RHSA-2026:6166HighCVSS 9.6

Red Hat Security Advisory: Red Hat OpenShift Pipelines Release 1.21.1

Published
March 30, 2026
Last Modified
June 3, 2026

🔗 CVE IDs covered (3)

CVE-2026-33022 · pendingCVE-2026-33211 · pendingCVE-2025-66506

📋 Description

CVE-2025-66506 — github.com/sigstore/fulcio: Fulcio: Denial of Service via crafted OpenID Connect (OIDC) token CVE-2026-33022 — github.com/tektoncd/pipeline: Tekton Pipelines: Denial of Service via long resolver names CVE-2026-33211 — Tekton Pipelines: github.com/tektoncd/pipeline: Tekton Pipelines: Information disclosure via path traversal in git resolver

🔗 References (7)