CVE-2026-32590
Red Hat mirror registry for Red Hat OpenShift 2.0, Red Hat Quay 3.1, Red Hat Quay 3.12
A flaw was found in Red Hat Quay's handling of resumable container image layer uploads. The upload process stores intermediate data in the database using a format that, if tampered with, could allow an attacker to execute arbitrary code on the Quay server.
- CVSS
- 8.8
- EPSS
- 0.41% 34.0% percentile
- CISA KEV
- Not listed
- Published
- 2026.04.09