Stats Digest Feeds
โ† Back to all CVEs

CVE-2026-74247

MEDIUM NVD
CVSS Score 4.2
Severity MEDIUM
Published Aug 14, 2026
Vendor unknown

Description

A flaw was found in Red Hat Quay. A user with FEATURE_BUILD_SUPPORT enabled and repository write access can exploit a Server-Side Request Forgery (SSRF) vulnerability within the build API. This allows the user to provide a malicious URL, causing the Quay builder to make requests to internal network addresses. Such an action could lead to the disclosure of sensitive internal information.

References