CVE-2026-107444Medium· 4.3▾ SunlitA flaw was found in Katello where the Docker Tags repositories API does not properly enforce organization scoping when listing repositories for a Docker meta tag. An authenticated user with permission to view products in one organization…
▾ Sunlit zone — Low / medium · no exploitation signal
impact 23.7 · likelihood 0 · exploitation 0
Need a working PoC? Pro members can cast a request and our team develops one — it lands right here.
A flaw was found in Katello where the Docker Tags repositories API does not properly enforce organization scoping when listing repositories for a Docker meta tag. An authenticated user with permission to view products in one organization may be able to retrieve repository metadata associated with Docker tags belonging to another organization by supplying the tag identifier. This can result in unauthorized disclosure of repository configuration information across organization boundaries.
Refer to the linked advisories for vendor-supplied fixes and affected version ranges.
Connected by shared product, vendor, weakness, or advisory.
CVE-2026-107445Medium· 5.4A flaw was found in Katello where the Flatpak Remote Repositories API does not properly enforce authorization when accessing a flatpak remote repository by identifier
CVE-2024-1313Medium· 6.5grafana: vulnerable to authorization bypass (CVE-2024-1313)
CVE-2026-107176Medium· 6.8A flaw was found in the cluster-samples-operator
CVE-2026-107161High· 7.5A heap-based buffer overflow flaw was found in Cyrus SASL
CVE-2026-106067Medium· 6.3A heap-based buffer overflow was found in GIMP’s Hot color filter plug-in
CVE-2026-106066Medium· 6.3A heap-based buffer overflow was found in GIMP’s raw data export plug-in