Known vulnerabilities in CentOS - page 9

Software: CentOS
Software CPE: cpe:2.3:o:centos_project:centos:*:*:*:*:*:*:*:*
Total vulnerabilities: 710
Public exploits: 54
Known exploited (KEV): 14
Highest CVSSv4 Score: 9.4

Breakdown by Severity Chart

Severity distribution of vulnerabilities affecting CentOS CentOS is affected by 710 known vulnerabilities: 4 critical, 183 high, 267 medium, 256 low Critical High Medium Low

Vulnerabilities (710)

Vulnerability CWE-ID CSH Severity Public Exploit KEV First fixed release Published Bulletins
#VU71473 - Improper Neutralization of Special Elements used in an LDAP Query ('LDAP Injection')
CVE-2022-4254
CWE-90 High
No
No
- 24.01.2023 SB2023012437
SB2023012440
SB2023012457
and 13 more
#VU71332 - Improper input validation
CVE-2023-22809
CWE-20 Low
Available
No
- 18.01.2023 SB20230118100
SB20230118104
SB20230118105
and 55 more
#VU71288 - Improper input validation
CVE-2023-21830
CWE-20 Medium
No
No
- 17.01.2023 SB2023011784
SB2023011785
SB2023012377
and 112 more
#VU71289 - Improper input validation
CVE-2023-21843
CWE-20 Low
No
No
- 17.01.2023 SB2023011784
SB2023011785
SB2023011882
and 146 more
#VU71236 - Untrusted Search Path
CVE-2022-4883
CWE-426 Low
No
No
- 17.01.2023 SB2023011734
SB2023011737
SB2023011806
and 38 more
#VU70438 - Use After Free
CVE-2022-4283
CWE-416 Low
No
No
- 20.12.2022 SB2022122002
SB2022122003
SB2022122004
and 39 more
#VU70437 - Out-of-bounds read
CVE-2022-46344
CWE-125 Low
No
No
- 20.12.2022 SB2022122002
SB2022122003
SB2022122004
and 39 more
#VU70436 - Use After Free
CVE-2022-46343
CWE-416 Low
No
No
- 20.12.2022 SB2022122002
SB2022122003
SB2022122004
and 39 more
#VU70435 - Use After Free
CVE-2022-46342
CWE-416 Low
No
No
- 20.12.2022 SB2022122002
SB2022122003
SB2022122004
and 39 more
#VU70434 - Out-of-bounds read
CVE-2022-46341
CWE-125 Low
No
No
- 20.12.2022 SB2022122002
SB2022122003
SB2022122004
and 39 more
#VU70433 - Stack-based buffer overflow
CVE-2022-46340
CWE-121 Low
No
No
- 20.12.2022 SB2022122002
SB2022122003
SB2022122004
and 47 more
#VU69321 - Use After Free
CVE-2022-45405
CWE-416 High
No
No
- 15.11.2022 SB2022111528
SB2022111529
SB2022111645
and 36 more
#VU69320 - User Interface (UI) Misrepresentation of Critical Information (Clickjacking, spoofing)
CVE-2022-45404
CWE-451 Medium
No
No
- 15.11.2022 SB2022111528
SB2022111529
SB2022111645
and 36 more
#VU69319 - Exposure of sensitive information to an unauthorized actor
CVE-2022-45403
CWE-200 Medium
No
No
- 15.11.2022 SB2022111528
SB2022111529
SB2022111645
and 36 more
#VU68953 - Improper Restriction of XML External Entity Reference ('XXE')
CVE-2022-2414
CWE-611 Medium
Available
No
- 02.11.2022 SB2022110266
SB2022110269
SB2022110841
and 12 more
#VU67811 - Out-of-bounds write
CVE-2022-2964
CWE-787 Low
No
No
- 03.10.2022 SB2022100329
SB2022100331
SB2022102079
and 73 more
#VU67545 - Resource Management Errors
CVE-2022-2795
CWE-399 Medium
No
No
- 21.09.2022 SB2022092131
SB2022092140
SB2022092143
and 71 more
#VU61566 - Exposure of sensitive information to an unauthorized actor
CVE-2021-26401
CWE-200 Low
No
No
- 23.03.2022 SB2022032309
SB2022051728
SB2022051831
and 30 more
#VU61422 - Reliance on Reverse DNS Resolution for a Security-Critical Action
CVE-2021-25220
CWE-350 Medium
No
No
- 17.03.2022 SB2022031701
SB2022031719
SB2022031725
and 57 more
#VU9883 - Exposure of sensitive information to an unauthorized actor
CVE-2017-5715
CWE-200 Low
Available
No
- 09.01.2018 SB2018010416
SB2018010502
SB2018011101
and 151 more


Showing elements 161 - 180 out of 710