Known vulnerabilities in mod_auth_openidc
Vendor:
openEuler
Software:
mod_auth_openidc
Software CPE:
cpe:2.3:o:openeuler:mod_auth_openidc:*:*:*:*:*:openeuler:*:*
Website:
https://www.openeuler.org/
Total vulnerabilities:
5
Public exploits:
0
Known exploited (KEV):
0
Highest CVSSv4 Score:
8.8
Breakdown by Severity Chart
Vulnerabilities (5)
| Vulnerability | CWE-ID | CSH Severity | Public Exploit | KEV | First fixed release | Published | Bulletins |
|---|---|---|---|---|---|---|---|
| #VU136688 - Out-of-bounds read CVE-2026-54789 |
CWE-125 | Medium | 2.4.19.4-1 | 02.07.2026 |
SB2026070228 SB2026071939 SB2026071940 and 2 more |
||
| #VU107147 - Exposure of sensitive information to an unauthorized actor CVE-2025-31492 |
CWE-200 | Medium | 2.4.16.11-1 | 08.04.2025 |
SB2025040831 SB2025040833 SB2025040834 and 22 more |
||
| #VU86531 - Resource exhaustion CVE-2024-24814 |
CWE-400 | Medium | 2.4.15.3-1 | 15.02.2024 |
SB2024021511 SB2024022245 SB2024030531 and 9 more |
||
| #VU74352 - NULL Pointer Dereference CVE-2023-28625 |
CWE-476 | Medium | 2.4.13.2-1 | 04.04.2023 |
SB2023040417 SB2023041466 SB2023051853 and 7 more |
||
| #VU70325 - URL Redirection to Untrusted Site ('Open Redirect') CVE-2022-23527 |
CWE-601 | Low | 2.4.13.2-1 | 14.12.2022 |
SB2022121429 SB2023013118 SB2023081884 and 9 more |