Known vulnerabilities in Red Hat Advanced Cluster Management for Kubernetes

Software CPE: cpe:2.3:a:red_hat:advanced_cluster_management_for_kubernets:*:*:*:*:*:*:*:*
Total vulnerabilities: 718
Public exploits: 70
Known exploited (KEV): 18
Highest CVSSv4 Score: 9.4

Breakdown by Severity Chart

Severity distribution of vulnerabilities affecting Red Hat Advanced Cluster Management for Kubernetes Red Hat Advanced Cluster Management for Kubernetes is affected by 718 known vulnerabilities: 1 critical, 134 high, 307 medium, 276 low Critical High Medium Low

Vulnerabilities (718)

Vulnerability CWE-ID CSH Severity Public Exploit KEV First fixed release Published Bulletins
#VU118221 - Incorrect Default Permissions
CVE-2025-7195
CWE-276 Low
No
No
2.11.9, 2.13.5 10.11.2025 SB2025111053
SB2025120350
SB2025120351
and 8 more
#VU118190 - Resource exhaustion
CVE-2025-58183
CWE-400 Medium
No
No
2.13.5, 2.15.1 07.11.2025 SB2025110705
SB2025110725
SB2025110726
and 177 more
#VU117441 - Improper input validation
CVE-2025-53547
CWE-20 Low
No
No
2.12.5, 2.13.4 22.10.2025 SB2025102218
SB2025102244
SB2025102245
and 4 more
#VU116130 - Improper input validation
CVE-2025-9288
CWE-20 Medium
No
No
2.11.9, 2.12.5, 2.13.5 26.09.2025 SB2025092616
SB2025092618
SB2025092620
and 17 more
#VU115762 - Improper input validation
CVE-2025-9287
CWE-20 Medium
No
No
2.11.9, 2.12.5, 2.13.5 18.09.2025 SB2025091827
SB2025091828
SB2025091830
and 12 more
#VU115167 - Allocation of Resources Without Limits or Throttling
CVE-2025-58754
CWE-770 Medium
Available
No
2.13.5 12.09.2025 SB2025091204
SB2025100104
SB2025100912
and 51 more
#VU114080 - Concurrent Execution using Shared Resource with Improper Synchronization ('Race Condition')
CVE-2025-47907
CWE-362 Low
No
No
2.13.5 14.08.2025 SB2025081423
SB2025081424
SB2025081425
and 50 more
#VU113173 - Use of Insufficiently Random Values
CVE-2025-7783
CWE-330 Medium
Available
No
2.11.9, 2.12.5, 2.13.4 23.07.2025 SB2025072332
SB2025072333
SB2025081876
and 62 more
#VU112995 - NULL Pointer Dereference
CVE-2025-6395
CWE-476 Medium
No
No
2.12.5 16.07.2025 SB20250716122
SB20250716124
SB20250716141
and 70 more
#VU112994 - NULL Pointer Dereference
CVE-2025-32990
CWE-476 Low
No
No
2.12.5 16.07.2025 SB20250716122
SB20250716123
SB20250716124
and 79 more
#VU112993 - Double Free
CVE-2025-32988
CWE-415 Medium
No
No
2.12.5 16.07.2025 SB20250716122
SB20250716124
SB20250716141
and 73 more
#VU112992 - Heap-based Buffer Overflow
CVE-2025-32989
CWE-122 High
No
No
2.12.5 16.07.2025 SB20250716122
SB20250716124
SB20250716141
and 46 more
#VU112440 - Use of a Broken or Risky Cryptographic Algorithm
CVE-2025-3576
CWE-327 Medium
No
No
2.13.4 07.07.2025 SB2025070764
SB2025070769
SB2025070770
and 29 more
#VU111716 - Insufficiently Protected Credentials
CVE-2024-47081
CWE-522 Medium
No
No
2.12.5, 2.13.4 21.06.2025 SB2025062111
SB2025062112
SB2025062113
and 95 more
#VU105450 - Resource exhaustion
CVE-2025-27144
CWE-400 Medium
No
No
2.13.5 07.03.2025 SB2025030735
SB2025030736
SB2025030737
and 80 more
#VU103932 - Missing release of memory after effective lifetime
CVE-2025-22866
CWE-401 Low
No
No
2.11.7, 2.13.4 12.02.2025 SB20250212100
SB20250212101
SB20250212102
and 27 more
#VU102870 - Improper Encoding or Escaping of Output
CVE-2024-50349
CWE-116 Low
No
No
2.13.4 16.01.2025 SB2025011640
SB2025011641
SB2025011643
and 21 more
#VU102869 - Improper Encoding or Escaping of Output
CVE-2024-52006
CWE-116 Low
No
No
2.13.4 16.01.2025 SB2025011640
SB2025011641
SB2025011643
and 21 more
#VU100566 - Off-by-one Error
CVE-2024-52533
CWE-193 High
No
No
2.13.4 15.11.2024 SB20241115147
SB20241115148
SB20241115149
and 71 more
#VU64274 - Out-of-bounds read
CVE-2022-29458
CWE-125 Medium
No
No
2.12.5, 2.13.4 14.06.2022 SB2022061418
SB2022061419
SB2022072842
and 29 more


Showing elements 1 - 20 out of 718