Resf maintains Rocky Linux, a community-driven enterprise Linux distribution, with a compact vulnerability footprint centered on distribution-level components and dependencies. The observed weakness class involves server-side request forgery, reflecting the attack surface inherent to network-facing services and libraries bundled within the distribution. Live severity, exploitation, and exposure counts are shown alongside this summary.
The number and severity of CVEs published that impact products developed by Resf over time
Signals from CVEs in this vendor scope (1 CVEs).
1 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2021-40438CRITICAL A crafted request uri-path can cause mod_proxy to forward the request to an origin server choosen by the remote user. This issue affects Apache HTTP Server 2.4.48 and earlier. | Sep 16, 2021 | 9.0 | 97 | YES | YES |
Signals from CVEs in this vendor scope (1 CVEs).
An overview of all social media posts that mention a CVE ID that affects a product developed by Resf.
Media articles that mention a CVE ID that affects a product developed by Resf — matched by CVE ID, not by vendor name.