odf4/mcg-core-rhel9 vulnerabilities
CVEs whose affected-version data names the odf4/mcg-core-rhel9 package. Each record lists the affected and patched versions; check a specific version with the dependency checker or POST /api/sbom.
2 CVEsRSS
CVE-2026-94368High· 7.1A flaw was found in the signature verification logic of noobaa-core, the core component of the NooBaa Multicloud Object Gateway
A flaw was found in the signature verification logic of noobaa-core, the core component of the NooBaa Multicloud Object Gateway. The issue occurs when the service processes S3 presigned URLs using Signature Version 4 (SigV4). Due to impr…
▾ TwilightRed Hat · odf4/mcg-core-rhel9EPSS 0.23%via NVD
CVE-2024-5042Medium· 6.6A flaw was found in the Submariner project
A flaw was found in the Submariner project. Due to unnecessary role-based access control permissions, a privileged attacker can run a malicious container on a node that may allow them to steal service account tokens and further compromis…
▾ SunlitRed Hat · submariner-operatorEPSS 0.51%via NVD