CISA KEV · catalog date Nov 3, 2021 · first observed Jul 19, 2026
Evidence dossier
CVE-2016-3718
The (1) HTTP and (2) FTP coders in ImageMagick before 6.9.3-10 and 7.x before 7.0.1-1 allow remote attackers to conduct server-side request forgery (SSRF) attacks via a crafted…
Exploited in the wild (CISA KEV since Nov 3, 2021). NVD reports CVSS 3.1 5.5. EPSS estimates 76.9% exploit likelihood as of Aug 27, 2026.
As of Aug 27, 2026
Normalized restatement
The (1) HTTP and (2) FTP coders in ImageMagick before 6.9.3-10 and 7.x before 7.0.1-1 allow remote attackers to conduct server-side request forgery (SSRF) attacks via a crafted image.
- State
- PUBLISHED
- Published
- May 5, 2016
- Updated
- Oct 21, 2025
- Evidence coverage
- 99%
Evidence chronology
What was known when
- Source dateSource date omittedFirst observed by CASCACISA-ADPOriginal evidence ↗
Record text: CISA ADP Vulnrichment
Inspect raw assertion
- Field
container- Value
- CISA ADP Vulnrichment
- Source dateSource date omittedFirst observed by CASCACVE ProgramOriginal evidence ↗
Record text: CVE Program Container
Inspect raw assertion
- Field
container- Value
- CVE Program Container
- Source dateSource date omittedFirst observed by CASCAredhatOriginal evidence ↗
Record text: The (1) HTTP and (2) FTP coders in ImageMagick before 6.9.3-10 and 7.x before 7.0.1-1 allow remote attackers to conduct server-side request forgery (SSRF) attacks via a crafted image.
Inspect raw assertion
- Field
container- Value
- The (1) HTTP and (2) FTP coders in ImageMagick before 6.9.3-10 and 7.x before 7.0.1-1 allow remote attackers to conduct server-side request forgery (SSRF) attacks via a crafted image.
- Source dateFirst observed by CASCACISA KEVOriginal evidence ↗
Exploitation cataloged: ImageMagick Server-Side Request Forgery (SSRF) Vulnerability
Inspect raw assertion
- Field
observed_exploitation- Value
- ImageMagick Server-Side Request Forgery (SSRF) Vulnerability
- Source dateFirst observed by CASCAFIRST EPSSOriginal evidence ↗
EPSS score: 76.9% probability · 99.51th percentile
Inspect raw assertion
- Field
model_probability- Value
- Probability 0.768970000000; percentile 0.995100000000
FIRST EPSS · score date Aug 27, 2026 · 99.5th percentile · first observed Aug 27, 2026
NVD · CVSS 3.1 · first observed Jul 19, 2026 · same-version scores align in this snapshot
Evidence detail
Source limits and decisions
Why each evidence state has this value
casca-unknown-reasons-v1Eligible evidence is present for this bounded claim.
- Revision
- evidence-policy-v1.1.0
- Cutoff
- Aug 27, 2026
- Resolution
- None
Eligible evidence is present for this bounded claim.
- Revision
- evidence-policy-v1.1.0
- Cutoff
- Aug 27, 2026
- Resolution
- None
Eligible evidence is present for this bounded claim.
- Revision
- casca-direct-cvss-eligibility-v1
- Cutoff
- Aug 27, 2026
- Resolution
- None
The cited source assertion is retained while canonical product linkage remains open.
- Revision
- casca-factor-d-obligations-v1
- Cutoff
- Aug 27, 2026
- Resolution
- Resolve identity
Source comparison
Who said what
CISA ADP Vulnrichment
Inspect raw assertion
- Field
container- Value
- CISA ADP Vulnrichment
CVE Program Container
Inspect raw assertion
- Field
container- Value
- CVE Program Container
The (1) HTTP and (2) FTP coders in ImageMagick before 6.9.3-10 and 7.x before 7.0.1-1 allow remote attackers to conduct server-side request forgery (SSRF) attacks via a crafted image.
Inspect raw assertion
- Field
container- Value
- The (1) HTTP and (2) FTP coders in ImageMagick before 6.9.3-10 and 7.x before 7.0.1-1 allow remote attackers to conduct server-side request forgery (SSRF) attacks via a crafted image.
ImageMagick Server-Side Request Forgery (SSRF) Vulnerability
Inspect raw assertion
- Field
observed_exploitation- Value
- ImageMagick Server-Side Request Forgery (SSRF) Vulnerability
76.9% probability · 99.51th percentile
Inspect raw assertion
- Field
model_probability- Value
- Probability 0.768970000000; percentile 0.995100000000
Applicability
Cited product scope
Grouped from 5 configuration nodes in this exact snapshot. Visual grouping is navigational; asset exposure and root cause require cited evidence.
Identity source boundaries
- Cpe dictionary1,775,266 records · observed through 2026-07-21T06:45:29.809Z
27d65b0f-b718-4b4f-bb79-c47c68d09dfa - Cpe match643,502 records · observed through 2026-07-21T08:13:17.697Z
955dae73-7302-438b-aee1-058d7cc5d48e
31 scope groups
Canonical linkage remains open; the cited source assertion is retained below.
Inspect raw assertion
[{"status": "affected", "version": "n/a"}]product-a18840e4673d48e569064752e9575849e99b3f173c63d7c965c4c193bcaebef2Linked exactInspect raw assertions
cpe:2.3:o:canonical:ubuntu_linux:16.04:*:*:*:esm:*:*:*- Official link
- Linked exact
- Role
- Vulnerable target
- Configuration
- 2 · node/0 · match 3
- Logic
- OR
- Version bounds
- No explicit bounds
- Match ID
7a5301bf-1402-4be0-a0f8-69fbe79bc6d6
cpe:2.3:o:canonical:ubuntu_linux:14.04:*:*:*:esm:*:*:*- Official link
- Linked exact
- Role
- Vulnerable target
- Configuration
- 2 · node/0 · match 1
- Logic
- OR
- Version bounds
- No explicit bounds
- Match ID
815d70a8-47d3-459c-a32c-9feaca0659d1
cpe:2.3:o:canonical:ubuntu_linux:12.04:*:*:*:lts:*:*:*- Official link
- Linked exact
- Role
- Vulnerable target
- Configuration
- 2 · node/0 · match 0
- Logic
- OR
- Version bounds
- No explicit bounds
- Match ID
b6b7cad7-9d4e-4fdb-88e3-1e583210a01f
cpe:2.3:o:canonical:ubuntu_linux:15.10:*:*:*:*:*:*:*- Official link
- Linked exact
- Role
- Vulnerable target
- Configuration
- 2 · node/0 · match 2
- Logic
- OR
- Version bounds
- No explicit bounds
- Match ID
e88a537f-f4d0-46b9-9e37-965233c2a355
product-175077c3e8189059a3f0aa6ea79ee98b4b81b6e32c88dc43a6ddbd70f7e2000eLinked exactInspect raw assertions
cpe:2.3:a:imagemagick:imagemagick:7.0.0-0:*:*:*:*:*:*:*- Official link
- Linked exact
- Role
- Vulnerable target
- Configuration
- 1 · node/0 · match 1
- Logic
- OR
- Version bounds
- No explicit bounds
- Match ID
3b7ccc6b-c66e-48e2-ba1e-cbf6421b4feb
cpe:2.3:a:imagemagick:imagemagick:*:*:*:*:*:*:*:*- Official link
- Linked exact
- Role
- Vulnerable target
- Configuration
- 1 · node/0 · match 0
- Logic
- OR
- Version bounds
- through excluding 6.9.3-10
- Match ID
87477201-64c5-490b-aae1-23d26f774989
cpe:2.3:a:imagemagick:imagemagick:7.0.1-0:*:*:*:*:*:*:*- Official link
- Linked exact
- Role
- Vulnerable target
- Configuration
- 1 · node/0 · match 2
- Logic
- OR
- Version bounds
- No explicit bounds
- Match ID
693c9f8f-a8c1-4d06-8f31-e085e16e701c
product-c27aedc6088fe47e75f3a72d532ce7dcfb4a151fd6deaeecc763cf1d10026925Linked exactInspect raw assertion
cpe:2.3:o:opensuse:leap:42.1:*:*:*:*:*:*:*- Official link
- Linked exact
- Role
- Vulnerable target
- Configuration
- 4 · node/0 · match 6
- Logic
- OR
- Version bounds
- No explicit bounds
- Match ID
4863be36-d16a-4d75-90d9-fd76db5b48b7
product-66ca8198d1887ac9754d1aad85d76f1edfc54c873eb2cd9bedf566863f5e07bdLinked exactInspect raw assertion
cpe:2.3:o:opensuse:opensuse:13.2:*:*:*:*:*:*:*- Official link
- Linked exact
- Role
- Vulnerable target
- Configuration
- 4 · node/0 · match 7
- Logic
- OR
- Version bounds
- No explicit bounds
- Match ID
03117df1-3bec-4b8d-ad63-dbbdb2126081
product-efc63d4e81383a6772c6c41b2fb3231b349512d257b4b47a2475eb5d42511849Linked exactInspect raw assertions
cpe:2.3:o:oracle:linux:6:-:*:*:*:*:*:*- Official link
- Linked exact
- Role
- Vulnerable target
- Configuration
- 3 · node/0 · match 0
- Logic
- OR
- Version bounds
- No explicit bounds
- Match ID
d7b037a8-72a6-4dff-94b2-d688a5f6f876
cpe:2.3:o:oracle:linux:7:-:*:*:*:*:*:*- Official link
- Linked exact
- Role
- Vulnerable target
- Configuration
- 3 · node/0 · match 1
- Logic
- OR
- Version bounds
- No explicit bounds
- Match ID
44b8fedf-6cb0-46e9-9ad7-4445b001c158
product-539219b1ee59962407ed68b1ceec26467cc69e69724392149215aa94f97bef9bLinked exactInspect raw assertions
cpe:2.3:o:oracle:solaris:11.3:*:*:*:*:*:*:*- Official link
- Linked exact
- Role
- Vulnerable target
- Configuration
- 3 · node/0 · match 3
- Logic
- OR
- Version bounds
- No explicit bounds
- Match ID
79a602c5-61fe-47ba-9786-f045b6c6dba8
cpe:2.3:o:oracle:solaris:10:*:*:*:*:*:*:*- Official link
- Linked exact
- Role
- Vulnerable target
- Configuration
- 3 · node/0 · match 2
- Logic
- OR
- Version bounds
- No explicit bounds
- Match ID
964b57cd-cb8a-4520-b358-1c93ec5ef2dc
product-ebce605e64c58caa7df6a30e91702332cd8c0be8f801e44353e6350e913ec5aeLinked exactInspect raw assertions
cpe:2.3:o:redhat:enterprise_linux_desktop:7.0:*:*:*:*:*:*:*- Official link
- Linked exact
- Role
- Vulnerable target
- Configuration
- 0 · node/0 · match 1
- Logic
- OR
- Version bounds
- No explicit bounds
- Match ID
33c068a4-3780-4eab-a937-6082df847564
cpe:2.3:o:redhat:enterprise_linux_desktop:6.0:*:*:*:*:*:*:*- Official link
- Linked exact
- Role
- Vulnerable target
- Configuration
- 0 · node/0 · match 0
- Logic
- OR
- Version bounds
- No explicit bounds
- Match ID
ee249e1b-a1fd-4e08-aa71-a0e1f10ffe97
product-8abf8d7f0342f690712d750b6cf7fbf4068eb0134c40a51c5b57b074f81c6378Linked exactInspect raw assertions
cpe:2.3:o:redhat:enterprise_linux_eus:7.3:*:*:*:*:*:*:*- Official link
- Linked exact
- Role
- Vulnerable target
- Configuration
- 0 · node/0 · match 4
- Logic
- OR
- Version bounds
- No explicit bounds
- Match ID
807c024a-f8e8-4b48-a349-4c68cd252ca1
cpe:2.3:o:redhat:enterprise_linux_eus:6.7:*:*:*:*:*:*:*- Official link
- Linked exact
- Role
- Vulnerable target
- Configuration
- 0 · node/0 · match 2
- Logic
- OR
- Version bounds
- No explicit bounds
- Match ID
967ec28a-607f-48f4-ad64-5e3041c768f0
cpe:2.3:o:redhat:enterprise_linux_eus:7.7:*:*:*:*:*:*:*- Official link
- Linked exact
- Role
- Vulnerable target
- Configuration
- 0 · node/0 · match 8
- Logic
- OR
- Version bounds
- No explicit bounds
- Match ID
83737173-e12e-4641-bc49-0bd84a6b29d0
cpe:2.3:o:redhat:enterprise_linux_eus:7.6:*:*:*:*:*:*:*- Official link
- Linked exact
- Role
- Vulnerable target
- Configuration
- 0 · node/0 · match 7
- Logic
- OR
- Version bounds
- No explicit bounds
- Match ID
5bf3c7a5-9117-42c7-bea1-4aa378a582ef
cpe:2.3:o:redhat:enterprise_linux_eus:7.5:*:*:*:*:*:*:*- Official link
- Linked exact
- Role
- Vulnerable target
- Configuration
- 0 · node/0 · match 6
- Logic
- OR
- Version bounds
- No explicit bounds
- Match ID
0cf73560-2f5b-4723-a8a1-9aadbb3ada00
cpe:2.3:o:redhat:enterprise_linux_eus:7.4:*:*:*:*:*:*:*- Official link
- Linked exact
- Role
- Vulnerable target
- Configuration
- 0 · node/0 · match 5
- Logic
- OR
- Version bounds
- No explicit bounds
- Match ID
f96e3779-f56a-45ff-bb3d-4980527d721e
cpe:2.3:o:redhat:enterprise_linux_eus:7.2:*:*:*:*:*:*:*- Official link
- Linked exact
- Role
- Vulnerable target
- Configuration
- 0 · node/0 · match 3
- Logic
- OR
- Version bounds
- No explicit bounds
- Match ID
ae1d81a1-cd24-4b17-8afd-dc95e90ad7d0
product-fab9230751e41d94860bfa2eaae4ca0e74c5c60f58631aa282686d100ad4fa0bLinked exactInspect raw assertions
cpe:2.3:o:redhat:enterprise_linux_for_ibm_z_systems:6.0_s390x:*:*:*:*:*:*:*- Official link
- Linked exact
- Role
- Vulnerable target
- Configuration
- 0 · node/0 · match 9
- Logic
- OR
- Version bounds
- No explicit bounds
- Match ID
c84eaae7-0249-4ea1-b8d3-e039b03acdc3
cpe:2.3:o:redhat:enterprise_linux_for_ibm_z_systems:7.0_s390x:*:*:*:*:*:*:*- Official link
- Linked exact
- Role
- Vulnerable target
- Configuration
- 0 · node/0 · match 10
- Logic
- OR
- Version bounds
- No explicit bounds
- Match ID
2148300c-ecbd-4ed5-a164-79629859dd43
product-323efd260a3034fd5a801fc0892ece9f9134f88683f3fd325c7ee2fdc93956fdLinked exactInspect raw assertions
cpe:2.3:o:redhat:enterprise_linux_for_ibm_z_systems_eus:7.5_s390x:*:*:*:*:*:*:*- Official link
- Linked exact
- Role
- Vulnerable target
- Configuration
- 0 · node/0 · match 15
- Logic
- OR
- Version bounds
- No explicit bounds
- Match ID
0f8eb695-5ea3-46d2-941e-d7f01ab99a48
cpe:2.3:o:redhat:enterprise_linux_for_ibm_z_systems_eus:7.4_s390x:*:*:*:*:*:*:*- Official link
- Linked exact
- Role
- Vulnerable target
- Configuration
- 0 · node/0 · match 14
- Logic
- OR
- Version bounds
- No explicit bounds
- Match ID
b908aef5-67ce-42d4-961d-c0e7adb78add
cpe:2.3:o:redhat:enterprise_linux_for_ibm_z_systems_eus:7.7_s390x:*:*:*:*:*:*:*- Official link
- Linked exact
- Role
- Vulnerable target
- Configuration
- 0 · node/0 · match 17
- Logic
- OR
- Version bounds
- No explicit bounds
- Match ID
ffc68d88-3cd3-4a3d-a01b-e9dbacd9b9cb
cpe:2.3:o:redhat:enterprise_linux_for_ibm_z_systems_eus:6.7_s390x:*:*:*:*:*:*:*- Official link
- Linked exact
- Role
- Vulnerable target
- Configuration
- 0 · node/0 · match 11
- Logic
- OR
- Version bounds
- No explicit bounds
- Match ID
837f0d24-99b3-4093-a45a-53adb0367fcf
cpe:2.3:o:redhat:enterprise_linux_for_ibm_z_systems_eus:7.2_s390x:*:*:*:*:*:*:*- Official link
- Linked exact
- Role
- Vulnerable target
- Configuration
- 0 · node/0 · match 12
- Logic
- OR
- Version bounds
- No explicit bounds
- Match ID
357fde3e-2248-4bcd-b726-97c4d92fdcb7
cpe:2.3:o:redhat:enterprise_linux_for_ibm_z_systems_eus:7.6_s390x:*:*:*:*:*:*:*- Official link
- Linked exact
- Role
- Vulnerable target
- Configuration
- 0 · node/0 · match 16
- Logic
- OR
- Version bounds
- No explicit bounds
- Match ID
1e1db003-76b8-4d7b-a6ed-5064c3ae1c11
cpe:2.3:o:redhat:enterprise_linux_for_ibm_z_systems_eus:7.3_s390x:*:*:*:*:*:*:*- Official link
- Linked exact
- Role
- Vulnerable target
- Configuration
- 0 · node/0 · match 13
- Logic
- OR
- Version bounds
- No explicit bounds
- Match ID
e420b889-bb89-4b64-b0e0-7e9b8545b959
product-fd0893ef7253031c8ee72effb6fcc65181f9b3f5e01f8f48b6a6ab89a31380a9Linked exactInspect raw assertions
cpe:2.3:o:redhat:enterprise_linux_for_power_big_endian:6.0_ppc64:*:*:*:*:*:*:*- Official link
- Linked exact
- Role
- Vulnerable target
- Configuration
- 0 · node/0 · match 18
- Logic
- OR
- Version bounds
- No explicit bounds
- Match ID
6d8d654f-2442-4ea0-af89-6ac2cd214772
cpe:2.3:o:redhat:enterprise_linux_for_power_big_endian:7.0_ppc64:*:*:*:*:*:*:*- Official link
- Linked exact
- Role
- Vulnerable target
- Configuration
- 0 · node/0 · match 19
- Logic
- OR
- Version bounds
- No explicit bounds
- Match ID
8bcf87fd-9358-42a5-9917-25df0180a5a6
product-c09e1a6c06a60f75d4f5a3a91108bcb8e8b7418b4d0bcbe56608e9eba3cd934bLinked exactInspect raw assertions
cpe:2.3:o:redhat:enterprise_linux_for_power_big_endian_eus:7.5_ppc64:*:*:*:*:*:*:*- Official link
- Linked exact
- Role
- Vulnerable target
- Configuration
- 0 · node/0 · match 24
- Logic
- OR
- Version bounds
- No explicit bounds
- Match ID
4319b943-7b19-468d-a160-5895f7f997a3
cpe:2.3:o:redhat:enterprise_linux_for_power_big_endian_eus:7.6_ppc64:*:*:*:*:*:*:*- Official link
- Linked exact
- Role
- Vulnerable target
- Configuration
- 0 · node/0 · match 25
- Logic
- OR
- Version bounds
- No explicit bounds
- Match ID
39c1abf5-4070-4aa7-bab8-4f63e1bd91ff
cpe:2.3:o:redhat:enterprise_linux_for_power_big_endian_eus:7.3_ppc64:*:*:*:*:*:*:*- Official link
- Linked exact
- Role
- Vulnerable target
- Configuration
- 0 · node/0 · match 22
- Logic
- OR
- Version bounds
- No explicit bounds
- Match ID
188019bf-3700-4b3f-bfa5-553b2b545b7f
cpe:2.3:o:redhat:enterprise_linux_for_power_big_endian_eus:7.4_ppc64:*:*:*:*:*:*:*- Official link
- Linked exact
- Role
- Vulnerable target
- Configuration
- 0 · node/0 · match 23
- Logic
- OR
- Version bounds
- No explicit bounds
- Match ID
9b8b2e32-b838-4e51-baa2-764089d2a684
cpe:2.3:o:redhat:enterprise_linux_for_power_big_endian_eus:7.2_ppc64:*:*:*:*:*:*:*- Official link
- Linked exact
- Role
- Vulnerable target
- Configuration
- 0 · node/0 · match 21
- Logic
- OR
- Version bounds
- No explicit bounds
- Match ID
8e5b5f9e-d749-45e5-8538-7ced9620c00c
cpe:2.3:o:redhat:enterprise_linux_for_power_big_endian_eus:7.7_ppc64:*:*:*:*:*:*:*- Official link
- Linked exact
- Role
- Vulnerable target
- Configuration
- 0 · node/0 · match 26
- Logic
- OR
- Version bounds
- No explicit bounds
- Match ID
8036e2ae-4e44-4fa5-affb-a3724bfdd654
cpe:2.3:o:redhat:enterprise_linux_for_power_big_endian_eus:6.7_ppc64:*:*:*:*:*:*:*- Official link
- Linked exact
- Role
- Vulnerable target
- Configuration
- 0 · node/0 · match 20
- Logic
- OR
- Version bounds
- No explicit bounds
- Match ID
9835090f-120a-4a53-b4a8-375dd6999167
product-d01c6ee0421fbc3321008543c2e5581950beffd4af6868b9a4ce0cf3d25d9429Linked exactInspect raw assertion
cpe:2.3:o:redhat:enterprise_linux_for_power_little_endian:7.0_ppc64le:*:*:*:*:*:*:*- Official link
- Linked exact
- Role
- Vulnerable target
- Configuration
- 0 · node/0 · match 27
- Logic
- OR
- Version bounds
- No explicit bounds
- Match ID
7a584aaa-a14f-4c64-8fed-675dc36f69a3
product-280a720ee74a48a2d9e1641fe847ee843978848900003d7939566317c7359fb5Linked exactInspect raw assertions
cpe:2.3:o:redhat:enterprise_linux_for_power_little_endian_eus:7.6_ppc64le:*:*:*:*:*:*:*- Official link
- Linked exact
- Role
- Vulnerable target
- Configuration
- 0 · node/0 · match 32
- Logic
- OR
- Version bounds
- No explicit bounds
- Match ID
f81f859c-da89-4d1e-91d3-a000ad646203
cpe:2.3:o:redhat:enterprise_linux_for_power_little_endian_eus:7.3_ppc64le:*:*:*:*:*:*:*- Official link
- Linked exact
- Role
- Vulnerable target
- Configuration
- 0 · node/0 · match 29
- Logic
- OR
- Version bounds
- No explicit bounds
- Match ID
cfe6c909-798b-4b7a-9bd4-6741933dbc1f
cpe:2.3:o:redhat:enterprise_linux_for_power_little_endian_eus:7.4_ppc64le:*:*:*:*:*:*:*- Official link
- Linked exact
- Role
- Vulnerable target
- Configuration
- 0 · node/0 · match 30
- Logic
- OR
- Version bounds
- No explicit bounds
- Match ID
e9a24d0c-604d-4421-afa6-5d541da2e94d
cpe:2.3:o:redhat:enterprise_linux_for_power_little_endian_eus:7.5_ppc64le:*:*:*:*:*:*:*- Official link
- Linked exact
- Role
- Vulnerable target
- Configuration
- 0 · node/0 · match 31
- Logic
- OR
- Version bounds
- No explicit bounds
- Match ID
3a2e3637-b6a6-4da9-8b0a-e91f22130a45
cpe:2.3:o:redhat:enterprise_linux_for_power_little_endian_eus:7.7_ppc64le:*:*:*:*:*:*:*- Official link
- Linked exact
- Role
- Vulnerable target
- Configuration
- 0 · node/0 · match 33
- Logic
- OR
- Version bounds
- No explicit bounds
- Match ID
418488a5-2912-406c-9337-b8e85d0c2b57
cpe:2.3:o:redhat:enterprise_linux_for_power_little_endian_eus:7.2_ppc64le:*:*:*:*:*:*:*- Official link
- Linked exact
- Role
- Vulnerable target
- Configuration
- 0 · node/0 · match 28
- Logic
- OR
- Version bounds
- No explicit bounds
- Match ID
d373a806-8a25-4bd4-8511-879d8755c326
product-575964ce839a45cc1ce83cd932b11129384135e26d8761ae041b4e406cc13983Linked exactInspect raw assertions
cpe:2.3:o:redhat:enterprise_linux_hpc_node:6.0:*:*:*:*:*:*:*- Official link
- Linked exact
- Role
- Vulnerable target
- Configuration
- 0 · node/0 · match 34
- Logic
- OR
- Version bounds
- No explicit bounds
- Match ID
c2fac325-6eeb-466d-9eba-8ed4dbc9cfbf
cpe:2.3:o:redhat:enterprise_linux_hpc_node:7.0:*:*:*:*:*:*:*- Official link
- Linked exact
- Role
- Vulnerable target
- Configuration
- 0 · node/0 · match 35
- Logic
- OR
- Version bounds
- No explicit bounds
- Match ID
3c84489b-b08c-4854-8a12-d01b6e45cf79
product-cc60d7d17f094d3155ae20d7d44f9a75b66dc9ba868985723d59b88ee100d26dLinked exactInspect raw assertion
cpe:2.3:o:redhat:enterprise_linux_hpc_node_eus:7.2:*:*:*:*:*:*:*- Official link
- Linked exact
- Role
- Vulnerable target
- Configuration
- 0 · node/0 · match 36
- Logic
- OR
- Version bounds
- No explicit bounds
- Match ID
39a901d6-0874-46a4-92a8-5f72c7a89e85
product-8db20157ede2f731f576213a7e555a24d2424bb17aed8e43ad9b77c3587f9deaLinked exactInspect raw assertions
cpe:2.3:o:redhat:enterprise_linux_server:6.0:*:*:*:*:*:*:*- Official link
- Linked exact
- Role
- Vulnerable target
- Configuration
- 0 · node/0 · match 37
- Logic
- OR
- Version bounds
- No explicit bounds
- Match ID
9bbcd86a-e6c7-4444-9d74-f861084090f0
cpe:2.3:o:redhat:enterprise_linux_server:7.0:*:*:*:*:*:*:*- Official link
- Linked exact
- Role
- Vulnerable target
- Configuration
- 0 · node/0 · match 38
- Logic
- OR
- Version bounds
- No explicit bounds
- Match ID
51ef4996-72f4-4fa4-814f-f5991e7a8318
product-7120df83a9b73aae2817084ac2070ecc7d1fbfcada23076a424824e660688aaeLinked exactInspect raw assertions
cpe:2.3:o:redhat:enterprise_linux_server_aus:7.4:*:*:*:*:*:*:*- Official link
- Linked exact
- Role
- Vulnerable target
- Configuration
- 0 · node/0 · match 41
- Logic
- OR
- Version bounds
- No explicit bounds
- Match ID
d99a687e-eae6-417e-a88e-d0082bc194cd
cpe:2.3:o:redhat:enterprise_linux_server_aus:7.2:*:*:*:*:*:*:*- Official link
- Linked exact
- Role
- Vulnerable target
- Configuration
- 0 · node/0 · match 39
- Logic
- OR
- Version bounds
- No explicit bounds
- Match ID
1c8d871b-aea1-4407-aee3-47ec782250ff
cpe:2.3:o:redhat:enterprise_linux_server_aus:7.3:*:*:*:*:*:*:*- Official link
- Linked exact
- Role
- Vulnerable target
- Configuration
- 0 · node/0 · match 40
- Logic
- OR
- Version bounds
- No explicit bounds
- Match ID
98381e61-f082-4302-b51f-5648884f998b
cpe:2.3:o:redhat:enterprise_linux_server_aus:7.6:*:*:*:*:*:*:*- Official link
- Linked exact
- Role
- Vulnerable target
- Configuration
- 0 · node/0 · match 42
- Logic
- OR
- Version bounds
- No explicit bounds
- Match ID
b353ce99-d57c-465b-aab0-73ef581127d1
cpe:2.3:o:redhat:enterprise_linux_server_aus:7.7:*:*:*:*:*:*:*- Official link
- Linked exact
- Role
- Vulnerable target
- Configuration
- 0 · node/0 · match 43
- Logic
- OR
- Version bounds
- No explicit bounds
- Match ID
7431abc1-9252-419e-8cc1-311b41360078
product-97a1380f0ac22d5543df434518bceb2f4b47c884bd4e990396f64e72afa98accLinked exactInspect raw assertions
cpe:2.3:o:redhat:enterprise_linux_server_from_rhui:7.0:*:*:*:*:*:*:*- Official link
- Linked exact
- Role
- Vulnerable target
- Configuration
- 0 · node/0 · match 45
- Logic
- OR
- Version bounds
- No explicit bounds
- Match ID
f732c7c9-a9cc-4def-a8be-d0f18c944c78
cpe:2.3:o:redhat:enterprise_linux_server_from_rhui:6.0:*:*:*:*:*:*:*- Official link
- Linked exact
- Role
- Vulnerable target
- Configuration
- 0 · node/0 · match 44
- Logic
- OR
- Version bounds
- No explicit bounds
- Match ID
0ae981d4-0ca1-46fa-8e91-e1a4d5b31383
product-2db35545abcea5e5eb469295be01219c48921c14e30bb08fcfed6337333391a7Linked exactInspect raw assertion
cpe:2.3:o:redhat:enterprise_linux_server_supplementary_eus:6.7z:*:*:*:*:*:*:*- Official link
- Linked exact
- Role
- Vulnerable target
- Configuration
- 0 · node/0 · match 46
- Logic
- OR
- Version bounds
- No explicit bounds
- Match ID
fe561c57-71de-434a-85bc-1faafdcc7058
product-bc6ac9f1e87a668175a638bad6013a05d2210c8abe7977a8f8f0948257ba71daLinked exactInspect raw assertions
cpe:2.3:o:redhat:enterprise_linux_server_tus:7.3:*:*:*:*:*:*:*- Official link
- Linked exact
- Role
- Vulnerable target
- Configuration
- 0 · node/0 · match 48
- Logic
- OR
- Version bounds
- No explicit bounds
- Match ID
24c0f4e1-c52c-41e0-9f14-f83add5cc7ed
cpe:2.3:o:redhat:enterprise_linux_server_tus:7.2:*:*:*:*:*:*:*- Official link
- Linked exact
- Role
- Vulnerable target
- Configuration
- 0 · node/0 · match 47
- Logic
- OR
- Version bounds
- No explicit bounds
- Match ID
6755b6ad-0422-467b-8115-34a60b1d1a40
cpe:2.3:o:redhat:enterprise_linux_server_tus:7.7:*:*:*:*:*:*:*- Official link
- Linked exact
- Role
- Vulnerable target
- Configuration
- 0 · node/0 · match 50
- Logic
- OR
- Version bounds
- No explicit bounds
- Match ID
17f256a9-d3b9-4c72-b013-4efd878bfea8
cpe:2.3:o:redhat:enterprise_linux_server_tus:7.6:*:*:*:*:*:*:*- Official link
- Linked exact
- Role
- Vulnerable target
- Configuration
- 0 · node/0 · match 49
- Logic
- OR
- Version bounds
- No explicit bounds
- Match ID
b76aa310-fec7-497f-af04-c3ec1e76c4cc
product-b2aa744c9fb2b4ef0e3b842acbf37879ad4ac43af291292cfb0906170b204ab9Linked exactInspect raw assertions
cpe:2.3:o:redhat:enterprise_linux_workstation:7.0:*:*:*:*:*:*:*- Official link
- Linked exact
- Role
- Vulnerable target
- Configuration
- 0 · node/0 · match 52
- Logic
- OR
- Version bounds
- No explicit bounds
- Match ID
825ece2d-e232-46e0-a047-074b34db1e97
cpe:2.3:o:redhat:enterprise_linux_workstation:6.0:*:*:*:*:*:*:*- Official link
- Linked exact
- Role
- Vulnerable target
- Configuration
- 0 · node/0 · match 51
- Logic
- OR
- Version bounds
- No explicit bounds
- Match ID
e5ed5807-55b7-47c5-97a6-03233f4fbc3a
product-c114d55b1b77d823f5abd8527dc5c1d6a1fc5b140f4ff55da92296cfc7f95ca0Linked exactInspect raw assertions
cpe:2.3:a:suse:linux_enterprise_debuginfo:11:sp4:*:*:*:*:*:*- Official link
- Linked exact
- Role
- Vulnerable target
- Configuration
- 4 · node/0 · match 2
- Logic
- OR
- Version bounds
- No explicit bounds
- Match ID
f892f1b0-514c-42f7-90ae-12acdfdc1033
cpe:2.3:a:suse:linux_enterprise_debuginfo:11:sp3:*:*:*:*:*:*- Official link
- Linked exact
- Role
- Vulnerable target
- Configuration
- 4 · node/0 · match 1
- Logic
- OR
- Version bounds
- No explicit bounds
- Match ID
58d3b6fd-b474-4b09-b644-a8634a629280
cpe:2.3:a:suse:linux_enterprise_debuginfo:11:sp2:*:*:*:*:*:*- Official link
- Linked exact
- Role
- Vulnerable target
- Configuration
- 4 · node/0 · match 0
- Logic
- OR
- Version bounds
- No explicit bounds
- Match ID
d5900a25-fdd7-4900-bf7c-f3eccb714d2b
product-908c58b965f5cdd7f6621821fd6c68d62c5a5ce89de01a9e91af7286e0b17d41Linked exactInspect raw assertions
cpe:2.3:o:suse:linux_enterprise_desktop:12:sp1:*:*:*:*:*:*- Official link
- Linked exact
- Role
- Vulnerable target
- Configuration
- 4 · node/0 · match 9
- Logic
- OR
- Version bounds
- No explicit bounds
- Match ID
3a0ba503-3f96-48da-af47-fba37a9d0c48
cpe:2.3:o:suse:linux_enterprise_desktop:12:-:*:*:*:*:*:*- Official link
- Linked exact
- Role
- Vulnerable target
- Configuration
- 4 · node/0 · match 8
- Logic
- OR
- Version bounds
- No explicit bounds
- Match ID
d2df4815-b8cb-4ad3-b91d-2e09a8e318e9
Affected-product evidence
Accepted scope and product mapping
30 canonical links · 1 source-reported links
vendor-6bbcd126779403146e957d68529786b086421e0676d9e90a4d53d03594694fb2 · product-029a01c72e5306f6a90d3f3e1d801b193443a479820fb49aa3e69e3266443cac
- Source class
- Nvd cpe vulnerable target
- Assertions
- 1
- Mapping revision
- cpe23-exact-mapping-v1
- Observed cutoff
- Aug 27, 2026
Retained assertion IDs
2fd3f376-b0be-475e-8f11-16beab154d06vendor-f312a6e5551e4db2277a2caf7045c55e8d2015a199ce474d43bd1e0ce019eb0d · product-175077c3e8189059a3f0aa6ea79ee98b4b81b6e32c88dc43a6ddbd70f7e2000e
- Source class
- Nvd cpe vulnerable target
- Assertions
- 3
- Mapping revision
- cpe23-exact-mapping-v1
- Observed cutoff
- Aug 27, 2026
Retained assertion IDs
3e67b690-5c22-4e1d-8195-e5966df73b8c821c1ef8-ba9f-4dee-a16c-e3662a51182584dbd6d3-5261-4166-86b9-ea5575aae967vendor-6bbcd126779403146e957d68529786b086421e0676d9e90a4d53d03594694fb2 · product-17c7b234c758b1e03422fb7a3c0e6749e845702036e09e2074cae66121210921
- Source class
- Nvd cpe vulnerable target
- Assertions
- 1
- Mapping revision
- cpe23-exact-mapping-v1
- Observed cutoff
- Aug 27, 2026
Retained assertion IDs
7524781e-de13-413c-8b5c-ff6f15fa9a1dvendor-c759fafc60d6abc1277ecbf1ee6294d1f25ae0a4c7d5d0d9355c414b2db182cc · product-280a720ee74a48a2d9e1641fe847ee843978848900003d7939566317c7359fb5
- Source class
- Nvd cpe vulnerable target
- Assertions
- 6
- Mapping revision
- cpe23-exact-mapping-v1
- Observed cutoff
- Aug 27, 2026
Retained assertion IDs
1ebe3f81-b880-46c7-b6b7-dbc16e11aa8c54b3b76a-e64b-4d67-bea5-3d26187d24bd7f2bb75e-51b0-470a-a832-2992866e62fcab796d7c-f1be-4cd3-8655-7c7e8b18fca0b75f6631-0ea4-4116-9642-5bc2020d1e94f91111d5-5b16-4590-9224-ba0e676ea5d4vendor-c759fafc60d6abc1277ecbf1ee6294d1f25ae0a4c7d5d0d9355c414b2db182cc · product-2db35545abcea5e5eb469295be01219c48921c14e30bb08fcfed6337333391a7
- Source class
- Nvd cpe vulnerable target
- Assertions
- 1
- Mapping revision
- cpe23-exact-mapping-v1
- Observed cutoff
- Aug 27, 2026
Retained assertion IDs
af21bca6-44d4-4461-b45d-329a983c7ae3vendor-c759fafc60d6abc1277ecbf1ee6294d1f25ae0a4c7d5d0d9355c414b2db182cc · product-323efd260a3034fd5a801fc0892ece9f9134f88683f3fd325c7ee2fdc93956fd
- Source class
- Nvd cpe vulnerable target
- Assertions
- 7
- Mapping revision
- cpe23-exact-mapping-v1
- Observed cutoff
- Aug 27, 2026
Retained assertion IDs
1237bef2-15d2-4d93-b33d-ced04405488e44c95720-d91b-43da-a781-090ef164fa2c7a45020e-69b0-4844-a9fc-121e5351fba0b819b34a-45e7-43fe-baa8-ce871f14dcbfc6eaca7e-44e2-426b-828c-ddb41e738d98de42eefe-1b83-49c7-8237-5dc6931f169bdff65135-25c4-4169-bbdb-2257c50a4ae3vendor-6bbcd126779403146e957d68529786b086421e0676d9e90a4d53d03594694fb2 · product-4f2240e45c4385f8980643ce838561b90551012dc317022ee66a7d71a9db8e28
- Source class
- Nvd cpe vulnerable target
- Assertions
- 5
- Mapping revision
- cpe23-exact-mapping-v1
- Observed cutoff
- Aug 27, 2026
Retained assertion IDs
1cda11c4-5fbc-4ca9-b83f-fdcbac2ef39d213a10c4-1994-4d63-a3f1-898ec9ccc1499f826a37-35e2-4fe7-b405-f8fe9bc6c8eca5c757cc-b250-4e25-b91a-da7c51c52e60b74d8786-5931-4382-b9a3-22e157f063fevendor-b1377626da187dbea1eeb98f365c57a3dcbeccfdc2a7d3471e94ece7b6f88e55 · product-539219b1ee59962407ed68b1ceec26467cc69e69724392149215aa94f97bef9b
- Source class
- Nvd cpe vulnerable target
- Assertions
- 2
- Mapping revision
- cpe23-exact-mapping-v1
- Observed cutoff
- Aug 27, 2026
Retained assertion IDs
c5459438-b5f5-4be1-9c6f-76606dd719d7cb82a07e-b080-459b-8f08-8b721192888bvendor-c759fafc60d6abc1277ecbf1ee6294d1f25ae0a4c7d5d0d9355c414b2db182cc · product-575964ce839a45cc1ce83cd932b11129384135e26d8761ae041b4e406cc13983
- Source class
- Nvd cpe vulnerable target
- Assertions
- 2
- Mapping revision
- cpe23-exact-mapping-v1
- Observed cutoff
- Aug 27, 2026
Retained assertion IDs
0960c4d6-0c1f-401f-85e8-4cd955f352def9eafe1d-1cb8-4286-931f-4dcf045f4287vendor-f98e1750e4b030e2bb71130d14421ff255427227a8b696c92978cf6c77fc265d · product-66ca8198d1887ac9754d1aad85d76f1edfc54c873eb2cd9bedf566863f5e07bd
- Source class
- Nvd cpe vulnerable target
- Assertions
- 1
- Mapping revision
- cpe23-exact-mapping-v1
- Observed cutoff
- Aug 27, 2026
Retained assertion IDs
d7dcbc10-df97-41a2-b8cd-6d861d1d3ee6vendor-6bbcd126779403146e957d68529786b086421e0676d9e90a4d53d03594694fb2 · product-6e046fb997f096ca9d3ba77e0e7dba3aad0205129bb30ab70c401b282bcd0f8d
- Source class
- Nvd cpe vulnerable target
- Assertions
- 2
- Mapping revision
- cpe23-exact-mapping-v1
- Observed cutoff
- Aug 27, 2026
Retained assertion IDs
dd7faa23-45b2-4f3c-bfa1-78b0657085a6e211cc49-f707-430d-abad-0b17d9a3f439vendor-6bbcd126779403146e957d68529786b086421e0676d9e90a4d53d03594694fb2 · product-6fe21abd2669255eab9cb18837ddcf63aa787fce42fdad30fa2dd0c4a530da25
- Source class
- Nvd cpe vulnerable target
- Assertions
- 1
- Mapping revision
- cpe23-exact-mapping-v1
- Observed cutoff
- Aug 27, 2026
Retained assertion IDs
a2c60ebc-aaa0-4a97-bc9a-d857aae31034vendor-c759fafc60d6abc1277ecbf1ee6294d1f25ae0a4c7d5d0d9355c414b2db182cc · product-7120df83a9b73aae2817084ac2070ecc7d1fbfcada23076a424824e660688aae
- Source class
- Nvd cpe vulnerable target
- Assertions
- 5
- Mapping revision
- cpe23-exact-mapping-v1
- Observed cutoff
- Aug 27, 2026
Retained assertion IDs
3b5cb642-e44e-4208-b333-ca172f18d2004099eccf-7d26-4ddc-a572-bb136ffa64ca6cde912a-b5f2-46e3-8948-358fe3142d58a926ff04-6283-40bb-97c5-6321b828e2b8e837d295-98e2-4b6a-9463-6951d0ad8d94vendor-c759fafc60d6abc1277ecbf1ee6294d1f25ae0a4c7d5d0d9355c414b2db182cc · product-8abf8d7f0342f690712d750b6cf7fbf4068eb0134c40a51c5b57b074f81c6378
- Source class
- Nvd cpe vulnerable target
- Assertions
- 7
- Mapping revision
- cpe23-exact-mapping-v1
- Observed cutoff
- Aug 27, 2026
Retained assertion IDs
0f07b488-c778-4665-bb53-6b5913272f783779cf8d-49f0-4bcf-9a9d-74ac8a6d53e44a7402e9-a84e-41ff-9cfd-a4928dabf09e4aa1a79a-155d-4b16-9288-c5847d289254628c0197-394b-48b1-b0e9-73b2319844009e5252a7-6202-4d57-bf7f-e9603bbbd818df5c61c4-b78c-4fa9-8dd1-d6ab8fdb966bvendor-c759fafc60d6abc1277ecbf1ee6294d1f25ae0a4c7d5d0d9355c414b2db182cc · product-8db20157ede2f731f576213a7e555a24d2424bb17aed8e43ad9b77c3587f9dea
- Source class
- Nvd cpe vulnerable target
- Assertions
- 2
- Mapping revision
- cpe23-exact-mapping-v1
- Observed cutoff
- Aug 27, 2026
Retained assertion IDs
191e66b8-5f0f-4302-92b1-830a76b1d74e5fa27ca1-4be5-4d32-828a-746876f2d7cevendor-6bbcd126779403146e957d68529786b086421e0676d9e90a4d53d03594694fb2 · product-908c58b965f5cdd7f6621821fd6c68d62c5a5ce89de01a9e91af7286e0b17d41
- Source class
- Nvd cpe vulnerable target
- Assertions
- 2
- Mapping revision
- cpe23-exact-mapping-v1
- Observed cutoff
- Aug 27, 2026
Retained assertion IDs
9f64cc92-a533-4677-b8d0-8da689e00524ac23c8e4-0f65-42b5-9f91-ac49717aca8evendor-c759fafc60d6abc1277ecbf1ee6294d1f25ae0a4c7d5d0d9355c414b2db182cc · product-97a1380f0ac22d5543df434518bceb2f4b47c884bd4e990396f64e72afa98acc
- Source class
- Nvd cpe vulnerable target
- Assertions
- 2
- Mapping revision
- cpe23-exact-mapping-v1
- Observed cutoff
- Aug 27, 2026
Retained assertion IDs
11366ac3-3b4c-454a-b53c-7a2bbc0b11aaf1f2c574-b718-4b1f-b137-af4e5460bc4avendor-c57a6167e95991f72f9616ac32b40463ac13c5f4929fcce3efc058b09a445b54 · product-a18840e4673d48e569064752e9575849e99b3f173c63d7c965c4c193bcaebef2
- Source class
- Nvd cpe vulnerable target
- Assertions
- 4
- Mapping revision
- cpe23-exact-mapping-v1
- Observed cutoff
- Aug 27, 2026
Retained assertion IDs
80a2675b-1e64-4ed6-b32e-a601a3a1f11d9112b4b9-d1d8-4fd6-9c71-f656d6342248d38e8d0a-e545-40b5-8cac-5368e50f3da7da5bda1c-5f96-4fca-a3d7-c77abcfe0861vendor-c759fafc60d6abc1277ecbf1ee6294d1f25ae0a4c7d5d0d9355c414b2db182cc · product-b2aa744c9fb2b4ef0e3b842acbf37879ad4ac43af291292cfb0906170b204ab9
- Source class
- Nvd cpe vulnerable target
- Assertions
- 2
- Mapping revision
- cpe23-exact-mapping-v1
- Observed cutoff
- Aug 27, 2026
Retained assertion IDs
e5c1ffd8-167f-4e02-9b74-a5294944bd32ff564802-7623-4815-8c9d-baa97dfc953evendor-c759fafc60d6abc1277ecbf1ee6294d1f25ae0a4c7d5d0d9355c414b2db182cc · product-bc6ac9f1e87a668175a638bad6013a05d2210c8abe7977a8f8f0948257ba71da
- Source class
- Nvd cpe vulnerable target
- Assertions
- 4
- Mapping revision
- cpe23-exact-mapping-v1
- Observed cutoff
- Aug 27, 2026
Retained assertion IDs
82b3ee2b-da52-4de0-91e7-9caf673f0a139f6623aa-e1aa-403b-99b6-ec52514be9a9a00f7d8c-1729-4036-b874-790adfabe7b8b01ec4cc-1714-4be9-9e37-464a0fb43f90vendor-6bbcd126779403146e957d68529786b086421e0676d9e90a4d53d03594694fb2 · product-bd4950335ff1f3f03b9dd6fa5c596f7c67c9ea6d150272de074ec3767af3532a
- Source class
- Nvd cpe vulnerable target
- Assertions
- 3
- Mapping revision
- cpe23-exact-mapping-v1
- Observed cutoff
- Aug 27, 2026
Retained assertion IDs
003c510d-3bdd-44ff-86a1-852177e9031b07a0e41d-0edf-47b7-bd71-d9468c33dd3835e05b3e-3d54-4121-8a54-c93001fbce2cvendor-c759fafc60d6abc1277ecbf1ee6294d1f25ae0a4c7d5d0d9355c414b2db182cc · product-c09e1a6c06a60f75d4f5a3a91108bcb8e8b7418b4d0bcbe56608e9eba3cd934b
- Source class
- Nvd cpe vulnerable target
- Assertions
- 7
- Mapping revision
- cpe23-exact-mapping-v1
- Observed cutoff
- Aug 27, 2026
Retained assertion IDs
1a539f88-efeb-46ea-a9b5-918d2da36cd722cde3a4-d97e-474b-bbe2-2966b30cbaec2e54658e-0898-4e5b-9f32-f2932de520f73a8fbae9-4501-48ec-8dd9-1f41877e7ab55b059e90-597f-4023-adcb-87b1a603144f6c560399-d878-488a-b16f-028fc06cf851de5ef65e-617e-44f9-9a34-bf65403a91cavendor-6bbcd126779403146e957d68529786b086421e0676d9e90a4d53d03594694fb2 · product-c114d55b1b77d823f5abd8527dc5c1d6a1fc5b140f4ff55da92296cfc7f95ca0
- Source class
- Nvd cpe vulnerable target
- Assertions
- 3
- Mapping revision
- cpe23-exact-mapping-v1
- Observed cutoff
- Aug 27, 2026
Retained assertion IDs
8ef793bc-3fa6-49a6-8c3c-564cd53dd5c1cbaa21cb-7531-45cc-8b37-08c782eb52e2d9f4b074-792f-4a28-89d8-6c1382b0c717vendor-f98e1750e4b030e2bb71130d14421ff255427227a8b696c92978cf6c77fc265d · product-c27aedc6088fe47e75f3a72d532ce7dcfb4a151fd6deaeecc763cf1d10026925
- Source class
- Nvd cpe vulnerable target
- Assertions
- 1
- Mapping revision
- cpe23-exact-mapping-v1
- Observed cutoff
- Aug 27, 2026
Retained assertion IDs
97d60a31-8aa5-45d4-ab8d-aa3bd2d6a759vendor-c759fafc60d6abc1277ecbf1ee6294d1f25ae0a4c7d5d0d9355c414b2db182cc · product-cc60d7d17f094d3155ae20d7d44f9a75b66dc9ba868985723d59b88ee100d26d
- Source class
- Nvd cpe vulnerable target
- Assertions
- 1
- Mapping revision
- cpe23-exact-mapping-v1
- Observed cutoff
- Aug 27, 2026
Retained assertion IDs
0b9b228e-a254-409c-881d-a040bc5b1ea0vendor-c759fafc60d6abc1277ecbf1ee6294d1f25ae0a4c7d5d0d9355c414b2db182cc · product-d01c6ee0421fbc3321008543c2e5581950beffd4af6868b9a4ce0cf3d25d9429
- Source class
- Nvd cpe vulnerable target
- Assertions
- 1
- Mapping revision
- cpe23-exact-mapping-v1
- Observed cutoff
- Aug 27, 2026
Retained assertion IDs
05f722ac-f622-46de-a30b-f99a2bfe4f3dvendor-c759fafc60d6abc1277ecbf1ee6294d1f25ae0a4c7d5d0d9355c414b2db182cc · product-ebce605e64c58caa7df6a30e91702332cd8c0be8f801e44353e6350e913ec5ae
- Source class
- Nvd cpe vulnerable target
- Assertions
- 2
- Mapping revision
- cpe23-exact-mapping-v1
- Observed cutoff
- Aug 27, 2026
Retained assertion IDs
03f3eab6-42e7-41dc-af55-2bba4e7a90be2a481fc0-fee8-4025-8c2c-ef15fa0714e8vendor-b1377626da187dbea1eeb98f365c57a3dcbeccfdc2a7d3471e94ece7b6f88e55 · product-efc63d4e81383a6772c6c41b2fb3231b349512d257b4b47a2475eb5d42511849
- Source class
- Nvd cpe vulnerable target
- Assertions
- 2
- Mapping revision
- cpe23-exact-mapping-v1
- Observed cutoff
- Aug 27, 2026
Retained assertion IDs
2c6d1d90-c415-4c60-9e75-4392b4d0fb148dbdc1f7-621c-40b2-a723-0b7854fc2261vendor-c759fafc60d6abc1277ecbf1ee6294d1f25ae0a4c7d5d0d9355c414b2db182cc · product-fab9230751e41d94860bfa2eaae4ca0e74c5c60f58631aa282686d100ad4fa0b
- Source class
- Nvd cpe vulnerable target
- Assertions
- 2
- Mapping revision
- cpe23-exact-mapping-v1
- Observed cutoff
- Aug 27, 2026
Retained assertion IDs
016c0af3-d22b-4d4e-8c78-1307a23b41d4936772fd-c178-43eb-a936-202e62226c1bvendor-c759fafc60d6abc1277ecbf1ee6294d1f25ae0a4c7d5d0d9355c414b2db182cc · product-fd0893ef7253031c8ee72effb6fcc65181f9b3f5e01f8f48b6a6ab89a31380a9
- Source class
- Nvd cpe vulnerable target
- Assertions
- 2
- Mapping revision
- cpe23-exact-mapping-v1
- Observed cutoff
- Aug 27, 2026
Retained assertion IDs
c8e8c17d-7929-4d5b-a4db-cb759b90ac95f3c023aa-54b2-4904-a1b8-e582bae2a694Canonical linkage remains open; the cited source assertion is retained below.
Vendor specified only by source · Product specified only by source
- Source class
- Direct cve affected
- Assertions
- 1
- Mapping revision
- cpe23-exact-mapping-v1
- Observed cutoff
- Aug 27, 2026
Retained assertion IDs
d9a1d0a1-b759-4549-8327-db82e59aca74Assessments
CVSS by origin
CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:N/I:H/A:NAV:N/AC:M/Au:N/C:N/I:P/A:NCVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:N/I:H/A:NCVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:N/I:H/A:NDirect CVE/CNA normalized decisions
CISA-ADP
CVSS 3.1 · Secondary · Independent enrichment · rank 2
CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:N/I:H/A:N- Validation
- Valid match
- Recomputed
- 5.5
- Decision reason
- Evidence supported
- Policy
- casca-direct-cvss-eligibility-v1
Assessments are retained side by side under closed precedence. Cascade never averages CVSS.
Evidence boundaries
- KEV membership is authoritative for the catalog, not proof of exposure in any environment.
- EPSS is a dated model probability and not an individual-environment prediction.
- Affected or fixed status applies only to the exact cited product and version scope; remaining scope stays source-scoped.
- NVD-carried upstream facts remain derivative; independent corroboration requires a separately authored source.
- Only NVD metrics validated under the generation-bound calculator are Public Priority eligible; direct CVE record metrics remain display-only.
- NVD CVSS source eligibility is closed: NVD-authored, exact record-source, or registered same-CVE container origin; unmapped sources remain display-only.
- Core replay supports the active and immediately prior generation; retrospective valid-at replay is deferred.
- OSV aggregation and OSV-converted NVD material are not independent corroboration.
- Red Hat facts are vendor assertions for the exact supplied products.
- Nonmembership and not-yet-observed states are not proof of safety.