CVE-2015-1844: Theforeman Foreman

Medium severity, CVSS 4.0. EPSS: 1.9% chance of exploitation in the next 30 days.

Foreman before 1.7.5 allows remote authenticated users to bypass organization and location restrictions by connecting through the REST API.

Affected products

Published 2015-08-14. Last modified 2026-06-17.