Known vulnerabilities in webkit2gtk (Alpine package)

Software CPE: cpe:2.3:o:alpine:webkit2gtk_alpine_package:*:*:*:*:*:alpine_linux:*:*
Total vulnerabilities: 130
Public exploits: 9
Known exploited (KEV): 2
Highest CVSSv4 Score: 9.3

Breakdown by Severity Chart

Severity distribution of vulnerabilities affecting webkit2gtk (Alpine package) webkit2gtk (Alpine package) is affected by 130 known vulnerabilities: 95 high, 19 medium, 16 low Critical High Medium Low

Vulnerabilities (130)

Vulnerability CWE-ID CSH Severity Public Exploit KEV First fixed release Published Bulletins
#VU48720 - Use After Free
CVE-2020-13543
CWE-416 High
No
No
2.32.0-r0 01.12.2020 SB2020112408
SB2020122344
SB2021040169
and 7 more
#VU48617 - Use After Free
CVE-2020-13584
CWE-416 High
No
No
2.32.0-r0 24.11.2020 SB2020112408
SB2020112602
SB2020112618
and 11 more
#VU46804 - Out-of-bounds write
CVE-2020-9983
CWE-787 High
No
No
2.32.0-r0 18.09.2020 SB2020091802
SB2020112408
SB2020112602
and 13 more
#VU46803 - Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')
CVE-2020-9952
CWE-79 Medium
No
No
2.32.0-r0 18.09.2020 SB2020091802
SB2020092329
SB2020112408
and 9 more
#VU46802 - Use After Free
CVE-2020-9951
CWE-416 High
No
No
2.32.0-r0 18.09.2020 SB2020091802
SB2020112408
SB2020112602
and 14 more
#VU46801 - Type confusion
CVE-2020-9948
CWE-843 High
No
No
2.32.0-r0 18.09.2020 SB2020091802
SB2020112408
SB2020112602
and 14 more
#VU32970 - Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')
CVE-2020-9925
CWE-79 Medium
No
No
2.28.4-r0 02.08.2020 SB2020080202
SB2020080203
SB2020082501
and 11 more
#VU32969 - Permissions, Privileges, and Access Controls
CVE-2020-9915
CWE-264 Medium
No
No
2.28.4-r0 02.08.2020 SB2020080202
SB2020080203
SB2020082501
and 11 more
#VU32968 - Use After Free
CVE-2020-9895
CWE-416 High
No
No
2.28.4-r0 02.08.2020 SB2020080202
SB2020080203
SB2020082501
and 11 more
#VU32967 - Out-of-bounds read
CVE-2020-9894
CWE-125 Medium
No
No
2.28.4-r0 02.08.2020 SB2020080202
SB2020080203
SB2020082501
and 11 more
#VU32966 - Use After Free
CVE-2020-9893
CWE-416 High
No
No
2.28.4-r0 02.08.2020 SB2020080202
SB2020080203
SB2020082501
and 11 more
#VU32965 - Command injection
CVE-2020-9862
CWE-77 Medium
No
No
2.28.4-r0 02.08.2020 SB2020080202
SB2020080203
SB2020082501
and 11 more
#VU32964 - Improper input validation
CVE-2020-9850
CWE-20 High
Available
No
2.28.3-r0 02.08.2020 SB2020071482
SB2020072610
SB2020070947
and 10 more
#VU32963 - Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')
CVE-2020-9843
CWE-79 Medium
No
No
2.28.3-r0 02.08.2020 SB2020071482
SB2020072610
SB2020070946
and 10 more
#VU32962 - Memory corruption
CVE-2020-9807
CWE-119 High
No
No
2.28.3-r0 02.08.2020 SB2020071482
SB2020072610
SB2020070945
and 10 more
#VU32961 - Memory corruption
CVE-2020-9806
CWE-119 High
No
No
2.28.3-r0 02.08.2020 SB2020071482
SB2020072610
SB2020070944
and 10 more
#VU32960 - Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')
CVE-2020-9805
CWE-79 Medium
No
No
2.28.3-r0 02.08.2020 SB2020071482
SB2020072610
SB2020070943
and 14 more
#VU32959 - Memory corruption
CVE-2020-9803
CWE-119 High
No
No
2.28.3-r0, 2.28.4-r0 02.08.2020 SB2020071482
SB2020072610
SB2020070941
and 14 more
#VU32958 - Improper input validation
CVE-2020-9802
CWE-20 High
Available
No
2.28.3-r0, 2.28.4-r0 02.08.2020 SB2020071482
SB2020072610
SB2020070940
and 14 more
#VU32874 - Improper input validation
CVE-2020-13753
CWE-20 High
No
No
2.28.3-r0 14.07.2020 SB2020071482
SB2020072610
SB2020070942
and 11 more


Showing elements 1 - 20 out of 130