RHSA-2026:33371

Advisory lineage Upstream: 11 Downstream: 0
Published: 30 Jun 2026, 10:49
Last modified:20 Jul 2026, 10:11

Vulnerability Summary

Overall Risk (default)
high
70/100
CVSS Score
9.6 CRITICAL
3.1 (osv_red_hat)
EPSS Score
No data
KEV
Not listed
Ransomware
No reports
Public exploits
None found
Dark Web
Not detected

Timeline

30 Jun 2026, 10:49
Published
Vulnerability first disclosed
20 Jul 2026, 10:11
Last Modified
Vulnerability information updated

Description

Red Hat Security Advisory: Red Hat JBoss Enterprise Application Platform 7.3.18 security update

CVSS Metrics

  • v3.1CRITICALScore: 9.6CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:H/I:H/A:L

Affected Systems

  • redhateap7-apache-cxf

    < 0:3.4.10-4.SP2_redhat_00004.1.el7eap

  • redhateap7-apache-cxf-rt

    < 0:3.4.10-4.SP2_redhat_00004.1.el7eap

  • redhateap7-apache-cxf-services

    < 0:3.4.10-4.SP2_redhat_00004.1.el7eap

  • redhateap7-apache-cxf-tools

    < 0:3.4.10-4.SP2_redhat_00004.1.el7eap

  • redhateap7-undertow

    < 0:2.0.41-8.SP9_redhat_00001.1.el7eap

  • redhateap7-wildfly

    < 0:7.3.18-3.GA_redhat_00001.1.el7eap

  • redhateap7-wildfly-java-jdk11

    < 0:7.3.18-3.GA_redhat_00001.1.el7eap

  • redhateap7-wildfly-java-jdk8

    < 0:7.3.18-3.GA_redhat_00001.1.el7eap

  • redhateap7-wildfly-javadocs

    < 0:7.3.18-3.GA_redhat_00001.1.el7eap

  • redhateap7-wildfly-modules

    < 0:7.3.18-3.GA_redhat_00001.1.el7eap

References (68)