CVE-2026-5142: Red Hat Satellite
Medium severity, CVSS 6.5. EPSS: 0.4% chance of exploitation in the next 30 days.
A flaw was found in foreman. Authenticated users with 'view_keypairs' permission can bypass taxonomy scoping, allowing them to download private SSH (Secure Shell) keys from other organizations by directly querying key pair IDs. This vulnerability leads to cross-tenant data exposure in multi-tenant deployments, potentially compromising sensitive information.
Affected products
- Red Hat Satellite: from 6.18, before 6.18.7 (fixed in 6.18.7); from 6.16, before 6.16.10 (fixed in 6.16.10); from 6.17, before 6.17.9 (fixed in 6.17.9); from 6.19, before 6.19.2 (fixed in 6.19.2)
- Theforeman Foreman: before 3.18.2 (fixed in 3.18.2); from 3.19.0, before 3.19.1 (fixed in 3.19.1)
Published 2026-07-01. Last modified 2026-07-09.