CSIRTS // UNIFIED SECURITY ADVISORY FEEDSYS ● ONLINE · POWERED BY INTELFUSIONS.COM

CVE-2026-74242

mediumCVSS 5.3covered by 1 sourcefirst seen 2026-08-14
A flaw was found in Red Hat Quay. An administrator of any repository, by knowing or guessing a target notification's Universally Unique Identifier (UUID), can read the notification configuration, including sensitive details like webhook URLs, Slack tokens, and email addresses. This vulnerability also allows them to trigger test notifications for another repository. This could lead to unauthorized information disclosure and potential misuse of notification services.

⚡ Watch CVE-2026-74242

Get an email if CVE-2026-74242 is added to CISA KEV, gains public exploit code, or a new advisory cites it — max one per day, one-click unsubscribe.

Exploitation outlook

Advisory coverage (1)

External references

NVD record for CVE-2026-74242

CVE.org record

Embed the live status

CVE-2026-74242 live status badge — this badge updates automatically when the KEV or exploit status changes. How to embed it →

[![CVE-2026-74242 status](https://www.csirts.com/badge/CVE-2026-74242)](https://www.csirts.com/cve/CVE-2026-74242)