Known vulnerabilities in IBM Observability with Instana - page 9

Software CPE: cpe:2.3:a:ibm_corporation:ibm_observability_with_instana:*:*:*:*:*:*:*:*
Total vulnerabilities: 448
Public exploits: 35
Known exploited (KEV): 4
Highest CVSSv4 Score: 9.4

Breakdown by Severity Chart

Severity distribution of vulnerabilities affecting IBM Observability with Instana IBM Observability with Instana is affected by 448 known vulnerabilities: 3 critical, 70 high, 287 medium, 88 low Critical High Medium Low

Vulnerabilities (448)

Vulnerability CWE-ID CSH Severity Public Exploit KEV First fixed release Published Bulletins
#VU109836 - Heap-based Buffer Overflow
CVE-2016-1840
CWE-122 Medium
No
No
1.0.295 27.05.2025 SB2016052010
SB2025052723
SB2016120821
#VU109834 - Out-of-bounds read
CVE-2025-32906
CWE-125 Medium
No
No
1.0.295 27.05.2025 SB2025052715
SB2025052723
SB2025052994
and 37 more
#VU109833 - Interpretation Conflict
CVE-2025-32908
CWE-436 High
No
No
1.0.295 27.05.2025 SB2025052714
SB2025052723
SB20250529121
and 6 more
#VU108091 - Improperly Controlled Modification of Object Prototype Attributes (\'Prototype Pollution\')
CVE-2025-25977
CWE-1321 High
No
No
1.0.293 30.04.2025 SB2025043032
SB2025043033
SB2025073179
and 2 more
#VU108090 - NULL Pointer Dereference
CVE-2023-5590
CWE-476 High
No
No
1.0.293 30.04.2025 SB2023101501
SB2025043033
SB2025073178
and 1 more
#VU107489 - Improper Control of Generation of Code ('Code Injection')
CVE-2024-53382
CWE-94 Low
No
No
1.0.293 16.04.2025 SB2025041637
SB2025041638
SB2025043033
and 8 more
#VU106881 - Type confusion
CVE-2025-24213
CWE-843 High
No
No
1.0.295 02.04.2025 SB20250402143
SB2025040103
SB20250402145
and 20 more
#VU106009 - Resource exhaustion
CVE-2025-29907
CWE-400 High
No
No
1.0.293 25.03.2025 SB2025032525
SB2025043033
SB2025070353
and 1 more
#VU105946 - Use After Free
CVE-2025-24855
CWE-416 High
No
No
1.0.295 21.03.2025 SB2025031964
SB2025032154
SB2025032155
and 63 more
#VU105783 - Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')
CVE-2025-26791
CWE-79 Low
No
No
1.0.293 17.03.2025 SB2025031740
SB2025031741
SB2025031771
and 35 more
#VU105452 - Server-Side Request Forgery (SSRF)
CVE-2025-27152
CWE-918 Medium
Available
No
1.0.293 07.03.2025 SB2025030777
SB2025031918
SB2025032417
and 42 more
#VU103970 - Improper input validation
CVE-2025-1094
CWE-20 Critical
Available
Exploited
1.0.293 14.02.2025 SB2025021408
SB2025022038
SB2025022039
and 78 more
#VU103748 - Memory corruption
CVE-2024-54543
CWE-119 High
No
No
1.0.293 10.02.2025 SB2025021068
SB2025021346
SB2025021347
and 19 more
#VU103436 - Resource exhaustion
CVE-2024-11187
CWE-400 Medium
No
No
1.0.293 29.01.2025 SB2025012962
SB2025012964
SB2025012965
and 83 more
#VU103354 - Improper input validation
CVE-2025-24162
CWE-20 Low
No
No
1.0.293 27.01.2025 SB2025012782
SB2025012783
SB2025012784
and 20 more
#VU98518 - Resource exhaustion
CVE-2024-9823
CWE-400 Medium
No
No
1.0.293, 1.0.309 14.10.2024 SB20241014112
SB2024120637
SB2025011709
and 14 more
#VU98025 - Resource exhaustion
CVE-2024-47554
CWE-400 Medium
No
No
1.0.292 03.10.2024 SB2024100352
SB2024100421
SB2024101007
and 132 more
#VU62002 - Improper input validation
CVE-2022-1271
CWE-20 High
No
No
1.0.295 08.04.2022 SB2022040803
SB2022040804
SB2022040822
and 134 more
#VU1914 - Use of a Broken or Risky Cryptographic Algorithm
CVE-2016-0800
CWE-327 Medium
Available
No
1.0.295 21.12.2016 SB2016030101
SB2016030102
SB2023041307
and 13 more
#VU638 - Buffer overflow
CVE-2016-2108
CWE-120 High
No
No
1.0.295 23.09.2016 SB2018011609
SB2016051804
SB2016053102
and 28 more


Showing elements 161 - 180 out of 448