Known vulnerabilities in Linaro Automated Validation Architecture (LAVA)
Vendor:
Linaro Limited
Software CPE:
cpe:2.3:a:linaro:lava:*:*:*:*:*:*:*:*
Website:
https://www.lavasoftware.org/
Total vulnerabilities:
3
Public exploits:
0
Known exploited (KEV):
0
Highest CVSSv4 Score:
9.3
Breakdown by Severity Chart
2023.06
2023.05.1
2023.05
2023.03
2023.02
2023.01
2022.11.1
2022.11
2022.10
2022.08
2022.06
2022.05
2022.04
2022.03
2022.02
2022.01.3
2022.01.2
2022.01.1
2022.01
2021.11
2021.10
2021.09
2021.08
2021.05
2021.04
2021.03
2021.01
2020.12
2020.10
2020.09
2020.08
2020.07
2020.06
2020.05
2020.04
2020.02
2020.01
2019.12
2019.11
2019.10
2019.09
2019.08
2019.07
2019.06
2019.05
2019.04
2019.03
2019.01
2018.11
2018.10
2018.7
2018.5
2018.4
2018.2
2018.1
2017.12
2017.11
2017.10
2017.9
2017.7
2017.6
2017.5
2017.4
2017.2
2017.1
2016.12
2016.11
2016.9
2016.8
2016.6
2016.4
2016.3
2016.2
2015.12
2015.11
2015.9
2015.8.1
2015.8
2015.07
2015.06
2015.05.4
2015.05.3
2015.05.2
2015.05.1
2015.05
2015.04.2
2015.04.1
2015.04
2015.03.3
2015.03.2
2015.03.1
2015.03
2015.01.1
2015.01
2014.12.1
2014.12
2014.09.3
2014.09.2
2014.09.1
2014.09
2014.08.2
2014.08.1
2014.08
2014.07.2
2014.07.1
2014.07
2014.06.24
0.1.6
2014.06.22
2014.06.2
2014.06.1
2014.06
2014.05
2014.04
2014.03
2014.02
2014.01
2013.12.5
2013.12.4
2013.12.3
2013.12.2
2013.12.1
2013.12
Vulnerabilities (3)
| Vulnerability | CWE-ID | CSH Severity | Public Exploit | KEV | First fixed release | Published | Bulletins |
|---|---|---|---|---|---|---|---|
| #VU71186 - Improper Control of Generation of Code ('Code Injection') CVE-2022-45132 |
CWE-94 | High | 2022.11.1 | 16.01.2023 |
SB2023011620 |
||
| #VU71184 - Improper Restriction of Recursive Entity References in DTDs ('XML Entity Expansion') CVE-2022-44641 |
CWE-776 | Medium | 2022.11 | 16.01.2023 |
SB2023011620 SB2023011631 |
||
| #VU71183 - Improper Control of Generation of Code ('Code Injection') CVE-2022-42902 |
CWE-94 | High | 2022.10 | 16.01.2023 |
SB2023011619 SB2023011630 |