RHSA-2026:2368HighCVSS 7.7
Red Hat Security Advisory: Custom Metrics Autoscaler Operator for Red Hat OpenShift 2.18.1-2 Update
🔗 CVE IDs covered (2)
📋 Description
CVE-2025-68156 — github.com/expr-lang/expr: Expr: Denial of Service via uncontrolled recursion in expression evaluation CVE-2025-68476 — github.com/kedacore/keda: KEDA: Arbitrary file read vulnerability in Vault authentication
🔗 References (5)
- selfhttps://access.redhat.com/errata/RHSA-2026:2368
- externalhttps://access.redhat.com/security/cve/CVE-2025-68156
- externalhttps://access.redhat.com/security/cve/CVE-2025-68476
- externalhttps://access.redhat.com/security/updates/classification/
- selfhttps://security.access.redhat.com/data/csaf/v2/advisories/2026/rhsa-2026_2368.json