Is Foreman 1.5.3 patched?
Current stable (3.18.1): 92/100
Summary iPlain-English security status for Foreman 1.5.3, built from its CVEs, active-exploitation data, end-of-life date and latest release.
Foreman 1.5.3 is part of the 1.5 release line. 31 known vulnerabilities affect it. The 1.5 line reached end-of-life on 2014-12-02, so it no longer receives security patches. The latest supported Foreman release is 3.18.1.
Known issues affecting 1.5.3
Exploited first, then by exploitation probability.
CVE-2021-3584 HIGH EPSS 4% → fixed in 2.5.1 CVE-2016-4475 HIGH EPSS 3% → see advisory CVE-2015-3155 MEDIUM EPSS 2% → see advisory CVE-2016-6319 MEDIUM EPSS 2% → see advisory CVE-2015-1844 MEDIUM EPSS 2% → see advisory CVE-2014-3653 MEDIUM EPSS 2% → see advisory CVE-2015-7518 MEDIUM EPSS 2% → see advisory CVE-2018-1097 HIGH EPSS 2% → fixed in 1.6.1 CVE-2014-3691 HIGH EPSS 2% → see advisory CVE-2015-3235 MEDIUM EPSS 2% → see advisory CVE-2017-7505 HIGH EPSS 2% → see advisory CVE-2015-5152 HIGH EPSS 2% → see advisory CVE-2017-7535 MEDIUM EPSS 1% → fixed in 1.16.0 CVE-2018-1096 MEDIUM EPSS 1% → fixed in 1.16.1 CVE-2016-7077 MEDIUM EPSS 1% → fixed in 1.14.0 CVE-2017-2672 MEDIUM EPSS 1% → fixed in 1.15 CVE-2016-2100 MEDIUM EPSS 1% → see advisory CVE-2015-5233 MEDIUM EPSS 1% → see advisory CVE-2016-8639 MEDIUM EPSS 1% → fixed in 1.13.0 CVE-2017-15100 MEDIUM EPSS 1% → fixed in 1.16.0Other Foreman versions
Check another release line of Foreman.
Frequently asked
Is Foreman 1.5.3 patched?
Foreman 1.5.3 is end-of-life and no longer receives security patches. Move to 3.18.1.
When does Foreman 1.5 reach end-of-life?
Foreman 1.5 reached end-of-life on 2014-12-02 and no longer receives security patches.
What is the latest version of Foreman?
The latest supported Foreman release is 3.18.1.
Is Foreman 1.5.3 still receiving security updates?
No — Foreman 1.5.3 is on the 1.5 line, which reached end-of-life on 2014-12-02 and no longer receives security updates. Upgrade to 3.18.1 or later to stay supported.
Informational only, from public data (NVD · CISA KEV · EPSS · endoflife.date), and can lag or miss vendor-specific fixes. Always confirm against The Foreman's official advisory before you patch or upgrade — Foreman official site ↗