RHSA-2025:19855HighCVSS 8.0

Red Hat Security Advisory: Satellite 6.16.5.5 Async Update

Published
November 6, 2025
Last Modified
July 11, 2026

🔗 CVE IDs covered (3)

📋 Description

CVE-2025-10622 — foreman: OS command injection via ct_location and fcct_location parameters CVE-2025-59830 — rubygem-rack: Rack QueryParser has an unsafe default allowing params_limit bypass via semicolon-separated parameters CVE-2025-61919 — rubygem-rack: Unbounded read in Rack::Request form parsing can lead to memory exhaustion

🔗 References (7)