CVE-2019-0542: Red Hat Openshift Container Platform

High severity, CVSS 8.8. EPSS: 3.2% chance of exploitation in the next 30 days.

A remote code execution vulnerability exists in Xterm.js when the component mishandles special characters, aka "Xterm Remote Code Execution Vulnerability." This affects xterm.js.

Affected products

  • Red Hat Openshift Container Platform: from 3.9, before 3.9.99 (fixed in 3.9.99); from 3.10, before 3.10.163 (fixed in 3.10.163); after 3.11, before 3.11.104 (fixed in 3.11.104)
  • Xtermjs Xterm.js: before 5.0.0 (fixed in 5.0.0)

Published 2019-01-09. Last modified 2026-06-17.