CVE-2026-4800

Red Hat Security Advisory: Red Hat Edge Manager Version 1.1.3 Security Update

criticalEPSS 2.8%

Description

Metrics

Severity
critical
no public PoC known
9.8
Source: nvd-v3
85.4 %
Critical — this CVE ranks in the top fifth of all CVEs scored today (rank ≥ 80%).
2.8 %
Moderate — model estimates 1-10% exploitation likelihood.
Published
2026-07-16 10:53 UTC
CWE-94

Weakness classes (CWE)

  • CWE-94Base

    Improper Control of Generation of Code ('Code Injection')

    The product constructs all or part of a code segment using externally-influenced input from an upstream component, but it does not neutralize or incorrectly neutralizes special elements that could modify the syntax or behavior of the intended code segment.

    cwe.mitre.org →

Reanalysis & status changes

Chronological NVD audit events for this CVE — reanalyses, CVSS updates, CPE diffs.

  1. CVE Modified2026-09-10 13:20 UTC· 0b0ca135-0b70-47e7-9f44-1890c2a1c46c
    • Affected: Affected value modified. <a href="https://github.com/CVEProject/cvelistV5/blob/main/cves/2026/4xxx/CVE-2026-4800.json">CVE-2026-4800</a>
  2. CVE Modified2026-09-09 13:20 UTC· 0b0ca135-0b70-47e7-9f44-1890c2a1c46c
    • Affected: Affected value modified. <a href="https://github.com/CVEProject/cvelistV5/blob/main/cves/2026/4xxx/CVE-2026-4800.json">CVE-2026-4800</a>
  3. CVE Modified2026-09-07 13:20 UTC· 0b0ca135-0b70-47e7-9f44-1890c2a1c46c
    • Affected: Affected value modified. <a href="https://github.com/CVEProject/cvelistV5/blob/main/cves/2026/4xxx/CVE-2026-4800.json">CVE-2026-4800</a>
  4. CVE Modified2026-09-03 13:05 UTC· 0b0ca135-0b70-47e7-9f44-1890c2a1c46c
    • Affected: Affected value modified. <a href="https://github.com/CVEProject/cvelistV5/blob/main/cves/2026/4xxx/CVE-2026-4800.json">CVE-2026-4800</a>
    • Reference: https://access.redhat.com/errata/RHSA-2026:59833
  5. CVE Modified2026-08-31 13:18 UTC· 0b0ca135-0b70-47e7-9f44-1890c2a1c46c
    • Affected: Affected value modified. <a href="https://github.com/CVEProject/cvelistV5/blob/main/cves/2026/4xxx/CVE-2026-4800.json">CVE-2026-4800</a>

Affected products

Products and version ranges extracted from the vendor/CERT advisory. A range like „<4.14.6“ implies the update recommendation „upgrade to 4.14.6 or later“.

  • bitnami

    golang1.25.0

  • bitnami

    golang1.25.0-0

  • bitnami

    golang1.26.0-0

  • golang

    crypto0.52.0

  • golang

    go1.26.0 – 1.26.2

  • golang

    go1.26.0 – 1.26.3

  • golang

    go1.25.10

  • golang

    go1.25.8

  • golang

    go1.25.9

  • golang

    go

  • golang

    net0.55.0

  • grpc

    grpc1.79.3

  • immutable-js

    immutable3.0.0 – 3.8.3

  • immutable-js

    immutable4.0.0 – 4.3.7

  • immutable-js

    immutable5.0.0 – 5.1.5

  • jackc

    pgx5.9.0

  • lodash

    lodash4.0.0 – 4.17.23

  • lodash

    lodash4.0.0 – 4.18.0

  • lodash

    lodash-amd4.0.0 – 4.18.0

  • lodash

    lodash-es4.0.0 – 4.18.0

  • lodash

    lodash.template4.0.0 – 4.18.0

  • openjsf

    fast-uri2.3.1 – 3.1.3

  • openjsf

    fast-uri4.0.0 – 4.0.1

  • openjsf

    fast-uri3.1.2

References & sources

Linked CVEs

Show 4 more CVEs
IDCVE-2026-4800