Known vulnerabilities in resource-agents-paf

Vendor: OpenAnolis
Software CPE: cpe:2.3:o:openanolis:resource-agents-paf:*:*:*:*:*:anolis_os:*:*
Total vulnerabilities: 11
Public exploits: 0
Known exploited (KEV): 0
Highest CVSSv4 Score: 9.2

Breakdown by Severity Chart

Severity distribution of vulnerabilities affecting resource-agents-paf resource-agents-paf is affected by 11 known vulnerabilities: 1 high, 8 medium, 2 low Critical High Medium Low

Vulnerabilities (11)

Vulnerability CWE-ID CSH Severity Public Exploit KEV First fixed release Published Bulletins
#VU130907 - Exposure of sensitive information to an unauthorized actor
CVE-2026-44431
CWE-200 Medium
No
No
4.9.0-54 09.05.2026 SB20260509126
SB2026051588
SB2026051589
and 36 more
#VU128152 - Uncontrolled Recursion
CVE-2026-30922
CWE-674 Medium
No
No
4.9.0-54 27.04.2026 SB20260427104
SB20260427114
SB20260427115
and 28 more
#VU122270 - Resource exhaustion
CVE-2026-23490
CWE-400 Medium
No
No
4.9.0-54 03.02.2026 SB2026020365
SB2026020366
SB2026020370
and 52 more
#VU121072 - Improper Handling of Highly Compressed Data (Data Amplification)
CVE-2026-21441
CWE-409 Medium
No
No
4.9.0-54 07.01.2026 SB2026010780
SB2026011269
SB2026011328
and 89 more
#VU119231 - Resource exhaustion
CVE-2025-66471
CWE-400 Medium
No
No
4.9.0-54 05.12.2025 SB2025120581
SB2025121208
SB2026011313
and 88 more
#VU119230 - Allocation of Resources Without Limits or Throttling
CVE-2025-66418
CWE-770 Medium
No
No
4.9.0-54 05.12.2025 SB2025120581
SB2025121208
SB2025121938
and 93 more
#VU111716 - Insufficiently Protected Credentials
CVE-2024-47081
CWE-522 Medium
No
No
4.9.0-54 21.06.2025 SB2025062111
SB2025062112
SB2025062113
and 95 more
#VU95339 - Improper Control of Generation of Code ('Code Injection')
CVE-2024-6345
CWE-94 High
No
No
4.9.0-54 05.08.2024 SB2024080590
SB2024080593
SB2024080594
and 160 more
#VU92262 - Exposure of sensitive information to an unauthorized actor
CVE-2024-37891
CWE-200 Low
No
No
4.9.0-54 19.06.2024 SB2024061955
SB20240625146
SB2024062605
and 194 more
#VU85747 - Observable discrepancy
CVE-2023-52323
CWE-203 Low
No
No
4.9.0-54 24.01.2024 SB2024012414
SB2024012416
SB2024022053
and 24 more
#VU82978 - Exposure of sensitive information to an unauthorized actor
CVE-2023-45803
CWE-200 Medium
No
No
4.9.0-54 10.11.2023 SB2023111038
SB2023111040
SB2023111048
and 122 more