CVE-2026-74247
MEDIUM
NVD
CVSS Score
4.2
Severity
MEDIUM
Published
Aug 14, 2026
Vendor
unknown
Description
A flaw was found in Red Hat Quay. A user with FEATURE_BUILD_SUPPORT enabled and repository write access can exploit a Server-Side Request Forgery (SSRF) vulnerability within the build API. This allows the user to provide a malicious URL, causing the Quay builder to make requests to internal network addresses. Such an action could lead to the disclosure of sensitive internal information.