Loading...
Loading...
Candlepin before 0.7.24, as used in Red Hat Subscription Asset Manager before 1.2.1, does not properly check manifest signatures, which allows local users to modify manifests.
April 2, 2013
April 29, 2026
See which npm, PyPI, Go, and Maven packages are affected by CVE-2012-6119
EchelonGraph automatically scans your cloud infrastructure and maps CVE exposure using blast radius analysis.