{"id":"RHSA-2025:23070","summary":"Red Hat Security Advisory: Red Hat Ansible Automation Platform 2.6 Product Security and Bug Fix Update","modified":"2026-03-18T11:39:29.783360Z","published":"2025-12-11T10:06:51Z","upstream":["CVE-2025-64459"],"references":[{"type":"ADVISORY","url":"https://access.redhat.com/errata/RHSA-2025:23070"},{"type":"ARTICLE","url":"https://access.redhat.com/security/updates/classification/#important"},{"type":"REPORT","url":"https://bugzilla.redhat.com/show_bug.cgi?id=2412651"},{"type":"ADVISORY","url":"https://security.access.redhat.com/data/csaf/v2/advisories/2025/rhsa-2025_23070.json"},{"type":"REPORT","url":"https://access.redhat.com/security/cve/CVE-2025-64459"},{"type":"ADVISORY","url":"https://www.cve.org/CVERecord?id=CVE-2025-64459"},{"type":"ADVISORY","url":"https://nvd.nist.gov/vuln/detail/CVE-2025-64459"},{"type":"ARTICLE","url":"https://docs.djangoproject.com/en/dev/releases/security/"},{"type":"ARTICLE","url":"https://github.com/django/django/commit/c880530ddd4fabd5939bab0e148bebe36699432a"},{"type":"ARTICLE","url":"https://groups.google.com/g/django-announce"},{"type":"ARTICLE","url":"https://www.djangoproject.com/weblog/2025/nov/05/security-releases/"}],"affected":[{"package":{"name":"automation-controller-venv-tower","ecosystem":"Red Hat:ansible_automation_platform_developer:2.6::el9","purl":"pkg:rpm/redhat/automation-controller-venv-tower"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"0:4.7.6-1.el9ap"}]}],"database_specific":{"source":"https://security.access.redhat.com/data/osv/RHSA-2025:23070.json"}},{"package":{"name":"python3.11-django","ecosystem":"Red Hat:ansible_automation_platform_developer:2.6::el9","purl":"pkg:rpm/redhat/python3.11-django"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"0:4.2.26-2.el9ap"}]}],"database_specific":{"source":"https://security.access.redhat.com/data/osv/RHSA-2025:23070.json"}},{"package":{"name":"automation-controller-venv-tower","ecosystem":"Red Hat:ansible_automation_platform:2.6::el9","purl":"pkg:rpm/redhat/automation-controller-venv-tower"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"0:4.7.6-1.el9ap"}]}],"database_specific":{"source":"https://security.access.redhat.com/data/osv/RHSA-2025:23070.json"}},{"package":{"name":"python3.11-django","ecosystem":"Red Hat:ansible_automation_platform:2.6::el9","purl":"pkg:rpm/redhat/python3.11-django"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"0:4.2.26-2.el9ap"}]}],"database_specific":{"source":"https://security.access.redhat.com/data/osv/RHSA-2025:23070.json"}}],"schema_version":"1.7.5","severity":[{"type":"CVSS_V3","score":"CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:C/C:L/I:L/A:L"}]}