RHSA-2026:40924HighCVSS 7.5
Red Hat Security Advisory: external secrets operator for Red Hat OpenShift 1.0.0
🔗 CVE IDs covered (2)
📋 Description
CVE-2025-61726 — golang: net/url: Memory exhaustion in query parameter parsing in net/url CVE-2025-68121 — crypto/tls: crypto/tls: Incorrect certificate validation during TLS session resumption
🔗 References (6)
- selfhttps://access.redhat.com/errata/RHSA-2026:40924
- externalhttps://access.redhat.com/security/cve/CVE-2025-61726
- externalhttps://access.redhat.com/security/cve/CVE-2025-68121
- externalhttps://access.redhat.com/security/updates/classification/
- externalhttps://docs.redhat.com/en/documentation/openshift_container_platform/latest/html/security_and_compliance/external-secrets-operator-for-red-hat-openshift
- selfhttps://security.access.redhat.com/data/csaf/v2/advisories/2026/rhsa-2026_40924.json