A remote, authenticated attacker can exploit a vulnerability in Red Hat Quay to disclose information that can be used to impersonate accounts. The vulnerability has a high CVSS base score of 7.2 and affects Red Hat Quay 3. A mitigation is available, but the article does not specify a fixed version number.
[WID-SEC-2026-2576] Red Hat Quay: Schwachstelle ermöglicht Offenlegung von Informationen CVSS Base Score 7.2 (hoch) CVSS Temporal Score 6.4 (mittel) Remoteangriff ja Datum 29.07.2026 Stand 30.07.2026 Mitigation ja Betroffene Systeme Betriebssystem Linux Produktbeschreibung Red Hat Quay ist eine verteilte und hochverfügbare Container Image Registry. Produkte 29.07.2026 Red Hat Quay 3 Angriff Angriff Ein entfernter, authentisierter Angreifer kann eine Schwachstelle in Red Hat Quay ausnutzen, um Informationen offenzulegen, die zur Darstellung als bestimmte Konten verwendet werden können. CVE Informationen Versionshistorie Feedback zum Advisory geben