{"schema_version":1,"title":"Ansible vulnerabilities","summary":"Junglewise Threat Intelligence has tracked 8 vulnerabilities in Ansible: 0 in the last 7 days and 3 in the last 90 days, 0 of them critical and 0 exploited in the wild. The most recent, CVE-2026-87874, was published on 9 September 2026. 1 technology has a page of its own.","url":"https://junglewise.ai/threats/vendors/ansible","json_url":"https://junglewise.ai/threats/vendors/ansible.json","publisher":"Junglewise Threat Intelligence","license":"CC-BY-4.0","license_url":"https://creativecommons.org/licenses/by/4.0/","attribution":"Junglewise Threat Intelligence, https://junglewise.ai/threats/vendors/ansible","sources":"NVD, GitHub Security Advisories, OSV, the CISA Known Exploited Vulnerabilities catalog, FIRST EPSS and vendor advisories","kind":"vendor","counts":{"high":1,"all_time":8,"critical":0,"exploited":0,"last_7_days":0,"last_30_days":2,"last_90_days":3,"last_365_days":8},"latest":[{"cve":"CVE-2026-87874","cvss":8.1,"epss":0.0072,"slug":"cve-2026-87874-ansible-community-general-memcached-cache-plugin-deserialization","title":"Ansible community.general memcached cache plugin deserialization RCE","severity":"high","exploited":false,"published_at":"2026-09-09T17:17:53.093+00:00","url":"https://junglewise.ai/threats/cve-2026-87874-ansible-community-general-memcached-cache-plugin-deserialization"},{"cve":"CVE-2026-87872","cvss":6.8,"epss":0.0014,"slug":"cve-2026-87872-ansible-community-general-ocapi-modules-tls-certificate","title":"Ansible community.general OCAPI modules TLS certificate validation bypass","severity":"medium","exploited":false,"published_at":"2026-09-09T17:17:52.96+00:00","url":"https://junglewise.ai/threats/cve-2026-87872-ansible-community-general-ocapi-modules-tls-certificate"},{"cve":"CVE-2026-80158","cvss":5.5,"epss":0.0015,"slug":"cve-2026-80158-ansible-community-general-ipa-getkeytab-password-disclosure","title":"Ansible community.general ipa_getkeytab password disclosure","severity":"medium","exploited":false,"published_at":"2026-08-26T23:17:20.657+00:00","url":"https://junglewise.ai/threats/cve-2026-80158-ansible-community-general-ipa-getkeytab-password-disclosure"},{"cve":"CVE-2026-11820","cvss":6.5,"slug":"cve-2026-11820-ansible-community-general-nexmo-credential-exposure-in-get-query","title":"Ansible community.general nexmo credential exposure in GET query string","severity":"medium","exploited":false,"published_at":"2026-06-23T21:16:54.593+00:00","url":"https://junglewise.ai/threats/cve-2026-11820-ansible-community-general-nexmo-credential-exposure-in-get-query"},{"cve":"CVE-2026-11819","cvss":5.5,"slug":"cve-2026-11819-ansible-community-general-plaintext-credential-disclosure-in","title":"Ansible community.general plaintext credential disclosure in keyring_info","severity":"medium","exploited":false,"published_at":"2026-06-23T21:16:54.473+00:00","url":"https://junglewise.ai/threats/cve-2026-11819-ansible-community-general-plaintext-credential-disclosure-in"},{"cve":"CVE-2026-12726","cvss":6.3,"slug":"cve-2026-12726-red-hat-ansible-automation-controller-ssrf-in-github-webhook","title":"Red Hat Ansible Automation Controller SSRF in GitHub Webhook Integration","severity":"medium","exploited":false,"published_at":"2026-06-19T19:16:27.217+00:00","url":"https://junglewise.ai/threats/cve-2026-12726-red-hat-ansible-automation-controller-ssrf-in-github-webhook"},{"cve":"CVE-2026-52902","cvss":4.7,"epss":0.0016,"slug":"cve-2026-52902-ansible-awxkit-path-traversal-in-yaml-include-directive","title":"Ansible awxkit path traversal in YAML !include directive","severity":"medium","exploited":false,"published_at":"2026-06-09T10:16:44.83+00:00","url":"https://junglewise.ai/threats/cve-2026-52902-ansible-awxkit-path-traversal-in-yaml-include-directive"},{"cve":"CVE-2025-14010","cvss":5.5,"epss":0.0014,"slug":"cve-2025-14010-ansible-community-general-information-exposure-in-keycloak-user","title":"Ansible community.general information exposure in Keycloak user module","severity":"medium","exploited":false,"published_at":"2025-12-04T10:16:00.81+00:00","url":"https://junglewise.ai/threats/cve-2025-14010-ansible-community-general-information-exposure-in-keycloak-user"}],"vendor":{"hub":true,"name":"Ansible","slug":"ansible","homepage":"https://www.ansible.com/","description":"An open-source IT automation engine that automates provisioning, configuration management, and application deployment.","url":"https://junglewise.ai/threats/vendors/ansible"},"weekly":[{"week":"2026-06-29","critical":0,"exploited":0,"vulnerabilities":0},{"week":"2026-07-06","critical":0,"exploited":0,"vulnerabilities":0},{"week":"2026-07-13","critical":0,"exploited":0,"vulnerabilities":0},{"week":"2026-07-20","critical":0,"exploited":0,"vulnerabilities":0},{"week":"2026-07-27","critical":0,"exploited":0,"vulnerabilities":0},{"week":"2026-08-03","critical":0,"exploited":0,"vulnerabilities":0},{"week":"2026-08-10","critical":0,"exploited":0,"vulnerabilities":0},{"week":"2026-08-17","critical":0,"exploited":0,"vulnerabilities":0},{"week":"2026-08-24","critical":0,"exploited":0,"vulnerabilities":1},{"week":"2026-08-31","critical":0,"exploited":0,"vulnerabilities":0},{"week":"2026-09-07","critical":0,"exploited":0,"vulnerabilities":2},{"week":"2026-09-14","critical":0,"exploited":0,"vulnerabilities":0},{"week":"2026-09-21","critical":0,"exploited":0,"vulnerabilities":0}],"most_severe":[{"cve":"CVE-2026-87874","cvss":8.1,"epss":0.0072,"slug":"cve-2026-87874-ansible-community-general-memcached-cache-plugin-deserialization","title":"Ansible community.general memcached cache plugin deserialization RCE","severity":"high","exploited":false,"published_at":"2026-09-09T17:17:53.093+00:00","url":"https://junglewise.ai/threats/cve-2026-87874-ansible-community-general-memcached-cache-plugin-deserialization"},{"cve":"CVE-2026-87872","cvss":6.8,"epss":0.0014,"slug":"cve-2026-87872-ansible-community-general-ocapi-modules-tls-certificate","title":"Ansible community.general OCAPI modules TLS certificate validation bypass","severity":"medium","exploited":false,"published_at":"2026-09-09T17:17:52.96+00:00","url":"https://junglewise.ai/threats/cve-2026-87872-ansible-community-general-ocapi-modules-tls-certificate"},{"cve":"CVE-2026-11820","cvss":6.5,"slug":"cve-2026-11820-ansible-community-general-nexmo-credential-exposure-in-get-query","title":"Ansible community.general nexmo credential exposure in GET query string","severity":"medium","exploited":false,"published_at":"2026-06-23T21:16:54.593+00:00","url":"https://junglewise.ai/threats/cve-2026-11820-ansible-community-general-nexmo-credential-exposure-in-get-query"},{"cve":"CVE-2026-12726","cvss":6.3,"slug":"cve-2026-12726-red-hat-ansible-automation-controller-ssrf-in-github-webhook","title":"Red Hat Ansible Automation Controller SSRF in GitHub Webhook Integration","severity":"medium","exploited":false,"published_at":"2026-06-19T19:16:27.217+00:00","url":"https://junglewise.ai/threats/cve-2026-12726-red-hat-ansible-automation-controller-ssrf-in-github-webhook"},{"cve":"CVE-2026-80158","cvss":5.5,"epss":0.0015,"slug":"cve-2026-80158-ansible-community-general-ipa-getkeytab-password-disclosure","title":"Ansible community.general ipa_getkeytab password disclosure","severity":"medium","exploited":false,"published_at":"2026-08-26T23:17:20.657+00:00","url":"https://junglewise.ai/threats/cve-2026-80158-ansible-community-general-ipa-getkeytab-password-disclosure"},{"cve":"CVE-2025-14010","cvss":5.5,"epss":0.0014,"slug":"cve-2025-14010-ansible-community-general-information-exposure-in-keycloak-user","title":"Ansible community.general information exposure in Keycloak user module","severity":"medium","exploited":false,"published_at":"2025-12-04T10:16:00.81+00:00","url":"https://junglewise.ai/threats/cve-2025-14010-ansible-community-general-information-exposure-in-keycloak-user"},{"cve":"CVE-2026-11819","cvss":5.5,"slug":"cve-2026-11819-ansible-community-general-plaintext-credential-disclosure-in","title":"Ansible community.general plaintext credential disclosure in keyring_info","severity":"medium","exploited":false,"published_at":"2026-06-23T21:16:54.473+00:00","url":"https://junglewise.ai/threats/cve-2026-11819-ansible-community-general-plaintext-credential-disclosure-in"},{"cve":"CVE-2026-52902","cvss":4.7,"epss":0.0016,"slug":"cve-2026-52902-ansible-awxkit-path-traversal-in-yaml-include-directive","title":"Ansible awxkit path traversal in YAML !include directive","severity":"medium","exploited":false,"published_at":"2026-06-09T10:16:44.83+00:00","url":"https://junglewise.ai/threats/cve-2026-52902-ansible-awxkit-path-traversal-in-yaml-include-directive"}],"generated_at":"2026-09-26T10:07:00.179841+00:00","technologies":[{"name":"Ansible Community.general Collection","slug":"community-general-collection","vulnerabilities":5,"url":"https://junglewise.ai/threats/technologies/community-general-collection"}]}