Known vulnerabilities in Red Hat Advanced Cluster Management for Kubernetes - page 26

Software CPE: cpe:2.3:a:red_hat:advanced_cluster_management_for_kubernets:*:*:*:*:*:*:*:*
Total vulnerabilities: 718
Public exploits: 70
Known exploited (KEV): 18
Highest CVSSv4 Score: 9.4

Breakdown by Severity Chart

Severity distribution of vulnerabilities affecting Red Hat Advanced Cluster Management for Kubernetes Red Hat Advanced Cluster Management for Kubernetes is affected by 718 known vulnerabilities: 1 critical, 134 high, 307 medium, 276 low Critical High Medium Low

Vulnerabilities (718)

Vulnerability CWE-ID CSH Severity Public Exploit KEV First fixed release Published Bulletins
#VU70543 - Improper Access Control
CVE-2021-23555
CWE-284 High
No
No
2.4.4 30.12.2022 SB2022123006
SB2022123008
SB2022030933
and 1 more
#VU69644 - Improper input validation
CVE-2022-24723
CWE-20 Medium
No
No
2.3.10, 2.4.4 28.11.2022 SB2022112847
SB2022112850
SB2023020130
and 2 more
#VU66815 - Authorization Bypass Through User-Controlled Key
CVE-2022-0613
CWE-639 Medium
No
No
2.3.10, 2.4.4 29.08.2022 SB2022082938
SB2022082939
SB2022082940
and 5 more
#VU66758 - Improper Verification of Cryptographic Signature
CVE-2022-24772
CWE-347 Medium
No
No
2.4.4 25.08.2022 SB2022082510
SB2022082512
SB2022100554
and 8 more
#VU66071 - Incorrect Authorization
CVE-2022-1365
CWE-863 Low
No
No
2.4.4 03.08.2022 SB2022080322
SB2022080325
SB2022100554
and 3 more
#VU65749 - Improper Verification of Cryptographic Signature
CVE-2022-24771
CWE-347 Medium
No
No
2.4.4 25.07.2022 SB2022072517
SB2022082512
SB2022100554
and 8 more
#VU64699 - Incorrect Authorization
CVE-2022-24778
CWE-863 Medium
No
No
2.4.3, 2.5.0 27.06.2022 SB2022062828
SB2022120642
SB2022121324
and 10 more
#VU64694 - Improper Privilege Management
CVE-2021-43858
CWE-269 High
Available
No
2.5.0 27.06.2022 SB2021122728
SB2022060926
#VU64034 - Improper Control of Generation of Code ('Code Injection')
CVE-2021-3918
CWE-94 High
No
No
2.3.6, 2.5.0 07.06.2022 SB2021111302
SB2022060836
SB2022071504
and 45 more
#VU63923 - Improper Access Control
CVE-2021-4037
CWE-284 Low
No
No
2.3.11, 2.4.5, 2.5.0 02.06.2022 SB2022060205
SB2022060206
SB2022062928
and 37 more
#VU63920 - Exposure of sensitive information to an unauthorized actor
CVE-2021-3773
CWE-200 Medium
Available
No
2.3.11, 2.4.5, 2.5.0 02.06.2022 SB2022062928
SB2022062931
SB2022070643
and 7 more
#VU63836 - Missing release of memory after effective lifetime
CVE-2021-4002
CWE-401 Low
No
No
2.3.11, 2.4.5, 2.5.0 31.05.2022 SB2022010532
SB2022010635
SB2022010636
and 24 more
#VU63835 - Insufficient Verification of Data Authenticity
CVE-2021-3772
CWE-345 Medium
No
No
2.3.11, 2.4.5, 2.5.0 31.05.2022 SB2022060822
SB2022060828
SB2022062928
and 32 more
#VU62039 - Use of a Broken or Risky Cryptographic Algorithm
CVE-2022-27191
CWE-327 Medium
No
No
2.4.3, 2.5.0 10.04.2022 SB2022041004
SB2022041406
SB2022081226
and 91 more
#VU61668 - Exposure of sensitive information to an unauthorized actor
CVE-2022-0536
CWE-200 Low
No
No
2.3.8, 2.3.10, 2.3.11, 2.4.3, 2.4.4 28.03.2022 SB2022032841
SB2022032843
SB2022042561
and 27 more
#VU61471 - Exposure of sensitive information to an unauthorized actor
CVE-2022-0235
CWE-200 Low
No
No
2.3.8, 2.3.10, 2.3.11, 2.4.3, 2.4.4, 2.5.0 20.03.2022 SB2022032001
SB2022032002
SB2022032009
and 35 more
#VU61391 - Loop with Unreachable Exit Condition ('Infinite Loop')
CVE-2022-0778
CWE-835 Medium
Available
No
2.4.3, 2.5.0 15.03.2022 SB2022031520
SB2022031522
SB2022031611
and 238 more
#VU61291 - Loop with Unreachable Exit Condition ('Infinite Loop')
CVE-2022-0711
CWE-835 Medium
No
No
2.3.10 14.03.2022 SB2022031420
SB2022031505
SB2022032910
and 8 more
#VU59237 - Permissions, Privileges, and Access Controls
CVE-2021-43816
CWE-264 Low
No
No
2.5.0 06.01.2022 SB2022010606
SB2023051629
SB2024030421
and 10 more
#VU58229 - Type confusion
CVE-2021-41190
CWE-843 Low
No
No
2.4.3, 2.5.0 18.11.2021 SB2021111806
SB2021111807
SB2021111809
and 39 more


Showing elements 501 - 520 out of 718