Known vulnerabilities in v8-12.4-devel
Vendor:
OpenAnolis
Software:
v8-12.4-devel
Software CPE:
cpe:2.3:o:openanolis:v8-12_4-devel:*:*:*:*:*:anolis_os:*:*
Website:
https://openanolis.cn/
Total vulnerabilities:
27
Public exploits:
0
Known exploited (KEV):
0
Highest CVSSv4 Score:
8.8
Breakdown by Severity Chart
Vulnerabilities (27)
| Vulnerability | CWE-ID | CSH Severity | Public Exploit | KEV | First fixed release | Published | Bulletins |
|---|---|---|---|---|---|---|---|
| #VU140038 - Resource exhaustion CVE-2026-56846 |
CWE-400 | Medium | 12.4.254.21-1.22.23.2.1 | 29.07.2026 |
SB2026072975 SB2026083143 SB2026083144 and 11 more |
||
| #VU140039 - Use After Free CVE-2026-56848 |
CWE-416 | Medium | 12.4.254.21-1.22.23.2.1 | 29.07.2026 |
SB2026072975 SB2026083143 SB2026083144 and 11 more |
||
| #VU140040 - Improper Access Control CVE-2026-58043 |
CWE-284 | Low | 12.4.254.21-1.22.23.2.1 | 29.07.2026 |
SB2026072975 SB2026083143 SB2026083144 and 9 more |
||
| #VU135014 - Integer overflow CVE-2026-48933 |
CWE-190 | Medium | 12.4.254.21-1.22.23.0.1 | 22.06.2026 |
SB2026062248 SB20260728134 SB20260831117 and 10 more |
||
| #VU135015 - Improper input validation CVE-2026-48618 |
CWE-20 | High | 12.4.254.21-1.22.23.0.1 | 22.06.2026 |
SB2026062248 SB20260728134 SB20260831117 and 11 more |
||
| #VU135016 - Information Exposure Through Log Files CVE-2026-48615 |
CWE-532 | Low | 12.4.254.21-1.22.23.0.1 | 22.06.2026 |
SB2026062248 SB20260728134 SB20260831117 and 6 more |
||
| #VU135017 - Improper Access Control CVE-2026-48617 |
CWE-284 | Low | 12.4.254.21-1.22.23.0.1 | 22.06.2026 |
SB2026062248 SB20260728134 SB2026092603 |
||
| #VU135018 - Resource exhaustion CVE-2026-48619 |
CWE-400 | Medium | 12.4.254.21-1.22.23.0.1 | 22.06.2026 |
SB2026062248 SB20260728134 SB20260831117 and 9 more |
||
| #VU135019 - Improper Resource Shutdown or Release CVE-2026-48937 |
CWE-404 | Medium | 12.4.254.21-1.22.23.0.1 | 22.06.2026 |
SB2026062248 SB20260728134 SB20260921174 and 3 more |
||
| #VU135020 - Improper Validation of Certificate with Host Mismatch CVE-2026-48928 |
CWE-297 | Medium | 12.4.254.21-1.22.23.0.1 | 22.06.2026 |
SB2026062248 SB20260728134 SB20260831117 and 9 more |
||
| #VU135021 - Improper Null Termination CVE-2026-48930 |
CWE-170 | Medium | 12.4.254.21-1.22.23.0.1 | 22.06.2026 |
SB2026062248 SB20260728134 SB20260831117 and 10 more |
||
| #VU135022 - Improper Certificate Validation CVE-2026-48934 |
CWE-295 | Medium | 12.4.254.21-1.22.23.0.1 | 22.06.2026 |
SB2026062248 SB20260728134 SB20260831117 and 9 more |
||
| #VU135023 - Improper Access Control CVE-2026-48935 |
CWE-284 | Low | 12.4.254.21-1.22.23.0.1 | 22.06.2026 |
SB2026062248 SB20260728134 SB20260831117 and 8 more |
||
| #VU135025 - Time-of-check Time-of-use (TOCTOU) Race Condition CVE-2026-48931 |
CWE-367 | Medium | 12.4.254.21-1.22.23.0.1 | 22.06.2026 |
SB2026062248 SB20260728134 SB20260921174 and 3 more |
||
| #VU127580 - Allocation of Resources Without Limits or Throttling CVE-2026-2581 |
CWE-770 | Medium | 12.4.254.21-1.22.23.0.1 | 24.04.2026 |
SB20260424137 SB20260424153 SB20260424154 and 3 more |
||
| #VU127579 - Improper Validation of Specified Quantity in Input CVE-2026-1528 |
CWE-1284 | Medium | 12.4.254.21-1.22.23.0.1 | 24.04.2026 |
SB20260424137 SB20260424148 SB20260424149 and 13 more |
||
| #VU126389 - Uncaught Exception CVE-2025-59466 |
CWE-248 | Medium | 12.4.254.21-1.22.22.0.1 | 17.04.2026 |
SB2026041708 SB2026041712 SB2026041714 and 17 more |
||
| #VU124549 - Improper Access Control CVE-2026-21716 |
CWE-284 | Low | 12.4.254.21-1.22.22.0.5 | 25.03.2026 |
SB20260325154 SB2026032902 SB20260415182 and 18 more |
||
| #VU124541 - DEPRECATED: Often Misused: Path Manipulation CVE-2026-21637 |
CWE-249 | High | 12.4.254.21-1.22.22.0.1 | 25.03.2026 |
SB2026032902 SB20260415182 SB20260415187 and 29 more |
||
| #VU93881 - Permissions, Privileges, and Access Controls CVE-2024-36137 |
CWE-264 | Low | 12.4.254.21-1.22.22.0.5 | 09.07.2024 |
SB2024070937 SB20240717120 SB2024072232 and 23 more |
Showing elements 1 - 20 out of 27