Is Foreman 1.8.4 patched?
Current stable (3.18.1): 92/100
Summary iPlain-English security status for Foreman 1.8.4, built from its CVEs, active-exploitation data, end-of-life date and latest release.
Foreman 1.8.4 is part of the 1.8 release line. 24 known vulnerabilities affect it. The 1.8 line reached end-of-life on 2015-12-23, so it no longer receives security patches. The latest supported Foreman release is 3.18.1.
Known issues affecting 1.8.4
Exploited first, then by exploitation probability.
CVE-2021-3584 HIGH EPSS 4% → fixed in 2.5.1 CVE-2016-4475 HIGH EPSS 3% → see advisory CVE-2016-6319 MEDIUM EPSS 2% → see advisory CVE-2015-7518 MEDIUM EPSS 2% → see advisory CVE-2017-7505 HIGH EPSS 2% → see advisory CVE-2017-7535 MEDIUM EPSS 1% → fixed in 1.16.0 CVE-2018-1096 MEDIUM EPSS 1% → fixed in 1.16.1 CVE-2016-7077 MEDIUM EPSS 1% → fixed in 1.14.0 CVE-2017-2672 MEDIUM EPSS 1% → fixed in 1.15 CVE-2016-2100 MEDIUM EPSS 1% → see advisory CVE-2016-8639 MEDIUM EPSS 1% → fixed in 1.13.0 CVE-2017-15100 MEDIUM EPSS 1% → fixed in 1.16.0 CVE-2016-9593 MEDIUM EPSS 1% → fixed in 1.15.0 CVE-2015-5282 MEDIUM EPSS 1% → see advisory CVE-2023-0462 HIGH EPSS 1% → fixed in 3.8.0 CVE-2016-6320 MEDIUM EPSS 1% → see advisory CVE-2016-4451 MEDIUM EPSS 1% → see advisory CVE-2018-16861 HIGH EPSS 1% → fixed in 1.19.1 CVE-2014-8183 HIGH EPSS 1% → fixed in 1.15.6 CVE-2021-3590 HIGH EPSS 1% → see advisoryOther Foreman versions
Check another release line of Foreman.
Frequently asked
Is Foreman 1.8.4 patched?
Foreman 1.8.4 is end-of-life and no longer receives security patches. Move to 3.18.1.
When does Foreman 1.8 reach end-of-life?
Foreman 1.8 reached end-of-life on 2015-12-23 and no longer receives security patches.
What is the latest version of Foreman?
The latest supported Foreman release is 3.18.1.
Is Foreman 1.8.4 still receiving security updates?
No — Foreman 1.8.4 is on the 1.8 line, which reached end-of-life on 2015-12-23 and no longer receives security updates. Upgrade to 3.18.1 or later to stay supported.
Informational only, from public data (NVD · CISA KEV · EPSS · endoflife.date), and can lag or miss vendor-specific fixes. Always confirm against The Foreman's official advisory before you patch or upgrade — Foreman official site ↗