{"id":"RHSA-2026:71113","summary":"Red Hat Security Advisory: Red Hat Ansible Automation Platform 2.6 Product Security and Bug Fix Update","modified":"2026-09-24T10:41:45.512283181Z","published":"2026-09-24T10:15:15Z","related":["GO-2026-5038","GO-2026-5972","GO-2026-6088","GO-2026-6089","GO-2026-6090","GO-2026-6091","GO-2026-6218"],"upstream":["CVE-2026-12564","CVE-2026-33818","CVE-2026-42504","CVE-2026-54284","CVE-2026-56853","CVE-2026-56858","CVE-2026-56859","CVE-2026-56860","CVE-2026-56862","CVE-2026-59869","CVE-2026-59893","CVE-2026-67214","CVE-2026-67322","CVE-2026-67323","CVE-2026-67325","CVE-2026-69153","CVE-2026-71458","CVE-2026-71459","CVE-2026-71460","CVE-2026-71462","CVE-2026-71463","CVE-2026-71464","CVE-2026-71465","CVE-2026-71491","CVE-2026-73086","CVE-2026-75838","CVE-2026-75884","CVE-2026-78679","CVE-2026-84375","CVE-2026-84470","CVE-2026-84474","CVE-2026-84486","CVE-2026-84499","CVE-2026-84502","CVE-2026-84638","CVE-2026-84643","CVE-2026-84644","CVE-2026-84679","CVE-2026-84680","CVE-2026-84683","CVE-2026-84684","CVE-2026-84686","CVE-2026-84689","CVE-2026-84691","CVE-2026-84692","CVE-2026-84703","CVE-2026-84706","CVE-2026-84707","CVE-2026-84708","CVE-2026-84709","CVE-2026-84711","CVE-2026-84712","CVE-2026-84714","CVE-2026-84716","CVE-2026-84717","CVE-2026-84718","CVE-2026-84719","CVE-2026-84720","CVE-2026-84724","CVE-2026-87817"],"references":[{"type":"ADVISORY","url":"https://access.redhat.com/errata/RHSA-2026:71113"},{"type":"ARTICLE","url":"https://access.redhat.com/security/updates/classification/#critical"},{"type":"ARTICLE","url":"https://docs.redhat.com/en/documentation/red_hat_ansible_automation_platform/2.6/whats_new-async_updates"},{"type":"ARTICLE","url":"https://docs.redhat.com/en/documentation/red_hat_ansible_automation_platform/2.6#Upgrade"},{"type":"REPORT","url":"https://bugzilla.redhat.com/show_bug.cgi?id=2484204"},{"type":"REPORT","url":"https://bugzilla.redhat.com/show_bug.cgi?id=2490556"},{"type":"REPORT","url":"https://bugzilla.redhat.com/show_bug.cgi?id=2498122"},{"type":"REPORT","url":"https://bugzilla.redhat.com/show_bug.cgi?id=2508411"},{"type":"REPORT","url":"https://bugzilla.redhat.com/show_bug.cgi?id=2509975"},{"type":"REPORT","url":"https://bugzilla.redhat.com/show_bug.cgi?id=2509976"},{"type":"REPORT","url":"https://bugzilla.redhat.com/show_bug.cgi?id=2510021"},{"type":"REPORT","url":"https://bugzilla.redhat.com/show_bug.cgi?id=2510719"},{"type":"REPORT","url":"https://bugzilla.redhat.com/show_bug.cgi?id=2512367"},{"type":"REPORT","url":"https://bugzilla.redhat.com/show_bug.cgi?id=2512368"},{"type":"REPORT","url":"https://bugzilla.redhat.com/show_bug.cgi?id=2512369"},{"type":"REPORT","url":"https://bugzilla.redhat.com/show_bug.cgi?id=2512371"},{"type":"REPORT","url":"https://bugzilla.redhat.com/show_bug.cgi?id=2512372"},{"type":"REPORT","url":"https://bugzilla.redhat.com/show_bug.cgi?id=2512374"},{"type":"REPORT","url":"https://bugzilla.redhat.com/show_bug.cgi?id=2512375"},{"type":"REPORT","url":"https://bugzilla.redhat.com/show_bug.cgi?id=2514175"},{"type":"REPORT","url":"https://bugzilla.redhat.com/show_bug.cgi?id=2515815"},{"type":"REPORT","url":"https://bugzilla.redhat.com/show_bug.cgi?id=2515820"},{"type":"REPORT","url":"https://bugzilla.redhat.com/show_bug.cgi?id=2515827"},{"type":"REPORT","url":"https://bugzilla.redhat.com/show_bug.cgi?id=2515838"},{"type":"REPORT","url":"https://bugzilla.redhat.com/show_bug.cgi?id=2515839"},{"type":"REPORT","url":"https://bugzilla.redhat.com/show_bug.cgi?id=2515840"},{"type":"REPORT","url":"https://bugzilla.redhat.com/show_bug.cgi?id=2517518"},{"type":"REPORT","url":"https://bugzilla.redhat.com/show_bug.cgi?id=2517523"},{"type":"REPORT","url":"https://bugzilla.redhat.com/show_bug.cgi?id=2517527"},{"type":"REPORT","url":"https://bugzilla.redhat.com/show_bug.cgi?id=2517772"},{"type":"REPORT","url":"https://bugzilla.redhat.com/show_bug.cgi?id=2517893"},{"type":"REPORT","url":"https://bugzilla.redhat.com/show_bug.cgi?id=2523205"},{"type":"REPORT","url":"https://bugzilla.redhat.com/show_bug.cgi?id=2527046"},{"type":"REPORT","url":"https://bugzilla.redhat.com/show_bug.cgi?id=2527073"},{"type":"REPORT","url":"https://bugzilla.redhat.com/show_bug.cgi?id=2527085"},{"type":"REPORT","url":"https://bugzilla.redhat.com/show_bug.cgi?id=2527090"},{"type":"REPORT","url":"https://bugzilla.redhat.com/show_bug.cgi?id=2527096"},{"type":"REPORT","url":"https://bugzilla.redhat.com/show_bug.cgi?id=2527100"},{"type":"REPORT","url":"https://bugzilla.redhat.com/show_bug.cgi?id=2527112"},{"type":"REPORT","url":"https://bugzilla.redhat.com/show_bug.cgi?id=2527117"},{"type":"REPORT","url":"https://bugzilla.redhat.com/show_bug.cgi?id=2527118"},{"type":"REPORT","url":"https://bugzilla.redhat.com/show_bug.cgi?id=2527123"},{"type":"REPORT","url":"https://bugzilla.redhat.com/show_bug.cgi?id=2527126"},{"type":"REPORT","url":"https://bugzilla.redhat.com/show_bug.cgi?id=2527128"},{"type":"REPORT","url":"https://bugzilla.redhat.com/show_bug.cgi?id=2527139"},{"type":"REPORT","url":"https://bugzilla.redhat.com/show_bug.cgi?id=2527140"},{"type":"REPORT","url":"https://bugzilla.redhat.com/show_bug.cgi?id=2527145"},{"type":"REPORT","url":"https://bugzilla.redhat.com/show_bug.cgi?id=2527151"},{"type":"REPORT","url":"https://bugzilla.redhat.com/show_bug.cgi?id=2527154"},{"type":"REPORT","url":"https://bugzilla.redhat.com/show_bug.cgi?id=2527156"},{"type":"REPORT","url":"https://bugzilla.redhat.com/show_bug.cgi?id=2527187"},{"type":"REPORT","url":"https://bugzilla.redhat.com/show_bug.cgi?id=2527189"},{"type":"REPORT","url":"https://bugzilla.redhat.com/show_bug.cgi?id=2527190"},{"type":"REPORT","url":"https://bugzilla.redhat.com/show_bug.cgi?id=2527191"},{"type":"REPORT","url":"https://bugzilla.redhat.com/show_bug.cgi?id=2527195"},{"type":"REPORT","url":"https://bugzilla.redhat.com/show_bug.cgi?id=2527196"},{"type":"REPORT","url":"https://bugzilla.redhat.com/show_bug.cgi?id=2527198"},{"type":"REPORT","url":"https://bugzilla.redhat.com/show_bug.cgi?id=2527199"},{"type":"REPORT","url":"https://bugzilla.redhat.com/show_bug.cgi?id=2527210"},{"type":"REPORT","url":"https://bugzilla.redhat.com/show_bug.cgi?id=2527211"},{"type":"REPORT","url":"https://bugzilla.redhat.com/show_bug.cgi?id=2527213"},{"type":"REPORT","url":"https://bugzilla.redhat.com/show_bug.cgi?id=2527214"},{"type":"REPORT","url":"https://bugzilla.redhat.com/show_bug.cgi?id=2527222"},{"type":"REPORT","url":"https://bugzilla.redhat.com/show_bug.cgi?id=2530744"},{"type":"ADVISORY","url":"https://security.access.redhat.com/data/csaf/v2/advisories/2026/rhsa-2026_71113.json"},{"type":"REPORT","url":"https://access.redhat.com/security/cve/CVE-2026-12564"},{"type":"ADVISORY","url":"https://www.cve.org/CVERecord?id=CVE-2026-12564"},{"type":"ADVISORY","url":"https://nvd.nist.gov/vuln/detail/CVE-2026-12564"},{"type":"REPORT","url":"https://access.redhat.com/security/cve/CVE-2026-33818"},{"type":"ADVISORY","url":"https://www.cve.org/CVERecord?id=CVE-2026-33818"},{"type":"ADVISORY","url":"https://nvd.nist.gov/vuln/detail/CVE-2026-33818"},{"type":"ARTICLE","url":"https://go.dev/cl/814980"},{"type":"ARTICLE","url":"https://go.dev/issue/80405"},{"type":"ARTICLE","url":"https://groups.google.com/g/golang-announce/c/94pEornpRlI"},{"type":"ADVISORY","url":"https://pkg.go.dev/vuln/GO-2026-5972"},{"type":"REPORT","url":"https://access.redhat.com/security/cve/CVE-2026-42504"},{"type":"ADVISORY","url":"https://www.cve.org/CVERecord?id=CVE-2026-42504"},{"type":"ADVISORY","url":"https://nvd.nist.gov/vuln/detail/CVE-2026-42504"},{"type":"ARTICLE","url":"https://go.dev/cl/774481"},{"type":"ARTICLE","url":"https://go.dev/issue/79217"},{"type":"ARTICLE","url":"https://groups.google.com/g/golang-announce/c/tKs3rmcBcKw"},{"type":"ADVISORY","url":"https://pkg.go.dev/vuln/GO-2026-5038"},{"type":"REPORT","url":"https://access.redhat.com/security/cve/CVE-2026-54284"},{"type":"ADVISORY","url":"https://www.cve.org/CVERecord?id=CVE-2026-54284"},{"type":"ADVISORY","url":"https://nvd.nist.gov/vuln/detail/CVE-2026-54284"},{"type":"ARTICLE","url":"https://github.com/andialbrecht/sqlparse/commit/939b129e24c0ad5d51368b1aa72fffcaca76f06f"},{"type":"ARTICLE","url":"https://github.com/andialbrecht/sqlparse/security/advisories/GHSA-pwgv-4x5q-6m9f"},{"type":"REPORT","url":"https://access.redhat.com/security/cve/CVE-2026-56853"},{"type":"ADVISORY","url":"https://www.cve.org/CVERecord?id=CVE-2026-56853"},{"type":"ADVISORY","url":"https://nvd.nist.gov/vuln/detail/CVE-2026-56853"},{"type":"ARTICLE","url":"https://go.dev/cl/795540"},{"type":"ARTICLE","url":"https://go.dev/issue/80205"},{"type":"ADVISORY","url":"https://pkg.go.dev/vuln/GO-2026-6089"},{"type":"REPORT","url":"https://access.redhat.com/security/cve/CVE-2026-56858"},{"type":"ADVISORY","url":"https://www.cve.org/CVERecord?id=CVE-2026-56858"},{"type":"ADVISORY","url":"https://nvd.nist.gov/vuln/detail/CVE-2026-56858"},{"type":"ARTICLE","url":"https://go.dev/cl/807100"},{"type":"ARTICLE","url":"https://go.dev/issue/80435"},{"type":"ADVISORY","url":"https://pkg.go.dev/vuln/GO-2026-6091"},{"type":"REPORT","url":"https://access.redhat.com/security/cve/CVE-2026-56859"},{"type":"ADVISORY","url":"https://www.cve.org/CVERecord?id=CVE-2026-56859"},{"type":"ADVISORY","url":"https://nvd.nist.gov/vuln/detail/CVE-2026-56859"},{"type":"ARTICLE","url":"https://go.dev/cl/803320"},{"type":"ARTICLE","url":"https://go.dev/issue/80481"},{"type":"ADVISORY","url":"https://pkg.go.dev/vuln/GO-2026-6088"},{"type":"REPORT","url":"https://access.redhat.com/security/cve/CVE-2026-56860"},{"type":"ADVISORY","url":"https://www.cve.org/CVERecord?id=CVE-2026-56860"},{"type":"ADVISORY","url":"https://nvd.nist.gov/vuln/detail/CVE-2026-56860"},{"type":"ARTICLE","url":"https://go.dev/cl/803681"},{"type":"ARTICLE","url":"https://go.dev/issue/80494"},{"type":"ADVISORY","url":"https://pkg.go.dev/vuln/GO-2026-6218"},{"type":"REPORT","url":"https://access.redhat.com/security/cve/CVE-2026-56862"},{"type":"ADVISORY","url":"https://www.cve.org/CVERecord?id=CVE-2026-56862"},{"type":"ADVISORY","url":"https://nvd.nist.gov/vuln/detail/CVE-2026-56862"},{"type":"ARTICLE","url":"https://go.dev/cl/804261"},{"type":"ARTICLE","url":"https://go.dev/issue/80528"},{"type":"ADVISORY","url":"https://pkg.go.dev/vuln/GO-2026-6090"},{"type":"REPORT","url":"https://access.redhat.com/security/cve/CVE-2026-59869"},{"type":"ADVISORY","url":"https://www.cve.org/CVERecord?id=CVE-2026-59869"},{"type":"ADVISORY","url":"https://nvd.nist.gov/vuln/detail/CVE-2026-59869"},{"type":"ARTICLE","url":"https://github.com/nodeca/js-yaml/commit/24f13e79ee1343a7e30bd6f6c9d9cdbf0ac9b2b7"},{"type":"ARTICLE","url":"https://github.com/nodeca/js-yaml/commit/59423c6f8cdc78742ac00e25a4dd39ef16b702e4"},{"type":"ARTICLE","url":"https://github.com/nodeca/js-yaml/releases/tag/3.15.0"},{"type":"ARTICLE","url":"https://github.com/nodeca/js-yaml/releases/tag/4.3.0"},{"type":"ARTICLE","url":"https://github.com/nodeca/js-yaml/security/advisories/GHSA-52cp-r559-cp3m"},{"type":"REPORT","url":"https://access.redhat.com/security/cve/CVE-2026-59893"},{"type":"ADVISORY","url":"https://www.cve.org/CVERecord?id=CVE-2026-59893"},{"type":"ADVISORY","url":"https://nvd.nist.gov/vuln/detail/CVE-2026-59893"},{"type":"ARTICLE","url":"https://github.com/andialbrecht/sqlparse/commit/d1d80602741f77ec78e5a04ce4719244cf32352e"},{"type":"ARTICLE","url":"https://github.com/andialbrecht/sqlparse/security/advisories/GHSA-prg7-hcfm-mfcr"},{"type":"REPORT","url":"https://access.redhat.com/security/cve/CVE-2026-67214"},{"type":"ADVISORY","url":"https://www.cve.org/CVERecord?id=CVE-2026-67214"},{"type":"ADVISORY","url":"https://nvd.nist.gov/vuln/detail/CVE-2026-67214"},{"type":"ARTICLE","url":"https://github.com/ai/nanoid/commit/6ccc67bbaba71d3d77a21d9b636f4171a268ce49"},{"type":"ARTICLE","url":"https://github.com/ai/nanoid/releases/tag/5.1.16"},{"type":"ARTICLE","url":"https://www.vulncheck.com/advisories/nanoid-before-infinite-loop-via-negative-size-in-non-secure-module"},{"type":"REPORT","url":"https://access.redhat.com/security/cve/CVE-2026-67322"},{"type":"ADVISORY","url":"https://www.cve.org/CVERecord?id=CVE-2026-67322"},{"type":"ADVISORY","url":"https://nvd.nist.gov/vuln/detail/CVE-2026-67322"},{"type":"ARTICLE","url":"https://github.com/gitpython-developers/GitPython/security/advisories/GHSA-rwj8-pgh3-r573"},{"type":"ARTICLE","url":"https://www.vulncheck.com/advisories/gitpython-before-environment-variable-exfiltration-via-clone-from"},{"type":"REPORT","url":"https://access.redhat.com/security/cve/CVE-2026-67323"},{"type":"ADVISORY","url":"https://www.cve.org/CVERecord?id=CVE-2026-67323"},{"type":"ADVISORY","url":"https://nvd.nist.gov/vuln/detail/CVE-2026-67323"},{"type":"ARTICLE","url":"https://github.com/gitpython-developers/GitPython/security/advisories/GHSA-956x-8gvw-wg5v"},{"type":"ARTICLE","url":"https://www.vulncheck.com/advisories/gitpython-before-command-injection-via-unguarded-git-options"},{"type":"REPORT","url":"https://access.redhat.com/security/cve/CVE-2026-67325"},{"type":"ADVISORY","url":"https://www.cve.org/CVERecord?id=CVE-2026-67325"},{"type":"ADVISORY","url":"https://nvd.nist.gov/vuln/detail/CVE-2026-67325"},{"type":"ARTICLE","url":"https://github.com/gitpython-developers/GitPython/security/advisories/GHSA-2f96-g7mh-g2hx"},{"type":"ARTICLE","url":"https://www.vulncheck.com/advisories/gitpython-before-command-injection-via-option-prefix-abbreviation"},{"type":"REPORT","url":"https://access.redhat.com/security/cve/CVE-2026-69153"},{"type":"ADVISORY","url":"https://www.cve.org/CVERecord?id=CVE-2026-69153"},{"type":"ADVISORY","url":"https://nvd.nist.gov/vuln/detail/CVE-2026-69153"},{"type":"ARTICLE","url":"https://github.com/postcss/postcss/commit/7beca139e70f9075c6b19700fcb00dd8033e5da8"},{"type":"ARTICLE","url":"https://github.com/postcss/postcss/releases/tag/8.5.19"},{"type":"ARTICLE","url":"https://github.com/postcss/postcss/security/advisories/GHSA-fxqj-rqcc-2cmp"},{"type":"REPORT","url":"https://access.redhat.com/security/cve/CVE-2026-71458"},{"type":"ADVISORY","url":"https://www.cve.org/CVERecord?id=CVE-2026-71458"},{"type":"ADVISORY","url":"https://nvd.nist.gov/vuln/detail/CVE-2026-71458"},{"type":"REPORT","url":"https://access.redhat.com/security/cve/CVE-2026-71459"},{"type":"ADVISORY","url":"https://www.cve.org/CVERecord?id=CVE-2026-71459"},{"type":"ADVISORY","url":"https://nvd.nist.gov/vuln/detail/CVE-2026-71459"},{"type":"REPORT","url":"https://access.redhat.com/security/cve/CVE-2026-71460"},{"type":"ADVISORY","url":"https://www.cve.org/CVERecord?id=CVE-2026-71460"},{"type":"ADVISORY","url":"https://nvd.nist.gov/vuln/detail/CVE-2026-71460"},{"type":"REPORT","url":"https://access.redhat.com/security/cve/CVE-2026-71462"},{"type":"ADVISORY","url":"https://www.cve.org/CVERecord?id=CVE-2026-71462"},{"type":"ADVISORY","url":"https://nvd.nist.gov/vuln/detail/CVE-2026-71462"},{"type":"REPORT","url":"https://access.redhat.com/security/cve/CVE-2026-71463"},{"type":"ADVISORY","url":"https://www.cve.org/CVERecord?id=CVE-2026-71463"},{"type":"ADVISORY","url":"https://nvd.nist.gov/vuln/detail/CVE-2026-71463"},{"type":"REPORT","url":"https://access.redhat.com/security/cve/CVE-2026-71464"},{"type":"ADVISORY","url":"https://www.cve.org/CVERecord?id=CVE-2026-71464"},{"type":"ADVISORY","url":"https://nvd.nist.gov/vuln/detail/CVE-2026-71464"},{"type":"REPORT","url":"https://access.redhat.com/security/cve/CVE-2026-71465"},{"type":"ADVISORY","url":"https://www.cve.org/CVERecord?id=CVE-2026-71465"},{"type":"ADVISORY","url":"https://nvd.nist.gov/vuln/detail/CVE-2026-71465"},{"type":"REPORT","url":"https://access.redhat.com/security/cve/CVE-2026-71491"},{"type":"ADVISORY","url":"https://www.cve.org/CVERecord?id=CVE-2026-71491"},{"type":"ADVISORY","url":"https://nvd.nist.gov/vuln/detail/CVE-2026-71491"},{"type":"ARTICLE","url":"https://github.com/andialbrecht/sqlparse/commit/ef2012a5eeb491e604dea2b00d516904a3830c87"},{"type":"ARTICLE","url":"https://github.com/andialbrecht/sqlparse/security/advisories/GHSA-f2ff-p2ww-7p4p"},{"type":"REPORT","url":"https://access.redhat.com/security/cve/CVE-2026-73086"},{"type":"ADVISORY","url":"https://www.cve.org/CVERecord?id=CVE-2026-73086"},{"type":"ADVISORY","url":"https://nvd.nist.gov/vuln/detail/CVE-2026-73086"},{"type":"ARTICLE","url":"https://github.com/ai/nanoid/commit/7087969281cab8ba8ae3babf1894e819068b3bb4"},{"type":"ARTICLE","url":"https://github.com/ai/nanoid/commit/821dfed7b5db7f88e92f56c60eef32c8135077c3"},{"type":"ARTICLE","url":"https://github.com/ai/nanoid/commit/b0036ed60dc9facd7f1191a50dfb3076500202ac"},{"type":"ARTICLE","url":"https://github.com/ai/nanoid/releases/tag/3.3.12"},{"type":"ARTICLE","url":"https://github.com/ai/nanoid/releases/tag/5.1.11"},{"type":"ARTICLE","url":"https://github.com/ai/nanoid/security/advisories/GHSA-xwg4-73v4-xw9w"},{"type":"REPORT","url":"https://access.redhat.com/security/cve/CVE-2026-75838"},{"type":"ADVISORY","url":"https://www.cve.org/CVERecord?id=CVE-2026-75838"},{"type":"ADVISORY","url":"https://nvd.nist.gov/vuln/detail/CVE-2026-75838"},{"type":"ARTICLE","url":"https://github.com/cure53/DOMPurify/security/advisories/GHSA-55q2-fjhq-7xh7"},{"type":"ARTICLE","url":"https://www.vulncheck.com/advisories/dompurify-before-cross-site-scripting-via-in-place-hook"},{"type":"REPORT","url":"https://access.redhat.com/security/cve/CVE-2026-75884"},{"type":"ADVISORY","url":"https://www.cve.org/CVERecord?id=CVE-2026-75884"},{"type":"ADVISORY","url":"https://nvd.nist.gov/vuln/detail/CVE-2026-75884"},{"type":"REPORT","url":"https://access.redhat.com/security/cve/CVE-2026-78679"},{"type":"ADVISORY","url":"https://www.cve.org/CVERecord?id=CVE-2026-78679"},{"type":"ADVISORY","url":"https://nvd.nist.gov/vuln/detail/CVE-2026-78679"},{"type":"ARTICLE","url":"https://github.com/gitpython-developers/GitPython/security/advisories/GHSA-3wxw-xv34-2frg"},{"type":"ARTICLE","url":"https://www.vulncheck.com/advisories/gitpython-before-arbitrary-file-read-via-tagreference-create"},{"type":"REPORT","url":"https://access.redhat.com/security/cve/CVE-2026-84375"},{"type":"ADVISORY","url":"https://www.cve.org/CVERecord?id=CVE-2026-84375"},{"type":"ADVISORY","url":"https://nvd.nist.gov/vuln/detail/CVE-2026-84375"},{"type":"ARTICLE","url":"https://github.com/nodeca/js-yaml/commit/3485bc06ff8a0251505f44a00414d90df2466639"},{"type":"ARTICLE","url":"https://github.com/nodeca/js-yaml/commit/6a8e05f9a485188ed730ac81e81ae221352ef480"},{"type":"ARTICLE","url":"https://github.com/nodeca/js-yaml/commit/d90b6612a5a84385bdcb556c44578eac76dc0f6b"},{"type":"ARTICLE","url":"https://github.com/nodeca/js-yaml/pull/797"},{"type":"ARTICLE","url":"https://github.com/nodeca/js-yaml/releases/tag/3.15.2"},{"type":"ARTICLE","url":"https://github.com/nodeca/js-yaml/releases/tag/4.3.2"},{"type":"ARTICLE","url":"https://github.com/nodeca/js-yaml/security/advisories/GHSA-2883-xcg3-v3hh"},{"type":"REPORT","url":"https://access.redhat.com/security/cve/CVE-2026-84470"},{"type":"ADVISORY","url":"https://www.cve.org/CVERecord?id=CVE-2026-84470"},{"type":"ADVISORY","url":"https://nvd.nist.gov/vuln/detail/CVE-2026-84470"},{"type":"REPORT","url":"https://access.redhat.com/security/cve/CVE-2026-84474"},{"type":"ADVISORY","url":"https://www.cve.org/CVERecord?id=CVE-2026-84474"},{"type":"ADVISORY","url":"https://nvd.nist.gov/vuln/detail/CVE-2026-84474"},{"type":"REPORT","url":"https://access.redhat.com/security/cve/CVE-2026-84486"},{"type":"ADVISORY","url":"https://www.cve.org/CVERecord?id=CVE-2026-84486"},{"type":"ADVISORY","url":"https://nvd.nist.gov/vuln/detail/CVE-2026-84486"},{"type":"REPORT","url":"https://access.redhat.com/security/cve/CVE-2026-84499"},{"type":"ADVISORY","url":"https://www.cve.org/CVERecord?id=CVE-2026-84499"},{"type":"ADVISORY","url":"https://nvd.nist.gov/vuln/detail/CVE-2026-84499"},{"type":"REPORT","url":"https://access.redhat.com/security/cve/CVE-2026-84502"},{"type":"ADVISORY","url":"https://www.cve.org/CVERecord?id=CVE-2026-84502"},{"type":"ADVISORY","url":"https://nvd.nist.gov/vuln/detail/CVE-2026-84502"},{"type":"REPORT","url":"https://access.redhat.com/security/cve/CVE-2026-84638"},{"type":"ADVISORY","url":"https://www.cve.org/CVERecord?id=CVE-2026-84638"},{"type":"ADVISORY","url":"https://nvd.nist.gov/vuln/detail/CVE-2026-84638"},{"type":"REPORT","url":"https://access.redhat.com/security/cve/CVE-2026-84643"},{"type":"ADVISORY","url":"https://www.cve.org/CVERecord?id=CVE-2026-84643"},{"type":"ADVISORY","url":"https://nvd.nist.gov/vuln/detail/CVE-2026-84643"},{"type":"REPORT","url":"https://access.redhat.com/security/cve/CVE-2026-84644"},{"type":"ADVISORY","url":"https://www.cve.org/CVERecord?id=CVE-2026-84644"},{"type":"ADVISORY","url":"https://nvd.nist.gov/vuln/detail/CVE-2026-84644"},{"type":"REPORT","url":"https://access.redhat.com/security/cve/CVE-2026-84679"},{"type":"ADVISORY","url":"https://www.cve.org/CVERecord?id=CVE-2026-84679"},{"type":"ADVISORY","url":"https://nvd.nist.gov/vuln/detail/CVE-2026-84679"},{"type":"REPORT","url":"https://access.redhat.com/security/cve/CVE-2026-84680"},{"type":"ADVISORY","url":"https://www.cve.org/CVERecord?id=CVE-2026-84680"},{"type":"ADVISORY","url":"https://nvd.nist.gov/vuln/detail/CVE-2026-84680"},{"type":"REPORT","url":"https://access.redhat.com/security/cve/CVE-2026-84683"},{"type":"ADVISORY","url":"https://www.cve.org/CVERecord?id=CVE-2026-84683"},{"type":"ADVISORY","url":"https://nvd.nist.gov/vuln/detail/CVE-2026-84683"},{"type":"REPORT","url":"https://access.redhat.com/security/cve/CVE-2026-84684"},{"type":"ADVISORY","url":"https://www.cve.org/CVERecord?id=CVE-2026-84684"},{"type":"ADVISORY","url":"https://nvd.nist.gov/vuln/detail/CVE-2026-84684"},{"type":"REPORT","url":"https://access.redhat.com/security/cve/CVE-2026-84686"},{"type":"ADVISORY","url":"https://www.cve.org/CVERecord?id=CVE-2026-84686"},{"type":"ADVISORY","url":"https://nvd.nist.gov/vuln/detail/CVE-2026-84686"},{"type":"REPORT","url":"https://access.redhat.com/security/cve/CVE-2026-84689"},{"type":"ADVISORY","url":"https://www.cve.org/CVERecord?id=CVE-2026-84689"},{"type":"ADVISORY","url":"https://nvd.nist.gov/vuln/detail/CVE-2026-84689"},{"type":"REPORT","url":"https://access.redhat.com/security/cve/CVE-2026-84691"},{"type":"ADVISORY","url":"https://www.cve.org/CVERecord?id=CVE-2026-84691"},{"type":"ADVISORY","url":"https://nvd.nist.gov/vuln/detail/CVE-2026-84691"},{"type":"REPORT","url":"https://access.redhat.com/security/cve/CVE-2026-84692"},{"type":"ADVISORY","url":"https://www.cve.org/CVERecord?id=CVE-2026-84692"},{"type":"ADVISORY","url":"https://nvd.nist.gov/vuln/detail/CVE-2026-84692"},{"type":"REPORT","url":"https://access.redhat.com/security/cve/CVE-2026-84703"},{"type":"ADVISORY","url":"https://www.cve.org/CVERecord?id=CVE-2026-84703"},{"type":"ADVISORY","url":"https://nvd.nist.gov/vuln/detail/CVE-2026-84703"},{"type":"REPORT","url":"https://access.redhat.com/security/cve/CVE-2026-84706"},{"type":"ADVISORY","url":"https://www.cve.org/CVERecord?id=CVE-2026-84706"},{"type":"ADVISORY","url":"https://nvd.nist.gov/vuln/detail/CVE-2026-84706"},{"type":"REPORT","url":"https://access.redhat.com/security/cve/CVE-2026-84707"},{"type":"ADVISORY","url":"https://www.cve.org/CVERecord?id=CVE-2026-84707"},{"type":"ADVISORY","url":"https://nvd.nist.gov/vuln/detail/CVE-2026-84707"},{"type":"REPORT","url":"https://access.redhat.com/security/cve/CVE-2026-84708"},{"type":"ADVISORY","url":"https://www.cve.org/CVERecord?id=CVE-2026-84708"},{"type":"ADVISORY","url":"https://nvd.nist.gov/vuln/detail/CVE-2026-84708"},{"type":"REPORT","url":"https://access.redhat.com/security/cve/CVE-2026-84709"},{"type":"ADVISORY","url":"https://www.cve.org/CVERecord?id=CVE-2026-84709"},{"type":"ADVISORY","url":"https://nvd.nist.gov/vuln/detail/CVE-2026-84709"},{"type":"REPORT","url":"https://access.redhat.com/security/cve/CVE-2026-84711"},{"type":"ADVISORY","url":"https://www.cve.org/CVERecord?id=CVE-2026-84711"},{"type":"ADVISORY","url":"https://nvd.nist.gov/vuln/detail/CVE-2026-84711"},{"type":"REPORT","url":"https://access.redhat.com/security/cve/CVE-2026-84712"},{"type":"ADVISORY","url":"https://www.cve.org/CVERecord?id=CVE-2026-84712"},{"type":"ADVISORY","url":"https://nvd.nist.gov/vuln/detail/CVE-2026-84712"},{"type":"REPORT","url":"https://access.redhat.com/security/cve/CVE-2026-84714"},{"type":"ADVISORY","url":"https://www.cve.org/CVERecord?id=CVE-2026-84714"},{"type":"ADVISORY","url":"https://nvd.nist.gov/vuln/detail/CVE-2026-84714"},{"type":"REPORT","url":"https://access.redhat.com/security/cve/CVE-2026-84716"},{"type":"ADVISORY","url":"https://www.cve.org/CVERecord?id=CVE-2026-84716"},{"type":"ADVISORY","url":"https://nvd.nist.gov/vuln/detail/CVE-2026-84716"},{"type":"REPORT","url":"https://access.redhat.com/security/cve/CVE-2026-84717"},{"type":"ADVISORY","url":"https://www.cve.org/CVERecord?id=CVE-2026-84717"},{"type":"ADVISORY","url":"https://nvd.nist.gov/vuln/detail/CVE-2026-84717"},{"type":"REPORT","url":"https://access.redhat.com/security/cve/CVE-2026-84718"},{"type":"ADVISORY","url":"https://www.cve.org/CVERecord?id=CVE-2026-84718"},{"type":"ADVISORY","url":"https://nvd.nist.gov/vuln/detail/CVE-2026-84718"},{"type":"REPORT","url":"https://access.redhat.com/security/cve/CVE-2026-84719"},{"type":"ADVISORY","url":"https://www.cve.org/CVERecord?id=CVE-2026-84719"},{"type":"ADVISORY","url":"https://nvd.nist.gov/vuln/detail/CVE-2026-84719"},{"type":"REPORT","url":"https://access.redhat.com/security/cve/CVE-2026-84720"},{"type":"ADVISORY","url":"https://www.cve.org/CVERecord?id=CVE-2026-84720"},{"type":"ADVISORY","url":"https://nvd.nist.gov/vuln/detail/CVE-2026-84720"},{"type":"REPORT","url":"https://access.redhat.com/security/cve/CVE-2026-84724"},{"type":"ADVISORY","url":"https://www.cve.org/CVERecord?id=CVE-2026-84724"},{"type":"ADVISORY","url":"https://nvd.nist.gov/vuln/detail/CVE-2026-84724"},{"type":"REPORT","url":"https://access.redhat.com/security/cve/CVE-2026-87817"},{"type":"ADVISORY","url":"https://www.cve.org/CVERecord?id=CVE-2026-87817"},{"type":"ADVISORY","url":"https://nvd.nist.gov/vuln/detail/CVE-2026-87817"},{"type":"ARTICLE","url":"https://github.com/gitpython-developers/GitPython/security/advisories/GHSA-239g-whfq-7xj9"},{"type":"ARTICLE","url":"https://www.vulncheck.com/advisories/gitpython-before-3.1.60-remote-code-execution-via-git-directory-impersonation"}],"affected":[{"package":{"name":"automation-controller-venv-tower","ecosystem":"Red Hat:ansible_automation_platform:2.6::el9","purl":"pkg:rpm/redhat/automation-controller-venv-tower"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"0:4.7.17-1.el9ap"}]}],"database_specific":{"source":"https://security.access.redhat.com/data/osv/RHSA-2026:71113.json"}},{"package":{"name":"receptor","ecosystem":"Red Hat:ansible_automation_platform:2.6::el10","purl":"pkg:rpm/redhat/receptor"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"0:1.6.8-1.el10ap"}]}],"database_specific":{"source":"https://security.access.redhat.com/data/osv/RHSA-2026:71113.json"}},{"package":{"name":"receptor","ecosystem":"Red Hat:ansible_automation_platform_developer:2.6::el9","purl":"pkg:rpm/redhat/receptor"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"0:1.6.8-1.el9ap"}]}],"database_specific":{"source":"https://security.access.redhat.com/data/osv/RHSA-2026:71113.json"}},{"package":{"name":"receptor","ecosystem":"Red Hat:ansible_automation_platform_inside:2.6::el9","purl":"pkg:rpm/redhat/receptor"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"0:1.6.8-1.el9ap"}]}],"database_specific":{"source":"https://security.access.redhat.com/data/osv/RHSA-2026:71113.json"}},{"package":{"name":"automation-gateway-proxy-server","ecosystem":"Red Hat:ansible_automation_platform:2.6::el9","purl":"pkg:rpm/redhat/automation-gateway-proxy-server"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"0:2.6.17-3.el9ap"}]}],"database_specific":{"source":"https://security.access.redhat.com/data/osv/RHSA-2026:71113.json"}},{"package":{"name":"receptor","ecosystem":"Red Hat:ansible_automation_platform:2.6::el9","purl":"pkg:rpm/redhat/receptor"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"0:1.6.8-1.el9ap"}]}],"database_specific":{"source":"https://security.access.redhat.com/data/osv/RHSA-2026:71113.json"}},{"package":{"name":"python-sqlparse","ecosystem":"Red Hat:ansible_automation_platform_developer:2.6::el10","purl":"pkg:rpm/redhat/python-sqlparse"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"0:0.6.0-1.el10ap"}]}],"database_specific":{"source":"https://security.access.redhat.com/data/osv/RHSA-2026:71113.json"}},{"package":{"name":"python3-sqlparse","ecosystem":"Red Hat:ansible_automation_platform_developer:2.6::el10","purl":"pkg:rpm/redhat/python3-sqlparse"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"0:0.6.0-1.el10ap"}]}],"database_specific":{"source":"https://security.access.redhat.com/data/osv/RHSA-2026:71113.json"}},{"package":{"name":"python-sqlparse","ecosystem":"Red Hat:ansible_automation_platform:2.6::el10","purl":"pkg:rpm/redhat/python-sqlparse"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"0:0.6.0-1.el10ap"}]}],"database_specific":{"source":"https://security.access.redhat.com/data/osv/RHSA-2026:71113.json"}},{"package":{"name":"python3-sqlparse","ecosystem":"Red Hat:ansible_automation_platform:2.6::el10","purl":"pkg:rpm/redhat/python3-sqlparse"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"0:0.6.0-1.el10ap"}]}],"database_specific":{"source":"https://security.access.redhat.com/data/osv/RHSA-2026:71113.json"}},{"package":{"name":"python3.12-sqlparse","ecosystem":"Red Hat:ansible_automation_platform_developer:2.6::el9","purl":"pkg:rpm/redhat/python3.12-sqlparse"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"0:0.6.0-1.el9ap"}]}],"database_specific":{"source":"https://security.access.redhat.com/data/osv/RHSA-2026:71113.json"}},{"package":{"name":"python3.12-sqlparse","ecosystem":"Red Hat:ansible_automation_platform:2.6::el9","purl":"pkg:rpm/redhat/python3.12-sqlparse"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"0:0.6.0-1.el9ap"}]}],"database_specific":{"source":"https://security.access.redhat.com/data/osv/RHSA-2026:71113.json"}},{"package":{"name":"automation-platform-ui","ecosystem":"Red Hat:ansible_automation_platform:2.6::el9","purl":"pkg:rpm/redhat/automation-platform-ui"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"0:2.6.14-1.el9ap"}]}],"database_specific":{"source":"https://security.access.redhat.com/data/osv/RHSA-2026:71113.json"}},{"package":{"name":"automation-controller","ecosystem":"Red Hat:ansible_automation_platform_developer:2.6::el9","purl":"pkg:rpm/redhat/automation-controller"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"0:4.7.17-1.el9ap"}]}],"database_specific":{"source":"https://security.access.redhat.com/data/osv/RHSA-2026:71113.json"}},{"package":{"name":"automation-controller-cli","ecosystem":"Red Hat:ansible_automation_platform_developer:2.6::el9","purl":"pkg:rpm/redhat/automation-controller-cli"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"0:4.7.17-1.el9ap"}]}],"database_specific":{"source":"https://security.access.redhat.com/data/osv/RHSA-2026:71113.json"}},{"package":{"name":"automation-controller","ecosystem":"Red Hat:ansible_automation_platform:2.6::el9","purl":"pkg:rpm/redhat/automation-controller"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"0:4.7.17-1.el9ap"}]}],"database_specific":{"source":"https://security.access.redhat.com/data/osv/RHSA-2026:71113.json"}},{"package":{"name":"automation-controller-cli","ecosystem":"Red Hat:ansible_automation_platform:2.6::el9","purl":"pkg:rpm/redhat/automation-controller-cli"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"0:4.7.17-1.el9ap"}]}],"database_specific":{"source":"https://security.access.redhat.com/data/osv/RHSA-2026:71113.json"}},{"package":{"name":"automation-controller-server","ecosystem":"Red Hat:ansible_automation_platform:2.6::el9","purl":"pkg:rpm/redhat/automation-controller-server"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"0:4.7.17-1.el9ap"}]}],"database_specific":{"source":"https://security.access.redhat.com/data/osv/RHSA-2026:71113.json"}},{"package":{"name":"automation-controller-ui","ecosystem":"Red Hat:ansible_automation_platform:2.6::el9","purl":"pkg:rpm/redhat/automation-controller-ui"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"0:4.7.17-1.el9ap"}]}],"database_specific":{"source":"https://security.access.redhat.com/data/osv/RHSA-2026:71113.json"}},{"package":{"name":"python3.12-gitpython","ecosystem":"Red Hat:ansible_automation_platform:2.6::el9","purl":"pkg:rpm/redhat/python3.12-gitpython"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"0:3.1.60-1.el9ap"}]}],"database_specific":{"source":"https://security.access.redhat.com/data/osv/RHSA-2026:71113.json"}}],"schema_version":"1.9.0","severity":[{"type":"CVSS_V3","score":"CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:C/C:H/I:H/A:H"}]}