RHSA-2021:1004MediumCVSS 8.1

Red Hat Security Advisory: Red Hat build of Quarkus 1.11.6 release and security update

Published
March 29, 2021
Last Modified
August 4, 2026

🔗 CVE IDs covered (4)

📋 Description

CVE-2020-25633 — resteasy-client: potential sensitive information leakage in JAX-RS RESTEasy Client's WebApplicationException handling CVE-2020-25724 — resteasy: information disclosure via HTTP response reuse CVE-2020-26238 — cron-utils: template injection allows attackers to inject arbitrary Java EL expressions leading to remote code execution CVE-2021-20218 — fabric8-kubernetes-client: vulnerable to a path traversal leading to integrity and availability compromise

🎯 Affected products1

  • Text-Only RHOAR

✅ Remediation

Before applying the update, back up your existing installation, including all applications, configuration files, databases and database settings, and so on. The References section of this erratum contains a download link for the update. You must be logged in to download the update.

🔗 References (10)