Known vulnerabilities in Cinder

Vendor: Openstack
Software: Cinder
Software CPE: cpe:2.3:a:openstack:cinder:*:*:*:*:*:*:*:*
Total vulnerabilities: 6
Public exploits: 0
Known exploited (KEV): 0
Highest CVSSv4 Score: 7.2

Breakdown by Severity Chart

Severity distribution of vulnerabilities affecting Cinder Cinder is affected by 6 known vulnerabilities: 1 medium, 5 low Critical High Medium Low

Vulnerabilities (6)

Vulnerability CWE-ID CSH Severity Public Exploit KEV First fixed release Published Bulletins
#VU96373 - Exposure of sensitive information to an unauthorized actor
CVE-2024-32498
CWE-200 Low
No
No
22.2.0, 23.2.0, 24.1.0 21.08.2024 SB20240821106
SB20240821107
SB20240821108
and 8 more
#VU76039 - Permissions, Privileges, and Access Controls
CVE-2023-2088
CWE-264 Low
No
No
- 11.05.2023 SB2023051132
SB2023051142
SB2023051143
and 7 more
#VU71714 - External Control of File Name or Path
CVE-2022-47951
CWE-73 Medium
No
No
21.1.0 31.01.2023 SB2023013129
SB2023013130
SB2023013131
and 15 more
#VU15931 - Exposure of sensitive information to an unauthorized actor
CVE-2017-15139
CWE-200 Low
No
No
- 16.11.2018 SB2017062120
SB2018111902
SB2019043007
#VU41231 - Exposure of sensitive information to an unauthorized actor
CVE-2014-3641
CWE-200 Low
No
No
- 08.10.2014 SB2014100805
SB2014100605
#VU42564 - Exposure of sensitive information to an unauthorized actor
CVE-2013-4183
CWE-200 Low
No
No
- 16.09.2013 SB2013091609