CVE-2026-18141
Received Received - Intake

Authentication Bypass in Ansible Automation Platform EDA

Vulnerability report for CVE-2026-18141, including description, CVSS score, EPSS score, affected products, exploitability, helpful resources, and attack-flow context.

Publication date: 2026-07-31

Last updated on: 2026-07-31

Assigner: Red Hat, Inc.

Description

A flaw was found in aap-gateway, a component of Ansible Automation Platform's Event-Driven Ansible (EDA). An unauthenticated remote attacker can bypass mutual Transport Layer Security (mTLS) authentication for event streams. This is achieved by manipulating the event stream URL and forging the HTTP Subject header. The system also inadvertently discloses the expected certificate subject in error messages, which simplifies the attack. This vulnerability allows an attacker to inject arbitrary events into EDA, potentially triggering automated workflows.

CVSS Scores

EPSS Scores

Probability:
Percentile:

Meta Information

Published
2026-07-31
Last Modified
2026-07-31
Generated
2026-07-31
AI Q&A
2026-07-31
EPSS Evaluated
N/A
NVD
EUVD

Affected Vendors & Products

Showing 1 associated CPE
Vendor Product Version / Range
redhat aap_gateway *

Helpful Resources

Exploitability

CWE
CWE Icon
KEV
KEV Icon
CWE ID Description
CWE-295 The product does not validate, or incorrectly validates, a certificate.

Attack-Flow Graph

AI Quick Actions

Instant insights powered by AI
Executive Summary

This vulnerability is in aap-gateway, a component of Ansible Automation Platform's Event-Driven Ansible (EDA). An unauthenticated remote attacker can bypass mutual TLS authentication for event streams by manipulating the event stream URL and forging the HTTP Subject header. Error messages also disclose the expected certificate subject, aiding the attack. This allows injecting arbitrary events into EDA, potentially triggering automated workflows.

Impact Analysis

An attacker could exploit this to inject malicious events into your EDA system, potentially triggering unintended automated workflows. This could lead to unauthorized actions, data breaches, or disruption of automated processes relying on EDA.

Compliance Impact

This vulnerability could lead to unauthorized access or data exposure, violating compliance requirements for GDPR (data protection) and HIPAA (healthcare data privacy). It may result in regulatory penalties, loss of trust, and legal consequences due to compromised automated workflows.

Mitigation Strategies

Apply patches or updates from Red Hat for aap-gateway to fix the mTLS authentication bypass. Ensure event stream URLs are validated and error messages do not expose certificate subjects. Restrict network access to EDA components and monitor for unauthorized event injections.

Chat Assistant

Ask questions about this CVE
Hi! I’m here to help you understand CVE-2026-18141. Ask me anything about the vulnerability, its impact, or mitigation strategies.
0/70

EPSS Chart