Known vulnerabilities in libxstream-java (Debian package)
Vendor:
Debian
Software:
libxstream-java (Debian package)
Software CPE:
cpe:2.3:o:debian:libxstream-java_debian_package:*:*:*:*:*:debian_linux:*:*
Website:
https://www.debian.org/
Total vulnerabilities:
4
Public exploits:
4
Known exploited (KEV):
0
Highest CVSSv4 Score:
8.8
Breakdown by Severity Chart
1.4.9-2+deb9u1
1.4.11.1-1+deb9u1
1.4.11.1-1+deb9u2
1.4.11.1-1+deb9u3
1.4.11.1-1+deb9u4
1.4.11.1-1+deb9u5
1.4.11.1-1+deb10u4
1.4.15-2
1.4.15-3
1.4.15-3+deb11u3
1.4.15-4
1.4.18-1
1.4.18-2
1.4.19-1
1.4.20-1
1.4.20-1+deb12u1
1.4.20-2
1.4.21-1
1.4.15-3+deb11u2
1.4.15-3+deb11u1
1.4.11.1-1+deb10u3
1.4.11.1-1+deb10u2
1.4.15
1.4.15-1
1.4.11.1-1+deb10u1
1.4.14
1.4.14-1
1.4.11.1
1.4.9
1.4.7
1.4.11.1-2
1.4.11-1
1.4.11.1-1
1.4.2-1+deb7u1
1.4.2-1+deb7u2
1.4.7-2+deb8u1
1.4.7-2+deb8u2
1.2.2-1
1.3-1
1.3-2
1.3-3
1.3-4
1.3.1-1
1.3.1-2
1.3.1-3
1.3.1-4
1.3.1-5
1.3.1-6
1.3.1-7
1.4.2-1
1.4.4-1
1.4.7-1
1.4.7-2
1.4.8-1
1.4.9-1
1.4.9-2
1.4.10-1
Vulnerabilities (4)
| Vulnerability | CWE-ID | CSH Severity | Public Exploit | KEV | First fixed release | Published | Bulletins |
|---|---|---|---|---|---|---|---|
| #VU70527 - Improper input validation CVE-2022-41966 |
CWE-20 | Medium | 1.4.15-3+deb11u2 | 28.12.2022 |
SB2022122822 SB2023011211 SB2023020616 and 53 more |
||
| #VU49040 - Improper input validation CVE-2020-26259 |
CWE-20 | Medium | 1.4.11.1-1+deb10u2 | 16.12.2020 |
SB2020121623 SB2021010802 SB2021062144 and 17 more |
||
| #VU49041 - Server-Side Request Forgery (SSRF) CVE-2020-26258 |
CWE-918 | Medium | 1.4.11.1-1+deb10u2 | 16.12.2020 |
SB2020121623 SB2021010802 SB2021062144 and 16 more |
||
| #VU49039 - Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection') CVE-2020-26217 |
CWE-78 | Medium | 1.4.11.1-1+deb10u1 | 16.11.2020 |
SB2020111622 SB2020121624 SB20210120118 and 14 more |