VDB
CVE-2026-96658
CVE-2026-96658
PUBLISHED
CVSS 9.9 CRITICAL
Reported by redhat · Published October 1, 2026
A flaw was found in Foreman. An authenticated attacker with low-level permissions can achieve remote code execution (RCE) by bypassing the safemode sandbox within the templating engine. Due to improper handling of delegated methods, an attacker can append unauthorized functions to the allowed execution list, enabling them to run arbitrary commands on the hosting server.
Risk Scores
CVSS 3.1
9.9
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:C/C:H/I:H/A:H
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Red Hat | Red Hat Satellite 6.16 for RHEL 8 | 0:1.5.0-2.el8sat |
| Red Hat | Red Hat Satellite 6.16 for RHEL 9 | 0:1.5.0-2.el9sat |
| Red Hat | Red Hat Satellite 6.17 for RHEL 9 | 0:3.14.0.22-1.el9sat |
| Red Hat | Red Hat Satellite 6.17 for RHEL 9 | 0:3.2.13-1.el9pc |
| Red Hat | Red Hat Satellite 6.17 for RHEL 9 | 0:3.1.62-1.el9pc |
| Red Hat | Red Hat Satellite 6.17 for RHEL 9 | 0:5.3.1-2.el9pc |
| Red Hat | Red Hat Satellite 6.17 for RHEL 9 | 0:0.6.0-1.el9pc |
| Red Hat | Red Hat Satellite 6.17 for RHEL 9 | 0:15.0.2-2.el9sat |
| Red Hat | Red Hat Satellite 6.17 for RHEL 9 | 0:3.14.0-2.el9sat |
| Red Hat | Red Hat Satellite 6.17 for RHEL 9 | 0:4.16.0.20-1.el9sat |
| Red Hat | Red Hat Satellite 6.17 for RHEL 9 | 0:1.5.0-2.el9sat |
| Red Hat | Red Hat Satellite 6.17 for RHEL 9 | 0:6.17.12-1.el9sat |
| Red Hat | Red Hat Satellite 6.17 for RHEL 9 | 0:0.1.0-2.1.el9sat |
| Red Hat | Red Hat Satellite 6.18 for RHEL 9 | 0:1.5.0-2.el9sat |
| Red Hat | Red Hat Satellite 6.19 for RHEL 9 | 0:3.18.0.14-1.el9sat |
| Red Hat | Red Hat Satellite 6.17 for RHEL 9 | 0:5.3.1-2.el9pc, 0:5.3.1-2.el9pc |
| Red Hat | Red Hat Satellite 6.17 for RHEL 9 | 0:6.17.12-1.el9sat, 0:6.17.12-1.el9sat |
| Red Hat | Red Hat Satellite 6.16 for RHEL 8 | 0:1.5.0-2.el8sat, 0:1.5.0-2.el8sat, 0:1.5.0-2.el8sat |
| Red Hat | Red Hat Satellite 6.17 for RHEL 9 | 0:3.14.0.22-1.el9sat, 0:3.14.0.22-1.el9sat |
| Red Hat | Red Hat Satellite 6.16 for RHEL 9 | 0:1.5.0-2.el9sat, 0:1.5.0-2.el9sat, 0:1.5.0-2.el9sat |
…and 10 more
Timeline
- Oct 1, 2026 Coalition ESS Score
- Oct 1, 2026 CVE Published
- Oct 1, 2026 Distribution Patch
- Oct 1, 2026 Security Advisory
- Oct 2, 2026 EPSS Score
- Oct 3, 2026 EPSS Score
- Oct 4, 2026 Distribution Patch
- Oct 4, 2026 Security Advisory
- Oct 4, 2026 Distribution Patch
- Oct 4, 2026 Security Advisory
- Oct 4, 2026 Distribution Patch
- Oct 4, 2026 Security Advisory
References
- RHSA-2026:74503 vendor-advisoryx_refsource_REDHAT
- RHSA-2026:74504 vendor-advisoryx_refsource_REDHAT
- RHSA-2026:74505 vendor-advisoryx_refsource_REDHAT
- RHSA-2026:74506 vendor-advisoryx_refsource_REDHAT
- vdb-entryx_refsource_REDHAT
- RHBZ#2534185 issue-trackingx_refsource_REDHAT
- http://www.openwall.com/lists/oss-security/2026/10/07/2 url