CVE-2026-1961: Red Hat Satellite 6
High severity, CVSS 8.0. EPSS: 1.4% chance of exploitation in the next 30 days.
A flaw was found in Foreman. A remote attacker could exploit a command injection vulnerability in Foreman's WebSocket proxy implementation. This vulnerability arises from the system's use of unsanitized hostname values from compute resource providers when constructing shell commands. By operating a malicious compute resource server, an attacker could achieve remote code execution on the Foreman server when a user accesses VM VNC console functionality. This could lead to the compromise of sensitive credentials and the entire managed infrastructure.
Affected products
- Red Hat Red Hat Satellite 6
- Red Hat Red Hat Satellite 6.16 For Rhel 8: before 0:3.12.0.14-1.el8sat (fixed in 0:3.12.0.14-1.el8sat)
- Red Hat Red Hat Satellite 6.16 For Rhel 9: before 0:3.12.0.14-1.el9sat (fixed in 0:3.12.0.14-1.el9sat)
- Red Hat Red Hat Satellite 6.17 For Rhel 9: before 0:3.14.0.14-1.el9sat (fixed in 0:3.14.0.14-1.el9sat); before 0:0.1.23-0.3.el9pc (fixed in 0:0.1.23-0.3.el9pc); before 0:1.2.0-0.1.el9pc (fixed in 0:1.2.0-0.1.el9pc); before 0:4.2.28-0.1.el9pc (fixed in 0:4.2.28-0.1.el9pc); before 0:2.22.3-1.el9pc (fixed in 0:2.22.3-1.el9pc); before 0:3.27.10-2.el9pc (fixed in 0:3.27.10-2.el9pc); …
- Red Hat Red Hat Satellite 6.18 For Rhel 9: before 0:3.16.0.12-1.el9sat (fixed in 0:3.16.0.12-1.el9sat)
Published 2026-03-26. Last modified 2026-07-15.