Advisory explorer

113 of 113 advisories

Quick views
Filter by signal0 active
Technology
Weakness
Impact
Evidence
Action

September 2026

CVE-2026-80110Disclosed

Red Hat Certificate System ACL tie-break lets agents author CA issuance profiles

A tie-breaking bug in the pki-core v2 REST ACL filter resolves colliding literal and wildcard ACL keys by lexicographic comparison instead of specificity, letting the Certificate Manager Agents group's lower-privileged profiles.approve override the Administrator-only profiles.create required by POST /v2/profiles/raw.

August 2026

July 2026

June 2026

Independent summaries. Verify affected versions and fixes with the linked vendor guidance.