RHSA-2026:14125MediumCVSS 5.9
Red Hat Security Advisory: Red Hat Hardened Images RPMs bug fix and enhancement update
🔗 CVE IDs covered (2)
📋 Description
CVE-2026-6735 — PHP: PHP-FPM: PHP-FPM: Cross-Site Scripting vulnerability via improper URL sanitation CVE-2026-7258 — PHP: PHP: Denial of Service via improper handling of signed characters in ctype functions
🔗 References (6)
- selfhttps://access.redhat.com/errata/RHSA-2026:14125
- externalhttps://images.redhat.com/
- externalhttps://access.redhat.com/security/cve/CVE-2026-7258
- externalhttps://access.redhat.com/security/updates/classification/
- externalhttps://access.redhat.com/security/cve/CVE-2026-6735
- selfhttps://security.access.redhat.com/data/csaf/v2/advisories/2026/rhsa-2026_14125.json