Vulnerability Database
Blog
FAQ
Docs
arrow_forward
search
light_mode
dark_mode
RHSA-2026:76128
See a problem?
Please try reporting it
to the source
first.
Source
https://access.redhat.com/errata/RHSA-2026:76128
Import Source
https://security.access.redhat.com/data/osv/RHSA-2026:76128.json
JSON Data
https://api.osv.dev/v1/vulns/RHSA-2026:76128
Upstream
CVE (27)
CVE-2025-12543
CVE-2025-14813
CVE-2025-9784
CVE-2026-0603
CVE-2026-15563
CVE-2026-2092
CVE-2026-2575
CVE-2026-3505
CVE-2026-42578
CVE-2026-42579
CVE-2026-42581
CVE-2026-42587
CVE-2026-44249
CVE-2026-44893
CVE-2026-45416
CVE-2026-45674
CVE-2026-4634
CVE-2026-47691
CVE-2026-48043
CVE-2026-48059
CVE-2026-50010
CVE-2026-50193
CVE-2026-54512
CVE-2026-5588
CVE-2026-68494
CVE-2026-7307
CVE-2026-7507
Published
2026-10-07T10:19:58Z
Modified
2026-10-07T10:42:34Z
Severity
9.6 (Critical)
CVSS_V3 - CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:H/I:H/A:L
CVSS Calculator
Summary
Red Hat Security Advisory: Red Hat Single Sign-On 7.6.13 security update on RHEL 7
Details
References
https://access.redhat.com/errata/RHSA-2026:76128
https://access.redhat.com/security/updates/classification/#important
https://security.access.redhat.com/data/csaf/v2/advisories/2026/rhsa-2026_76128.json
https://access.redhat.com/security/cve/CVE-2025-9784
https://bugzilla.redhat.com/show_bug.cgi?id=2392306
https://www.cve.org/CVERecord?id=CVE-2025-9784
https://nvd.nist.gov/vuln/detail/CVE-2025-9784
https://github.com/undertow-io/undertow/pull/1778
https://github.com/undertow-io/undertow/releases/tag/2.2.38.Final
https://issues.redhat.com/browse/UNDERTOW-2598
https://kb.cert.org/vuls/id/767506
https://access.redhat.com/security/cve/CVE-2025-12543
https://bugzilla.redhat.com/show_bug.cgi?id=2408784
https://www.cve.org/CVERecord?id=CVE-2025-12543
https://nvd.nist.gov/vuln/detail/CVE-2025-12543
https://access.redhat.com/security/cve/CVE-2025-14813
https://bugzilla.redhat.com/show_bug.cgi?id=2458640
https://www.cve.org/CVERecord?id=CVE-2025-14813
https://nvd.nist.gov/vuln/detail/CVE-2025-14813
https://github.com/bcgit/bc-java/wiki/CVE%E2%80%902025%E2%80%9014813
https://access.redhat.com/security/cve/CVE-2026-0603
https://bugzilla.redhat.com/show_bug.cgi?id=2427147
https://www.cve.org/CVERecord?id=CVE-2026-0603
https://nvd.nist.gov/vuln/detail/CVE-2026-0603
https://access.redhat.com/security/cve/CVE-2026-2092
https://bugzilla.redhat.com/show_bug.cgi?id=2437296
https://www.cve.org/CVERecord?id=CVE-2026-2092
https://nvd.nist.gov/vuln/detail/CVE-2026-2092
https://access.redhat.com/security/cve/CVE-2026-2575
https://bugzilla.redhat.com/show_bug.cgi?id=2440149
https://www.cve.org/CVERecord?id=CVE-2026-2575
https://nvd.nist.gov/vuln/detail/CVE-2026-2575
https://access.redhat.com/security/cve/CVE-2026-3505
https://bugzilla.redhat.com/show_bug.cgi?id=2458638
https://www.cve.org/CVERecord?id=CVE-2026-3505
https://nvd.nist.gov/vuln/detail/CVE-2026-3505
https://github.com/bcgit/bc-java/wiki/CVE%E2%80%902026%E2%80%903505
https://access.redhat.com/security/cve/CVE-2026-4634
https://bugzilla.redhat.com/show_bug.cgi?id=2450250
https://www.cve.org/CVERecord?id=CVE-2026-4634
https://nvd.nist.gov/vuln/detail/CVE-2026-4634
https://access.redhat.com/security/cve/CVE-2026-5588
https://bugzilla.redhat.com/show_bug.cgi?id=2458634
https://www.cve.org/CVERecord?id=CVE-2026-5588
https://nvd.nist.gov/vuln/detail/CVE-2026-5588
https://github.com/bcgit/bc-java/wiki/CVE%E2%80%902026%E2%80%905588
https://access.redhat.com/security/cve/CVE-2026-7307
https://bugzilla.redhat.com/show_bug.cgi?id=2476526
https://www.cve.org/CVERecord?id=CVE-2026-7307
https://nvd.nist.gov/vuln/detail/CVE-2026-7307
https://access.redhat.com/security/cve/CVE-2026-7507
https://bugzilla.redhat.com/show_bug.cgi?id=2464145
https://www.cve.org/CVERecord?id=CVE-2026-7507
https://nvd.nist.gov/vuln/detail/CVE-2026-7507
https://access.redhat.com/security/cve/CVE-2026-15563
https://bugzilla.redhat.com/show_bug.cgi?id=2483138
https://www.cve.org/CVERecord?id=CVE-2026-15563
https://nvd.nist.gov/vuln/detail/CVE-2026-15563
https://access.redhat.com/security/cve/CVE-2026-42578
https://bugzilla.redhat.com/show_bug.cgi?id=2477226
https://www.cve.org/CVERecord?id=CVE-2026-42578
https://nvd.nist.gov/vuln/detail/CVE-2026-42578
https://github.com/netty/netty/security/advisories/GHSA-45q3-82m4-75jr
https://access.redhat.com/security/cve/CVE-2026-42579
https://bugzilla.redhat.com/show_bug.cgi?id=2477217
https://www.cve.org/CVERecord?id=CVE-2026-42579
https://nvd.nist.gov/vuln/detail/CVE-2026-42579
https://github.com/netty/netty/security/advisories/GHSA-cm33-6792-r9fm
https://access.redhat.com/security/cve/CVE-2026-42581
https://bugzilla.redhat.com/show_bug.cgi?id=2477232
https://www.cve.org/CVERecord?id=CVE-2026-42581
https://nvd.nist.gov/vuln/detail/CVE-2026-42581
https://github.com/netty/netty/security/advisories/GHSA-xxqh-mfjm-7mv9
https://access.redhat.com/security/cve/CVE-2026-42587
https://bugzilla.redhat.com/show_bug.cgi?id=2477220
https://www.cve.org/CVERecord?id=CVE-2026-42587
https://nvd.nist.gov/vuln/detail/CVE-2026-42587
https://github.com/netty/netty/security/advisories/GHSA-f6hv-jmp6-3vwv
https://access.redhat.com/security/cve/CVE-2026-44249
https://bugzilla.redhat.com/show_bug.cgi?id=2488081
https://www.cve.org/CVERecord?id=CVE-2026-44249
https://nvd.nist.gov/vuln/detail/CVE-2026-44249
https://github.com/netty/netty/releases/tag/netty-4.1.135.Final
https://github.com/netty/netty/releases/tag/netty-4.2.15.Final
https://github.com/netty/netty/security/advisories/GHSA-3qp7-7mw8-wx86
https://access.redhat.com/security/cve/CVE-2026-44893
https://bugzilla.redhat.com/show_bug.cgi?id=2488383
https://www.cve.org/CVERecord?id=CVE-2026-44893
https://nvd.nist.gov/vuln/detail/CVE-2026-44893
https://github.com/netty/netty/security/advisories/GHSA-cc37-9q2j-3hfv
https://access.redhat.com/security/cve/CVE-2026-45416
https://bugzilla.redhat.com/show_bug.cgi?id=2488391
https://www.cve.org/CVERecord?id=CVE-2026-45416
https://nvd.nist.gov/vuln/detail/CVE-2026-45416
https://github.com/netty/netty/security/advisories/GHSA-x4gw-5cx5-pgmh
https://access.redhat.com/security/cve/CVE-2026-45674
https://bugzilla.redhat.com/show_bug.cgi?id=2488400
https://www.cve.org/CVERecord?id=CVE-2026-45674
https://nvd.nist.gov/vuln/detail/CVE-2026-45674
https://github.com/netty/netty/security/advisories/GHSA-676x-f7gg-47vc
https://access.redhat.com/security/cve/CVE-2026-47691
https://bugzilla.redhat.com/show_bug.cgi?id=2488439
https://www.cve.org/CVERecord?id=CVE-2026-47691
https://nvd.nist.gov/vuln/detail/CVE-2026-47691
https://github.com/netty/netty/security/advisories/GHSA-5pvg-856g-cp85
https://access.redhat.com/security/cve/CVE-2026-48043
https://bugzilla.redhat.com/show_bug.cgi?id=2488442
https://www.cve.org/CVERecord?id=CVE-2026-48043
https://nvd.nist.gov/vuln/detail/CVE-2026-48043
https://github.com/netty/netty/security/advisories/GHSA-c2gf-v879-257j
https://access.redhat.com/security/cve/CVE-2026-48059
https://bugzilla.redhat.com/show_bug.cgi?id=2488437
https://www.cve.org/CVERecord?id=CVE-2026-48059
https://nvd.nist.gov/vuln/detail/CVE-2026-48059
https://github.com/netty/netty/security/advisories/GHSA-h2qv-fj59-j46j
https://access.redhat.com/security/cve/CVE-2026-50010
https://bugzilla.redhat.com/show_bug.cgi?id=2488429
https://www.cve.org/CVERecord?id=CVE-2026-50010
https://nvd.nist.gov/vuln/detail/CVE-2026-50010
https://github.com/netty/netty/security/advisories/GHSA-c653-97m9-rcg9
https://access.redhat.com/security/cve/CVE-2026-50193
https://bugzilla.redhat.com/show_bug.cgi?id=2491999
https://www.cve.org/CVERecord?id=CVE-2026-50193
https://nvd.nist.gov/vuln/detail/CVE-2026-50193
https://github.com/FasterXML/jackson-databind/commit/a1fa4ae4ecf5cee16da465985f135f3e81816f8c
https://github.com/FasterXML/jackson-databind/issues/3447
https://github.com/FasterXML/jackson-databind/security/advisories/GHSA-3wrr-7qpf-2prh
https://access.redhat.com/security/cve/CVE-2026-54512
https://bugzilla.redhat.com/show_bug.cgi?id=2492015
https://www.cve.org/CVERecord?id=CVE-2026-54512
https://nvd.nist.gov/vuln/detail/CVE-2026-54512
https://github.com/FasterXML/jackson-databind/commit/434d6c511de7fdd9872f29157aafb6162d12d8d5
https://github.com/FasterXML/jackson-databind/issues/5988
https://github.com/FasterXML/jackson-databind/security/advisories/GHSA-j3rv-43j4-c7qm
https://access.redhat.com/security/cve/CVE-2026-68494
https://bugzilla.redhat.com/show_bug.cgi?id=2511026
https://www.cve.org/CVERecord?id=CVE-2026-68494
https://nvd.nist.gov/vuln/detail/CVE-2026-68494
https://github.com/FasterXML/jackson-core/commit/050b429804dce2a7e08f0be1b0b4c3d040fdb9cd
https://github.com/FasterXML/jackson-core/commit/4cdd529749da396cc7edf6d4a2aad41d47902641
https://github.com/FasterXML/jackson-core/commit/c5941e5aae7fd5aeac55d66933cfb82b9aabeef8
https://github.com/FasterXML/jackson-core/pull/1611
https://github.com/FasterXML/jackson-core/security/advisories/GHSA-r7wm-3cxj-wff9
https://github.com/advisories/GHSA-72hv-8253-57qq
https://www.cve.org/CVERecord?id=CVE-2026-18401
Affected packages
Red Hat:red_hat_single_sign_on:7.6::el7
/
rh-sso7-keycloak
Package
Name
rh-sso7-keycloak
Purl
pkg:rpm/redhat/rh-sso7-keycloak
Affected ranges
Type
ECOSYSTEM
Events
Introduced
0
Unknown introduced version / All previous versions are affected
Fixed
0:18.0.20-1.redhat_00001.1.el7sso
Database specific
source
"https://security.access.redhat.com/data/osv/RHSA-2026:76128.json"
Red Hat:red_hat_single_sign_on:7.6::el7
/
rh-sso7-keycloak-server
Package
Name
rh-sso7-keycloak-server
Purl
pkg:rpm/redhat/rh-sso7-keycloak-server
Affected ranges
Type
ECOSYSTEM
Events
Introduced
0
Unknown introduced version / All previous versions are affected
Fixed
0:18.0.20-1.redhat_00001.1.el7sso
Database specific
source
"https://security.access.redhat.com/data/osv/RHSA-2026:76128.json"
RHSA-2026:76128 - OSV