Migration Toolkit Virtualization Red Hat Migration Toolkit Virtualization

Don't miss out!

Thousands of developers use stack.watch to stay informed.
Get an email whenever new security vulnerabilities are reported in Red Hat Migration Toolkit Virtualization.

By the Year

In 2026 there have been 0 vulnerabilities in Red Hat Migration Toolkit Virtualization. Last year, in 2025 Migration Toolkit Virtualization had 1 security vulnerability published. Right now, Migration Toolkit Virtualization is on track to have less security vulnerabilities in 2026 than it did last year.

Year Vulnerabilities Average Score
2026 0 0.00
2025 1 5.40
2024 1 7.50
2023 1 7.50

It may take a day or so for new Migration Toolkit Virtualization vulnerabilities to show up in the stats or in the list of recent security vulnerabilities. Additionally vulnerabilities may be tagged under a different product or component name.

Recent Red Hat Migration Toolkit Virtualization Security Vulnerabilities

serialize-javascript XSS via unsanitized regex input
CVE-2024-11831 5.4 - Medium - February 10, 2025

A flaw was found in npm-serialize-javascript. The vulnerability occurs because the serialize-javascript module does not properly sanitize certain inputs, such as regex or other JavaScript object types, allowing an attacker to inject malicious code. This code could be executed when deserialized by a web browser, causing Cross-site scripting (XSS) attacks. This issue is critical in environments where serialized data is sent to web clients, potentially compromising the security of the website or web application using this package.

XSS

Auth Bypass in Forklift Controller: Missing Bearer Token Verification
CVE-2024-8509 7.5 - High - September 06, 2024

A vulnerability was found in Forklift Controller.  There is no verification against the authorization header except to ensure it uses bearer authentication. Without an Authorization header and some form of a Bearer token, a 401 error occurs. The presence of a token value provides a 200 response with the requested information.

AuthZ

HTTP/2 DoS via Stream Reset in nginx
CVE-2023-44487 7.5 - High - October 10, 2023

The HTTP/2 protocol allows a denial of service (server resource consumption) because request cancellation can reset many streams quickly, as exploited in the wild in August through October 2023.

Resource Exhaustion

Stay on top of Security Vulnerabilities

Want an email whenever new vulnerabilities are published for Red Hat Migration Toolkit Virtualization or by Red Hat? Click the Watch button to subscribe.

Red Hat
Vendor

subscribe