Openshift Container Platform For Power
Vendor:
First CVE: Apr 8, 2019 · Active for 7 years
23
Total CVEs
More Total CVEs than 96% of tracked products
4.6
Avg CVEs / Year
Higher CVE frequency than 88% of tracked products
7.3
Avg CVSS
Higher Avg CVSS than 48% of tracked products
4.3%
KEV Rate
Higher KEV Rate than 98% of tracked products
Trends Over Time
The number and severity of CVEs published that impact Openshift Container Platform For Power over time
Volume of CVEsAvg CVSS Base Score
First CVE
Apr 8, 2019
7 years ago
Most Recent CVE
Mar 19, 2026
130 days ago
CVE Severity & Scoring
Openshift Container Platform For Power23 CVEs
35%
61%
All CVEs352,785 CVEs
45%
40%
11%
MediumHighCritical
Attack Vector
Local3 (13.0%)
Network20 (87.0%)
Unknown0 (0.0%)
Physical0 (0.0%)
Adjacent Network0 (0.0%)
Attack Complexity
Low22 (95.7%)
High1 (4.3%)
Unknown0 (0.0%)
User Interaction
None17 (73.9%)
Unknown0 (0.0%)
Required6 (26.1%)
Privileges Required
Low8 (34.8%)
High0 (0.0%)
None15 (65.2%)
Unknown0 (0.0%)
Top CVEs
Signals from CVEs in this product scope (23 CVEs).
23 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2019-0211HIGH In Apache HTTP Server 2.4 releases 2.4.17 to 2.4.38, with MPM event, worker or prefork, code executing in less-privileged child processes or threads (including scripts executed by | Apr 8, 2019 | 7.8 | 93 | YES | YES |
CVE-2026-4424HIGH A flaw was found in libarchive. This heap out-of-bounds read vulnerability exists in the RAR archive processing logic due to improper validation of the LZSS sliding window size aft | Mar 19, 2026 | 7.5 | 31 | NO | NO |
CVE-2025-13601HIGH A heap-based buffer overflow problem was found in glib through an incorrect calculation of buffer size in the g_escape_uri_string() function. If the string to escape contains a ver | Nov 26, 2025 | 7.7 | 30 | NO | NO |
CVE-2024-8883MEDIUM A misconfiguration flaw was found in Keycloak. This issue can allow an attacker to redirect users to an arbitrary URL if a 'Valid Redirect URI' is set to http://localhost or http:/ | Sep 19, 2024 | 6.1 | 27 | NO | YES |
CVE-2024-1635HIGH A vulnerability was found in Undertow. This vulnerability impacts a server that supports the wildfly-http-client protocol. Whenever a malicious user opens and closes a connection w | Feb 19, 2024 | 7.5 | 27 | NO | NO |
CVE-2025-6021HIGH A flaw was found in libxml2's xmlBuildQName function, where integer overflows in buffer size calculations can lead to a stack-based buffer overflow. This issue can result in memory | Jun 12, 2025 | 7.5 | 26 | NO | NO |
CVE-2023-1108HIGH A flaw was found in undertow. This issue makes achieving a denial of service possible due to an unexpected handshake status updated in SslConduit, where the loop never terminates. | Sep 14, 2023 | 7.5 | 25 | NO | NO |
CVE-2022-4318HIGH A vulnerability was found in cri-o. This issue allows the addition of arbitrary lines into /etc/passwd by use of a specially crafted environment variable. | Sep 25, 2023 | 7.8 | 24 | NO | NO |
CVE-2022-4039CRITICAL A flaw was found in Red Hat Single Sign-On for OpenShift container images, which are configured with an unsecured management interface enabled. This flaw allows an attacker to use | Sep 22, 2023 | 9.8 | 24 | NO | NO |
CVE-2024-1132HIGH A flaw was found in Keycloak, where it does not properly validate URLs included in a redirect. This issue could allow an attacker to construct a malicious request to bypass validat | Apr 17, 2024 | 8.1 | 23 | NO | NO |
Exploit Exposure
Signals from CVEs in this product scope (23 CVEs).
CISA KEV
1 CVE
4.3% of CVEs· 98th percentile
Metasploit
0 CVEs
0.0% of CVEs· Bottom 1%
Nuclei
1 CVE
4.3% of CVEs· 97th percentile
ExploitDB
1 CVE
4.3% of CVEs· 85th percentile
Social Chatter
Signals from CVEs in this product scope (23 CVEs).
Media Mentions
Signals from CVEs in this product scope (23 CVEs).
Top CNAs Publishing CVEs For Openshift Container Platform For Power
Top CWEs
Versions
| Version | CVE Count | Avg CVSS | Avg EPSS | KEV | Exploits |
|---|---|---|---|---|---|
| 4.9 | 13 | 7.3 | 1.5% | 0 | 1 |
| 4.19 | 1 | 7.7 | 0.3% | 0 | 0 |
| 4.18 | 2 | 7.6 | 0.7% | 0 | 0 |
| 4.17 | 2 | 7.6 | 0.7% | 0 | 0 |
| 4.16 | 4 | 7.3 | 0.9% | 0 | 0 |
| 4.15 | 3 | 6.8 | 1.0% | 0 | 0 |
| 4.14 | 3 | 6.8 | 1.0% | 0 | 0 |
| 4.13 | 3 | 6.8 | 1.0% | 0 | 0 |
| 4.12 | 6 | 7.2 | 0.9% | 0 | 0 |
| 4.11 | 3 | 7.3 | 0.9% | 0 | 0 |
| 4.10 | 15 | 7.2 | 1.4% | 0 | 1 |
| 3.11_ppc64le | 1 | 7.8 | 65.0% | 1 | 1 |