW3.98
perl-Digest-MD5
2.55-396.el8
fixed in 2.58-1.module+el8.10.0+90267+7012ad3b
0.8%
Theoretical Threat
Post-Exploit
CVE-2026-48962LOW3.98
perl-Encode
4:2.97-3.el8
fixed in 4:3.08-461.module+el8.10.0+90354+a7e78d72
0.3%
Theoretical Threat
Post-Exploit
CVE-2023-47038LOW3.98
perl-Encode
4:2.97-3.el8
fixed in 4:3.08-461.module+el8.10.0+90267+7012ad3b
0.8%
Theoretical Threat
Post-Exploit
CVE-2026-48962LOW3.98
perl-Errno
1.28-422.el8
fixed in 1.30-474.module+el8.10.0+90933+61492164
0.3%
Theoretical Threat
Post-Exploit
CVE-2023-47038LOW3.98
perl-Errno
1.28-422.el8
fixed in 1.30-473.module+el8.10.0+90267+7012ad3b
0.8%
Theoretical Threat
Post-Exploit
CVE-2026-48962LOW3.98
perl-IO
1.38-422.el8
fixed in 1.43-474.module+el8.10.0+90933+61492164
0.3%
Theoretical Threat
Post-Exploit
CVE-2023-47038LOW3.98
perl-IO
1.38-422.el8
fixed in 1.43-473.module+el8.10.0+90267+7012ad3b
0.8%
Theoretical Threat
Post-Exploit
CVE-2026-48962LOW3.98
perl-MIME-Base64
3.15-396.el8
fixed in 3.15-1001.module+el8.10.0+90354+a7e78d72
0.3%
Theoretical Threat
Post-Exploit
CVE-2023-47038LOW3.98
perl-MIME-Base64
3.15-396.el8
fixed in 3.15-1001.module+el8.10.0+90267+7012ad3b
0.8%
Theoretical Threat
Post-Exploit
CVE-2026-48962LOW3.98
perl-PathTools
3.74-1.el8
fixed in 3.78-439.module+el8.10.0+90354+a7e78d72
0.3%
Theoretical Threat
Post-Exploit
CVE-2023-47038LOW3.98
perl-PathTools
3.74-1.el8
fixed in 3.78-439.module+el8.10.0+90267+7012ad3b
0.8%
Theoretical Threat
Post-Exploit
CVE-2026-48962LOW3.98
perl-Scalar-List-Utils
3:1.49-2.el8
fixed in 4:1.55-457.module+el8.10.0+90354+a7e78d72
0.3%
Theoretical Threat
Post-Exploit
CVE-2023-47038LOW3.98
perl-Scalar-List-Utils
3:1.49-2.el8
fixed in 4:1.55-457.module+el8.10.0+90267+7012ad3b
0.8%
Theoretical Threat
Post-Exploit
CVE-2026-48962LOW3.98
perl-Socket
4:2.027-3.el8
fixed in 4:2.031-1.module+el8.10.0+90354+a7e78d72
0.3%
Theoretical Threat
Post-Exploit
CVE-2023-47038LOW3.98
perl-Socket
4:2.027-3.el8
fixed in 4:2.031-1.module+el8.10.0+90267+7012ad3b
0.8%
Theoretical Threat
Post-Exploit
CVE-2026-48962LOW3.98
perl-Storable
1:3.11-3.el8
fixed in 1:3.21-457.module+el8.10.0+90354+a7e78d72
0.3%
Theoretical Threat
Post-Exploit
CVE-2023-47038LOW3.98
perl-Storable
1:3.11-3.el8
fixed in 1:3.21-457.module+el8.10.0+90267+7012ad3b
0.8%
Theoretical Threat
Post-Exploit
CVE-2026-48962LOW3.98
perl-Unicode-Normalize
1.25-396.el8
fixed in 1.27-458.module+el8.10.0+90354+a7e78d72
0.3%
Theoretical Threat
Post-Exploit
CVE-2023-47038LOW3.98
perl-Unicode-Normalize
1.25-396.el8
fixed in 1.27-458.module+el8.10.0+90267+7012ad3b
0.8%
Theoretical Threat
Post-Exploit
CVE-2026-48962LOW3.98
perl-interpreter
4:5.26.3-422.el8
fixed in 4:5.32.1-474.module+el8.10.0+90933+61492164
0.3%
Theoretical Threat
Post-Exploit
CVE-2023-47038LOW3.98
perl-interpreter
4:5.26.3-422.el8
fixed in 4:5.32.1-473.module+el8.10.0+90267+7012ad3b
0.8%
Theoretical Threat
Post-Exploit
CVE-2026-48962LOW3.98
perl-libs
4:5.26.3-422.el8
fixed in 4:5.32.1-474.module+el8.10.0+90933+61492164
0.3%
Theoretical Threat
Post-Exploit
CVE-2023-47038LOW3.98
perl-libs
4:5.26.3-422.el8
fixed in 4:5.32.1-473.module+el8.10.0+90267+7012ad3b
0.8%
Theoretical Threat
Post-Exploit
CVE-2026-48962LOW3.98
perl-macros
4:5.26.3-422.el8
fixed in 4:5.32.1-474.module+el8.10.0+90933+61492164
0.3%
Theoretical Threat
Post-Exploit
CVE-2023-47038LOW3.98
perl-macros
4:5.26.3-422.el8
fixed in 4:5.32.1-473.module+el8.10.0+90267+7012ad3b
0.8%
Theoretical Threat
Post-Exploit
CVE-2026-48962LOW3.98
perl-threads
1:2.21-2.el8
fixed in 1:2.25-457.module+el8.10.0+90354+a7e78d72
0.3%
Theoretical Threat
Post-Exploit
CVE-2023-47038LOW3.98
perl-threads
1:2.21-2.el8
fixed in 1:2.25-457.module+el8.10.0+90267+7012ad3b
0.8%
Theoretical Threat
Post-Exploit
CVE-2026-48962LOW3.98
perl-threads-shared
1.58-2.el8
fixed in 1.61-457.module+el8.10.0+90354+a7e78d72
0.3%
Theoretical Threat
Post-Exploit
CVE-2023-47038LOW3.98
perl-threads-shared
1.58-2.el8
fixed in 1.61-457.module+el8.10.0+90267+7012ad3b
0.8%
Theoretical Threat
Post-Exploit
CVE-2024-9287LOW3.98
platform-python
3.6.8-62.0.1.el8_10
fixed in 3.6.8-69.0.1.el8_10
0.6%
Theoretical Threat
Post-Exploit
CVE-2024-9287LOW3.98
python3-libs
3.6.8-62.0.1.el8_10
fixed in 3.6.8-69.0.1.el8_10
0.6%
Theoretical Threat
Post-Exploit
CVE-2026-28421LOW3.98
vim-minimal
2:8.0.1763-19.0.1.el8_6.4
fixed in 2:8.0.1763-22.0.1.el8_10.1
0.2%
Theoretical Threat
Post-Exploit
CVE-2026-52858LOW3.98
vim-minimal
2:8.0.1763-19.0.1.el8_6.4
fixed in 2:8.0.1763-27.0.1.el8_10
0.2%
Theoretical Threat
Post-Exploit
CVE-2024-12718LOW3.88
platform-python
3.6.8-62.0.1.el8_10
fixed in 3.6.8-70.0.1.el8_10
0.6%
Theoretical Threat
Post-Exploit
CVE-2024-12718LOW3.88
python3-libs
3.6.8-62.0.1.el8_10
fixed in 3.6.8-70.0.1.el8_10
0.6%
Theoretical Threat
Post-Exploit
CVE-2025-6176LOW3.82
brotli
1.0.6-3.el8
fixed in 1.0.6-4.el8_10
0.5%
Theoretical Threat
Post-Exploit
CVE-2026-28390LOW3.82
openssl
1:1.1.1k-12.el8_9
fixed in 1:1.1.1k-17.el8_6
0.8%
Theoretical Threat
Post-Exploit
CVE-2025-4435LOW3.82
platform-python
3.6.8-62.0.1.el8_10
fixed in 3.6.8-70.0.1.el8_10
0.5%
Theoretical Threat
Post-Exploit
CVE-2026-15308LOW3.82
platform-python
3.6.8-62.0.1.el8_10
fixed in 3.6.8-77.0.1.el8_10
0.6%
Theoretical Threat
Post-Exploit
CVE-2025-8194LOW3.82
platform-python
3.6.8-62.0.1.el8_10
fixed in 3.6.8-71.0.1.el8_10
0.6%
Theoretical Threat
Post-Exploit
CVE-2025-4435LOW3.82
python3-libs
3.6.8-62.0.1.el8_10
fixed in 3.6.8-70.0.1.el8_10
0.5%
Theoretical Threat
Post-Exploit
CVE-2026-15308LOW3.82
python3-libs
3.6.8-62.0.1.el8_10
fixed in 3.6.8-77.0.1.el8_10
0.6%
Theoretical Threat
Post-Exploit
CVE-2025-8194LOW3.82
python3-libs
3.6.8-62.0.1.el8_10
fixed in 3.6.8-71.0.1.el8_10
0.6%
Theoretical Threat
Post-Exploit
CVE-2025-69419LOW3.77
openssl
1:1.1.1k-12.el8_9
fixed in 1:1.1.1k-15.el8_6
0.4%
Theoretical Threat
Post-Exploit
CVE-2024-3596LOW3.73
krb5-libs
1.18.2-27.0.1.el8_10
fixed in 1.18.2-30.0.1.el8_10
14.9%
High Exploitation Risk
Post-Exploit
CVE-2024-3596LOW3.73
libkadm5
1.18.2-27.0.1.el8_10
fixed in 1.18.2-30.0.1.el8_10
14.9%
High Exploitation Risk
Post-Exploit
CVE-2025-4330LOW3.72
platform-python
3.6.8-62.0.1.el8_10
fixed in 3.6.8-70.0.1.el8_10
0.8%
Theoretical Threat
Post-Exploit
CVE-2025-4330LOW3.72
python3-libs
3.6.8-62.0.1.el8_10
fixed in 3.6.8-70.0.1.el8_10
0.8%
Theoretical Threat
Post-Exploit
CVE-2026-25749LOW3.72
vim-minimal
2:8.0.1763-19.0.1.el8_6.4
fixed in 2:8.0.1763-22.0.1.el8_10
0.2%
Theoretical Threat
Post-Exploit
CVE-2026-33412LOW3.72
vim-minimal
2:8.0.1763-19.0.1.el8_6.4
fixed in 2:8.0.1763-22.0.1.el8_10.1
0.8%
Theoretical Threat
Post-Exploit
CVE-2026-41411LOW3.72
vim-minimal
2:8.0.1763-19.0.1.el8_6.4
fixed in 2:8.0.1763-24.0.1.el8_10
0.5%
Theoretical Threat
Post-Exploit
CVE-2026-4786LOW3.62
platform-python
3.6.8-62.0.1.el8_10
fixed in 3.6.8-76.0.1.el8_10
0.3%
Theoretical Threat
Post-Exploit
CVE-2025-15366LOW3.62
platform-python
3.6.8-62.0.1.el8_10
fixed in 3.6.8-73.0.1.el8_10
0.4%
Theoretical Threat
Post-Exploit
CVE-2025-15367LOW3.62
platform-python
3.6.8-62.0.1.el8_10
fixed in 3.6.8-73.0.1.el8_10
0.3%
Theoretical Threat
Post-Exploit
CVE-2026-1299LOW3.62
platform-python
3.6.8-62.0.1.el8_10
fixed in 3.6.8-73.0.1.el8_10
0.6%
Theoretical Threat
Post-Exploit
CVE-2026-4786LOW3.62
python3-libs
3.6.8-62.0.1.el8_10
fixed in 3.6.8-76.0.1.el8_10
0.3%
Theoretical Threat
Post-Exploit
CVE-2025-15366LOW3.62
python3-libs
3.6.8-62.0.1.el8_10
fixed in 3.6.8-73.0.1.el8_10
0.4%
Theoretical Threat
Post-Exploit
CVE-2025-15367LOW3.62
python3-libs
3.6.8-62.0.1.el8_10
fixed in 3.6.8-73.0.1.el8_10
0.3%
Theoretical Threat
Post-Exploit
CVE-2026-1299LOW3.62
python3-libs
3.6.8-62.0.1.el8_10
fixed in 3.6.8-73.0.1.el8_10
0.6%
Theoretical Threat
Post-Exploit
CVE-2026-35177LOW3.62
vim-minimal
2:8.0.1763-19.0.1.el8_6.4
fixed in 2:8.0.1763-23.0.1.el8_10
0.1%
Theoretical Threat
Post-Exploit
CVE-2025-6965LOW3.61
sqlite-libs
3.26.0-19.0.1.el8_9
fixed in 3.26.0-20.el8_10
73.5%
Actively Exploited
Post-Exploit
CVE-2025-68973LOW3.57
gnupg2
2.2.20-3.el8_6
fixed in 2.2.20-4.el8_10
0.1%
Theoretical Threat
Post-Exploit
CVE-2026-46483LOW3.57
vim-minimal
2:8.0.1763-19.0.1.el8_6.4
fixed in 2:8.0.1763-27.0.1.el8_10
0.6%
Theoretical Threat
Post-Exploit
CVE-2025-8058LOW3.57
glibc
2.28-251.0.2.el8_10.2
fixed in 2.28-251.0.3.el8_10.25
0.2%
Theoretical Threat
Directly Exposed
CVE-2025-8058LOW3.57
glibc-common
2.28-251.0.2.el8_10.2
fixed in 2.28-251.0.3.el8_10.25
0.2%
Theoretical Threat
Directly Exposed
CVE-2025-8058LOW3.57
glibc-langpack-en
2.28-251.0.2.el8_10.2
fixed in 2.28-251.0.3.el8_10.25
0.2%
Theoretical Threat
Directly Exposed
CVE-2024-5535LOW3.54
openssl
1:1.1.1k-12.el8_9
fixed in 1:1.1.1k-14.el8_6
5.6%
Low-Moderate Risk
Post-Exploit
CVE-2019-12900LOW3.53
bzip2-libs
1.0.6-26.el8
fixed in 1.0.6-28.el8_10
8.1%
Low-Moderate Risk
Post-Exploit
CVE-2024-6923LOW3.47
platform-python
3.6.8-62.0.1.el8_10
fixed in 3.6.8-67.0.1.el8_10
0.8%
Theoretical Threat
Post-Exploit
CVE-2024-6923LOW3.47
python3-libs
3.6.8-62.0.1.el8_10
fixed in 3.6.8-67.0.1.el8_10
0.8%
Theoretical Threat
Post-Exploit
CVE-2025-9820LOW3.4
gnutls
3.6.16-8.el8_9.3
fixed in 3.6.16-8.el8_10.5
0.2%
Theoretical Threat
Directly Exposed
CVE-2024-4741LOW3.36
openssl
1:1.1.1k-12.el8_9
fixed in 1:1.1.1k-16.el8_6
2.9%
Low-Moderate Risk
Post-Exploit
CVE-2025-9230LOW3.36
openssl
1:1.1.1k-12.el8_9
fixed in 1:1.1.1k-14.el8_10
1.7%
Low-Moderate Risk
Post-Exploit
CVE-2026-35387LOW3.31
openssh
8.0p1-24.0.1.el8
fixed in 8.0p1-29.0.1.el8_10
0.2%
Theoretical Threat
Post-Exploit
CVE-2026-35387LOW3.31
openssh-clients
8.0p1-24.0.1.el8
fixed in 8.0p1-29.0.1.el8_10
0.2%
Theoretical Threat
Post-Exploit
CVE-2026-35387LOW3.31
openssh-server
8.0p1-24.0.1.el8
fixed in 8.0p1-29.0.1.el8_10
0.2%
Theoretical Threat
Post-Exploit
CVE-2024-34397LOW3.23
glib2
2.56.4-162.el8
fixed in 2.56.4-166.el8_10
0.8%
Theoretical Threat
Directly Exposed
CVE-2025-9086LOW3.18
curl
7.61.1-34.el8
fixed in 7.61.1-34.el8_10.9
1.3%
Low-Moderate Risk
Post-Exploit
CVE-2025-9086LOW3.18
libcurl
7.61.1-34.el8
fixed in 7.61.1-34.el8_10.9
1.3%
Low-Moderate Risk
Post-Exploit
CVE-2025-14104LOW3.11
util-linux
2.32.1-46.0.1.el8
fixed in 2.32.1-48.0.1.el8_10
0.2%
Theoretical Threat
Post-Exploit
CVE-2024-11187LOW3.1
bind-export-libs
32:9.11.36-14.el8_10
fixed in 32:9.11.36-16.el8_10.4
15.3%
High Exploitation Risk
Post-Exploit
CVE-2024-2398LOW3.1
curl
7.61.1-34.el8
fixed in 7.61.1-34.el8_10.2
36.1%
High Exploitation Risk
Post-Exploit
CVE-2024-2398LOW3.1
libcurl
7.61.1-34.el8
fixed in 7.61.1-34.el8_10.2
36.1%
High Exploitation Risk
Post-Exploit
CVE-2025-40909LOW3.01
perl-Data-Dumper
2.167-399.el8
fixed in 2.174-440.module+el8.10.0+90354+a7e78d72
0.4%
Theoretical Threat
Post-Exploit
CVE-2025-40909LOW3.01
perl-Digest-MD5
2.55-396.el8
fixed in 2.58-1.module+el8.10.0+90354+a7e78d72
0.4%
Theoretical Threat
Post-Exploit
CVE-2025-40909LOW3.01
perl-Encode
4:2.97-3.el8
fixed in 4:3.08-461.module+el8.10.0+90354+a7e78d72
0.4%
Theoretical Threat
Post-Exploit
CVE-2025-40909LOW3.01
perl-Errno
1.28-422.el8
fixed in 1.30-474.module+el8.10.0+90876+9a50c25b
0.4%
Theoretical Threat
Post-Exploit
CVE-2025-40909LOW3.01
perl-IO
1.38-422.el8
fixed in 1.43-474.module+el8.10.0+90876+9a50c25b
0.4%
Theoretical Threat
Post-Exploit
CVE-2025-40909LOW3.01
perl-MIME-Base64
3.15-396.el8
fixed in 3.15-1001.module+el8.10.0+90354+a7e78d72
0.4%
Theoretical Threat
Post-Exploit
CVE-2025-40909LOW3.01
perl-PathTools
3.74-1.el8
fixed in 3.78-439.module+el8.10.0+90354+a7e78d72
0.4%
Theoretical Threat
Post-Exploit
CVE-2025-40909LOW3.01
perl-Scalar-List-Utils
3:1.49-2.el8
fixed in 4:1.55-457.module+el8.10.0+90354+a7e78d72
0.4%
Theoretical Threat
Post-Exploit
CVE-2025-40909LOW3.01
perl-Socket
4:2.027-3.el8
fixed in 4:2.031-1.module+el8.10.0+90354+a7e78d72
0.4%
Theoretical Threat
Post-Exploit
CVE-2025-40909LOW3.01
perl-Storable
1:3.11-3.el8
fixed in 1:3.21-457.module+el8.10.0+90354+a7e78d72
0.4%
Theoretical Threat
Post-Exploit
CVE-2025-40909LOW3.01
perl-Unicode-Normalize
1.25-396.el8
fixed in 1.27-458.module+el8.10.0+90354+a7e78d72
0.4%
Theoretical Threat
Post-Exploit
CVE-2025-40909LOW3.01
perl-interpreter
4:5.26.3-422.el8
fixed in 4:5.32.1-474.module+el8.10.0+90876+9a50c25b
0.4%
Theoretical Threat
Post-Exploit
CVE-2025-40909LOW3.01
perl-libs
4:5.26.3-422.el8
fixed in 4:5.32.1-474.module+el8.10.0+90876+9a50c25b
0.4%
Theoretical Threat
Post-Exploit
CVE-2025-40909LOW3.01
perl-macros
4:5.26.3-422.el8
fixed in 4:5.32.1-474.module+el8.10.0+90876+9a50c25b
0.4%
Theoretical Threat
Post-Exploit
CVE-2025-40909LOW3.01
perl-threads
1:2.21-2.el8
fixed in 1:2.25-457.module+el8.10.0+90354+a7e78d72
0.4%
Theoretical Threat
Post-Exploit
CVE-2025-40909LOW3.01
perl-threads-shared
1.58-2.el8
fixed in 1.61-457.module+el8.10.0+90354+a7e78d72
0.4%
Theoretical Threat
Post-Exploit
CVE-2025-14087LOW3
glib2
2.56.4-162.el8
fixed in 2.56.4-169.el8_10
0.8%
Theoretical Threat
Post-Exploit
CVE-2026-45447LOW2.92
compat-openssl10
1:1.0.2o-4.el8_6
fixed in 1:1.0.2o-4.el8_10.3
2.7%
Low-Moderate Risk
Post-Exploit
CVE-2025-5318LOW2.92
libssh
0.9.6-14.el8
fixed in 0.9.6-15.el8_10
2.4%
Low-Moderate Risk
Post-Exploit
CVE-2019-17543LOW2.92
lz4-libs
1.8.3-3.el8_4
fixed in 1.8.3-5.el8_10
9.1%
Low-Moderate Risk
Post-Exploit
CVE-2026-45447LOW2.92
openssl
1:1.1.1k-12.el8_9
fixed in 1:1.1.1k-16.el8_6
2.7%
Low-Moderate Risk
Post-Exploit
CVE-2026-45447LOW2.92
openssl-libs
1:1.1.1k-12.el8_9
fixed in 1:1.1.1k-16.el8_6
2.7%
Low-Moderate Risk
Post-Exploit
CVE-2020-11023LOW2.86
libgcc
8.5.0-22.0.1.el8_10
fixed in 8.5.0-23.0.1.el8_10
83.8%
Actively Exploited
Post-Exploit
CVE-2026-28417LOW2.81
vim-minimal
2:8.0.1763-19.0.1.el8_6.4
fixed in 2:8.0.1763-22.0.1.el8_10.1
1.2%
Low-Moderate Risk
Post-Exploit
CVE-2026-42496LOW2.78
perl-Data-Dumper
2.167-399.el8
fixed in 2.174-440.module+el8.10.0+90354+a7e78d72
0.4%
Theoretical Threat
Post-Exploit
CVE-2026-42496LOW2.78
perl-Digest-MD5
2.55-396.el8
fixed in 2.58-1.module+el8.10.0+90354+a7e78d72
0.4%
Theoretical Threat
Post-Exploit
CVE-2026-42496LOW2.78
perl-Encode
4:2.97-3.el8
fixed in 4:3.08-461.module+el8.10.0+90354+a7e78d72
0.4%
Theoretical Threat
Post-Exploit
CVE-2026-42496LOW2.78
perl-Errno
1.28-422.el8
fixed in 1.30-474.module+el8.10.0+90933+61492164
0.4%
Theoretical Threat
Post-Exploit
CVE-2026-42496LOW2.78
perl-IO
1.38-422.el8
fixed in 1.43-474.module+el8.10.0+90933+61492164
0.4%
Theoretical Threat
Post-Exploit
CVE-2026-42496LOW2.78
perl-MIME-Base64
3.15-396.el8
fixed in 3.15-1001.module+el8.10.0+90354+a7e78d72
0.4%
Theoretical Threat
Post-Exploit
CVE-2025-61984LOW2.7
openssh
8.0p1-24.0.1.el8
fixed in 8.0p1-27.0.1.el8_10
0.2%
Theoretical Threat
Post-Exploit
CVE-2025-61985LOW2.7
openssh
8.0p1-24.0.1.el8
fixed in 8.0p1-27.0.1.el8_10
0.1%
Theoretical Threat
Post-Exploit
CVE-2025-61984LOW2.7
openssh-clients
8.0p1-24.0.1.el8
fixed in 8.0p1-27.0.1.el8_10
0.2%
Theoretical Threat
Post-Exploit
CVE-2025-61985LOW2.7
openssh-clients
8.0p1-24.0.1.el8
fixed in 8.0p1-27.0.1.el8_10
0.1%
Theoretical Threat
Post-Exploit
CVE-2025-61984LOW2.7
openssh-server
8.0p1-24.0.1.el8
fixed in 8.0p1-27.0.1.el8_10
0.2%
Theoretical Threat
Post-Exploit
CVE-2025-61985LOW2.7
openssh-server
8.0p1-24.0.1.el8
fixed in 8.0p1-27.0.1.el8_10
0.1%
Theoretical Threat
Post-Exploit
CVE-2025-12084LOW2.7
platform-python
3.6.8-62.0.1.el8_10
fixed in 3.6.8-72.0.1.el8_10
0.7%
Theoretical Threat
Post-Exploit
CVE-2025-12084LOW2.7
python3-libs
3.6.8-62.0.1.el8_10
fixed in 3.6.8-72.0.1.el8_10
0.7%
Theoretical Threat
Post-Exploit
CVE-2026-47167LOW2.7
vim-minimal
2:8.0.1763-19.0.1.el8_6.4
fixed in 2:8.0.1763-27.0.1.el8_10
0.1%
Theoretical Threat
Post-Exploit
CVE-2026-0865LOW2.29
platform-python
3.6.8-62.0.1.el8_10
fixed in 3.6.8-73.0.1.el8_10
0.5%
Theoretical Threat
Post-Exploit
CVE-2026-0865LOW2.29
python3-libs
3.6.8-62.0.1.el8_10
fixed in 3.6.8-73.0.1.el8_10
0.5%
Theoretical Threat
Post-Exploit
CVE-2024-4032LOW2.22
platform-python
3.6.8-62.0.1.el8_10
fixed in 3.6.8-67.0.1.el8_10
1.0%
Low-Moderate Risk
Post-Exploit
CVE-2024-4032LOW2.22
python3-libs
3.6.8-62.0.1.el8_10
fixed in 3.6.8-67.0.1.el8_10
1.0%
Low-Moderate Risk
Post-Exploit
CVE-2025-6170LOW2.12
libxml2
2.9.7-18.el8_10.1
fixed in 2.9.7-21.el8_10.6
0.2%
Theoretical Threat
Directly Exposed
CVE-2025-53905LOW2.09
vim-minimal
2:8.0.1763-19.0.1.el8_6.4
fixed in 2:8.0.1763-21.0.1.el8_10
0.2%
Theoretical Threat
Post-Exploit
CVE-2025-53906LOW2.09
vim-minimal
2:8.0.1763-19.0.1.el8_6.4
fixed in 2:8.0.1763-21.0.1.el8_10
0.7%
Theoretical Threat
Post-Exploit
CVE-2024-11168LOW1.89
platform-python
3.6.8-62.0.1.el8_10
fixed in 3.6.8-69.0.1.el8_10
0.7%
Theoretical Threat
Post-Exploit
CVE-2024-11168LOW1.89
python3-libs
3.6.8-62.0.1.el8_10
fixed in 3.6.8-69.0.1.el8_10
0.7%
Theoretical Threat
Post-Exploit
CVE-2026-4519LOW1.68
platform-python
3.6.8-62.0.1.el8_10
fixed in 3.6.8-75.0.1.el8_10
0.3%
Theoretical Threat
Post-Exploit
CVE-2026-4519LOW1.68
python3-libs
3.6.8-62.0.1.el8_10
fixed in 3.6.8-75.0.1.el8_10
0.3%
Theoretical Threat
Post-Exploit
CVE-2026-35388LOW1.27
openssh
8.0p1-24.0.1.el8
fixed in 8.0p1-29.0.1.el8_10
0.1%
Theoretical Threat
Post-Exploit
CVE-2026-35388LOW1.27
openssh-clients
8.0p1-24.0.1.el8
fixed in 8.0p1-29.0.1.el8_10
0.1%
Theoretical Threat
Post-Exploit
CVE-2026-35388LOW1.27
openssh-server
8.0p1-24.0.1.el8
fixed in 8.0p1-29.0.1.el8_10
0.1%
Theoretical Threat
Post-Exploit
CVE-2024-37371NONE0
krb5-devel
1.18.2-27.0.1.el8_10
fixed in 1.18.2-29.0.1.el8_10
1.9%
Low-Moderate Risk
Not Applicable
CVE-2024-3596NONE0
krb5-devel
1.18.2-27.0.1.el8_10
fixed in 1.18.2-30.0.1.el8_10
14.9%
High Exploitation Risk
Not Applicable
CVE-2026-45447NONE0
openssl-devel
1:1.1.1k-12.el8_9
fixed in 1:1.1.1k-16.el8_6
2.7%
Low-Moderate Risk
Not Applicable
CVE-2026-40355NONE0
krb5-devel
1.18.2-27.0.1.el8_10
fixed in 1.18.2-34.0.1.el8_10
0.5%
Theoretical Threat
Not Applicable
CVE-2026-40356NONE0
krb5-devel
1.18.2-27.0.1.el8_10
fixed in 1.18.2-34.0.1.el8_10
0.5%
Theoretical Threat
Not Applicable
CVE-2024-37370NONE0
krb5-devel
1.18.2-27.0.1.el8_10
fixed in 1.18.2-29.0.1.el8_10
0.7%
Theoretical Threat
Not Applicable
CVE-2026-28390NONE0
openssl-devel
1:1.1.1k-12.el8_9
fixed in 1:1.1.1k-17.el8_6
0.8%
Theoretical Threat
Not Applicable
CVE-2025-69419NONE0
openssl-devel
1:1.1.1k-12.el8_9
fixed in 1:1.1.1k-15.el8_6
0.4%
Theoretical Threat
Not Applicable
CVE-2025-24528NONE0
krb5-devel
1.18.2-27.0.1.el8_10
fixed in 1.18.2-31.0.1.el8_10
0.6%
Theoretical Threat
Not Applicable
CVE-2025-3576NONE0
krb5-devel
1.18.2-27.0.1.el8_10
fixed in 1.18.2-32.0.1.el8_10
0.3%
Theoretical Threat
Not Applicable
CVE-2024-5535NONE0
openssl-devel
1:1.1.1k-12.el8_9
fixed in 1:1.1.1k-14.el8_6
5.6%
Low-Moderate Risk
Not Applicable
CVE-2024-4741NONE0
openssl-devel
1:1.1.1k-12.el8_9
fixed in 1:1.1.1k-16.el8_6
2.9%
Low-Moderate Risk
Not Applicable
CVE-2025-9230NONE0
openssl-devel
1:1.1.1k-12.el8_9
fixed in 1:1.1.1k-14.el8_10
1.7%
Low-Moderate Risk
Not Applicable
CVE-2025-4598NONE0
systemd
239-82.0.1.el8
fixed in 239-82.0.4.el8_10.5
0.7%
Theoretical Threat
Not Applicable

Reachability analysis

Which CVEs are actually reachable — is the vulnerable code even linked and callable.

Locked

Runtime verification

Live-container probes: default user, writable paths, capabilities, exposed ports.

Locked

Hardening recommendations

A step-by-step hardened build plan, with parity tests proving nothing breaks.

Locked

Want to check another image? Run a full scan with the Docker Security Scanner.