8 Total advisories
8 Vulnerabilities
0 Malware
Dependency scanning
Check whether katello is in your codebase
Corgea flags malicious and compromised dependencies with reachability analysis, so you fix the packages that actually run in your application instead of working through the whole lockfile.
Vulnerabilities
MEDIUM 4.3
CVE-2026-12515
katello: missing repository authorization in content_uploads exposes cross-product content existence
MEDIUM 5.4
CVE-2026-4324
Katello: Denial of Service and potential information disclosure via SQL injection
CRITICAL 9.8
CVE-2012-3503
Katello uses hard coded credential
LOW 2.7
CVE-2019-14825
Katello cleartext password storage issue
MEDIUM 5.4
CVE-2018-16887
katello Cross-site Scripting vulnerability
MEDIUM 4.3
CVE-2018-14623
katello SQL Injection vulnerability
MEDIUM 4.3
CVE-2017-2662
katello Improper Privilege Management vulnerability
HIGH 8.8
CVE-2016-3072
Katello SQL Injection vulnerabilities
Browse more RubyGems advisories
Learn What is SAST?
Static Application Security Testing finds vulnerabilities like this one in source code before it ships. Read the guide →
Ready to move
Start Securing
Free, no credit card | First findings in minutes