Known vulnerabilities in Fedora 37 - page 9

Software: Fedora
Version: 37
Software CPE: cpe:2.3:o:fedoraproject:fedora:*:*:*:*:*:*:*:*
Total vulnerabilities: 1280
Public exploits: 52
Known exploited (KEV): 23
Highest CVSSv4 Score: 9.4

Vulnerabilities by Severity

Severity distribution of vulnerabilities affecting Fedora version 37 Fedora 37 is affected by 1280 vulnerabilities: 21 critical, 333 high, 604 medium, 322 low Critical High Medium Low

Vulnerabilities (1280)

Vulnerability CWE-ID CSH Severity Public Exploit KEV First fixed release Published Bulletins
#VU81451 - Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection')
CVE-2023-46316
CWE-78 Medium
No
No
- 04.10.2023 SB2023100421
SB2023100425
SB2023100426
and 17 more
#VU81450 - Divide By Zero
CVE-2022-0856
CWE-369 Medium
No
No
- 03.10.2023 SB2023100366
SB2023100407
SB2023100414
and 7 more
#VU81449 - Improper Verification of Cryptographic Signature
CVE-2023-42811
CWE-347 Low
No
No
- 03.10.2023 SB2023100365
SB2023100409
SB2023100410
and 4 more
#VU81447 - Use After Free
CVE-2023-4806
CWE-416 Medium
No
No
- 03.10.2023 SB2023100363
SB2023100402
SB2023100418
and 97 more
#VU81437 - Memory corruption
CVE-2023-4911
CWE-119 Low
Public exploit available
Exploited
- 03.10.2023 SB2023100343
SB2023100345
SB2023100402
and 94 more
#VU81322 - Exposure of sensitive information to an unauthorized actor
CVE-2023-43804
CWE-200 Low
Public exploit available
No
- 02.10.2023 SB2023100251
SB2023100259
SB2023100260
and 112 more
#VU81097 - Out-of-bounds read
CVE-2023-4527
CWE-125 Medium
No
No
- 25.09.2023 SB2023092525
SB2023100345
SB2023100402
and 79 more
#VU80508 - Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')
CVE-2023-39511
CWE-79 Low
No
No
- 06.09.2023 SB2023090541
SB2023100429
SB2023100430
and 4 more
#VU80438 - Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')
CVE-2023-39516
CWE-79 Low
No
No
- 05.09.2023 SB2023090541
SB2023100429
SB2023100430
and 5 more
#VU80437 - Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')
CVE-2023-39515
CWE-79 Low
No
No
- 05.09.2023 SB2023090541
SB2023100429
SB2023100430
and 5 more
#VU80436 - Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')
CVE-2023-39514
CWE-79 Low
No
No
- 05.09.2023 SB2023090541
SB2023100429
SB2023100430
and 5 more
#VU80435 - Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')
CVE-2023-39513
CWE-79 Low
No
No
- 05.09.2023 SB2023090541
SB2023100429
SB2023100430
and 5 more
#VU80434 - Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')
CVE-2023-39512
CWE-79 Low
No
No
- 05.09.2023 SB2023090541
SB2023100429
SB2023100430
and 5 more
#VU80433 - Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection')
CVE-2023-39365
CWE-89 Medium
No
No
- 05.09.2023 SB2023090541
SB2023100429
SB2023100430
and 5 more
#VU80432 - Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')
CVE-2023-39510
CWE-79 Low
No
No
- 05.09.2023 SB2023090541
SB2023100429
SB2023100430
and 5 more
#VU80431 - Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')
CVE-2023-39366
CWE-79 Low
No
No
- 05.09.2023 SB2023090541
SB2023100429
SB2023100430
and 5 more
#VU80429 - Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection')
CVE-2023-39362
CWE-78 Medium
Public exploit available
No
- 05.09.2023 SB2023090541
SB2023100429
SB2023100430
and 6 more
#VU80426 - URL Redirection to Untrusted Site ('Open Redirect')
CVE-2023-39364
CWE-601 Low
No
No
- 05.09.2023 SB2023090541
SB2023100429
SB2023100430
and 6 more
#VU79385 - Improper input validation
CVE-2023-22840
CWE-20 Low
No
No
- 11.08.2023 SB2023081109
SB2023100320
SB2023100321
and 2 more
#VU79384 - Out-of-bounds read
CVE-2023-22338
CWE-125 Low
No
No
- 11.08.2023 SB2023081109
SB2023100320
SB2023100321
and 2 more


Showing elements 161 - 180 out of 1280