RHSA-2026:6011

Advisory lineage Upstream: 4 Downstream: 0
Published: 31 Mar 2026, 10:12
Last modified:26 May 2026, 10:09

Vulnerability Summary

Overall Risk (default)
medium
33/100
CVSS Score
8.3 HIGH
3.1 (osv_red_hat)
EPSS Score
No data
KEV
Not listed
Ransomware
No reports
Public exploits
None found
Dark Web
Not detected

Timeline

31 Mar 2026, 10:12
Published
Vulnerability first disclosed
26 May 2026, 10:09
Last Modified
Vulnerability information updated

Description

Red Hat Security Advisory: Red Hat JBoss Enterprise Application Platform 7.3.17 security update

CVSS Metrics

  • v3.1HIGHScore: 8.3CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:L

Affected Systems

  • redhateap7-apache-cxf

    < 0:3.4.10-3.SP2_redhat_00003.1.el7eap

  • redhateap7-apache-cxf-rt

    < 0:3.4.10-3.SP2_redhat_00003.1.el7eap

  • redhateap7-apache-cxf-services

    < 0:3.4.10-3.SP2_redhat_00003.1.el7eap

  • redhateap7-apache-cxf-tools

    < 0:3.4.10-3.SP2_redhat_00003.1.el7eap

  • redhateap7-eclipse-jgit

    < 0:5.13.5.202508271544-1.r_redhat_00001.1.el7eap

  • redhateap7-hibernate

    < 0:5.3.38-1.Final_redhat_00001.1.el7eap

  • redhateap7-hibernate-core

    < 0:5.3.38-1.Final_redhat_00001.1.el7eap

  • redhateap7-hibernate-entitymanager

    < 0:5.3.38-1.Final_redhat_00001.1.el7eap

  • redhateap7-hibernate-envers

    < 0:5.3.38-1.Final_redhat_00001.1.el7eap

  • redhateap7-hibernate-java8

    < 0:5.3.38-1.Final_redhat_00001.1.el7eap

  • redhateap7-jbossws-cxf

    < 0:5.3.0-2.SP1_redhat_00002.1.el7eap

  • redhateap7-undertow

    < 0:2.0.41-7.SP8_redhat_00001.1.el7eap

  • redhateap7-wildfly

    < 0:7.3.17-5.GA_redhat_00006.1.el7eap

  • redhateap7-wildfly-java-jdk11

    < 0:7.3.17-5.GA_redhat_00006.1.el7eap

  • redhateap7-wildfly-java-jdk8

    < 0:7.3.17-5.GA_redhat_00006.1.el7eap

  • redhateap7-wildfly-javadocs

    < 0:7.3.17-5.GA_redhat_00006.1.el7eap

  • redhateap7-wildfly-modules

    < 0:7.3.17-5.GA_redhat_00006.1.el7eap

References (27)