VYPR

rubygem-foreman_remote_execution

by Red Hat

CVEs (1)

  • CVE-2026-12405HigOct 1, 2026
    risk 0.57cvss 8.8epss —

    A flaw was found in rubygem-foreman_remote_execution. A command injection vulnerability exists in the Red Hat Satellite API (/api/v2/job_invocations). When a job template has the effective_user property marked as overridable: true, the application fails to properly sanitize the…