Is Foreman 3.6.2 patched?
Current stable (3.18.1): 92/100
Summary iPlain-English security status for Foreman 3.6.2, built from its CVEs, active-exploitation data, end-of-life date and latest release.
Foreman 3.6.2 is part of the 3.6 release line. 4 known vulnerabilities affect it. The 3.6 line reached end-of-life on 2023-10-10, so it no longer receives security patches. The latest supported Foreman release is 3.18.1.
Known issues affecting 3.6.2
Exploited first, then by exploitation probability.
CVE-2023-0462 HIGH EPSS 1% → fixed in 3.8.0 CVE-2021-3590 HIGH EPSS 1% → see advisory CVE-2025-9572 MEDIUM EPSS 0% → fixed in 3.16.2 CVE-2023-4886 MEDIUM EPSS 0% → fixed in 3.8.0Other Foreman versions
Check another release line of Foreman.
Frequently asked
Is Foreman 3.6.2 patched?
Foreman 3.6.2 is end-of-life and no longer receives security patches. Move to 3.18.1.
When does Foreman 3.6 reach end-of-life?
Foreman 3.6 reached end-of-life on 2023-10-10 and no longer receives security patches.
What is the latest version of Foreman?
The latest supported Foreman release is 3.18.1.
Is Foreman 3.6.2 still receiving security updates?
No — Foreman 3.6.2 is on the 3.6 line, which reached end-of-life on 2023-10-10 and no longer receives security updates. Upgrade to 3.18.1 or later to stay supported.
Informational only, from public data (NVD · CISA KEV · EPSS · endoflife.date), and can lag or miss vendor-specific fixes. Always confirm against The Foreman's official advisory before you patch or upgrade — Foreman official site ↗