VDB
RHSA-2026%3A0742
RHSA-2026%3A0742
PUBLISHED
CVSS 7.5 HIGH
Red Hat Security Advisory: Red Hat JBoss Enterprise Application Platform 7.1.13 on RHEL 7 security update
Risk Scores
CVSS 3.1
7.5
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Red Hat:jboss_enterprise_application_platform_eus:7.1::el7 | eap7-netty | 0, 0 |
| Red Hat:jboss_enterprise_application_platform_eus:7.1::el7 | eap7-wildfly | 0, 0 |
| Red Hat:jboss_enterprise_application_platform_eus:7.1::el7 | eap7-jackson-jaxrs-json-provider | 0, 0 |
| Red Hat:jboss_enterprise_application_platform_eus:7.1::el7 | eap7-jackson-core | 0, 0 |
| Red Hat:jboss_enterprise_application_platform_eus:7.1::el7 | eap7-netty-all | 0, 0 |
| Red Hat:jboss_enterprise_application_platform_eus:7.1::el7 | eap7-wildfly-modules | 0, 0 |
| Red Hat:jboss_enterprise_application_platform_eus:7.1::el7 | eap7-undertow | 0, 0 |
| Red Hat:jboss_enterprise_application_platform_eus:7.1::el7 | eap7-jackson-jaxrs-providers | 0, 0 |
| Red Hat:jboss_enterprise_application_platform_eus:7.1::el7 | eap7-jackson-module-jaxb-annotations | 0, 0 |
| Red Hat:jboss_enterprise_application_platform_eus:7.1::el7 | eap7-jackson-modules-java8 | 0, 0 |
| Red Hat:jboss_enterprise_application_platform_eus:7.1::el7 | eap7-jackson-datatype-jdk8 | 0, 0 |
| Red Hat:jboss_enterprise_application_platform_eus:7.1::el7 | eap7-jackson-jaxrs-base | 0, 0 |
| Red Hat:jboss_enterprise_application_platform_eus:7.1::el7 | eap7-jackson-datatype-jsr310 | 0, 0 |
| Red Hat:jboss_enterprise_application_platform_eus:7.1::el7 | eap7-jackson-annotations | 0, 0 |
Timeline
- Jan 19, 2026 CVE Published
- May 1, 2026 Distribution Patch
- May 1, 2026 Distribution Patch
- May 1, 2026 Security Advisory
- May 1, 2026 Security Advisory
- May 1, 2026 Security Advisory
- May 3, 2026 Security Advisory
- May 10, 2026 CVE Updated
References
- https://access.redhat.com/errata/RHSA-2026:0742 advisory
- https://access.redhat.com/security/updates/classification/#critical article
- https://access.redhat.com/jbossnetwork/restricted/listSoftware.html?downloadType=securityPatches&product=appplatform&version=7.1 article
- https://docs.redhat.com/en/documentation/red_hat_jboss_enterprise_application_platform/7.1 article
- https://docs.redhat.com/en/documentation/red_hat_jboss_enterprise_application_platform/7.1/html-single/installation_guide/index article
- https://bugzilla.redhat.com/show_bug.cgi?id=2374804 report
- https://bugzilla.redhat.com/show_bug.cgi?id=2388252 report
- https://issues.redhat.com/browse/JBEAP-30775 article
- https://issues.redhat.com/browse/JBEAP-31347 article
- https://issues.redhat.com/browse/JBEAP-31349 article
- https://security.access.redhat.com/data/csaf/v2/advisories/2026/rhsa-2026_0742.json advisory
- https://access.redhat.com/security/cve/CVE-2025-52999 report
- https://www.cve.org/CVERecord?id=CVE-2025-52999 advisory
- https://nvd.nist.gov/vuln/detail/CVE-2025-52999 advisory
- https://github.com/FasterXML/jackson-core/pull/943 article
- https://github.com/FasterXML/jackson-core/security/advisories/GHSA-h46c-h94j-95f3 article
- https://access.redhat.com/security/cve/CVE-2025-55163 report
- https://www.cve.org/CVERecord?id=CVE-2025-55163 advisory
- https://nvd.nist.gov/vuln/detail/CVE-2025-55163 advisory
- https://github.com/netty/netty/security/advisories/GHSA-prj3-ccx8-p6x4 article
…and 1 more