Known vulnerabilities in Red Hat Advanced Cluster Management for Kubernetes - page 29

Software CPE: cpe:2.3:a:red_hat:advanced_cluster_management_for_kubernets:*:*:*:*:*:*:*:*
Total vulnerabilities: 718
Public exploits: 70
Known exploited (KEV): 18
Highest CVSSv4 Score: 9.4

Breakdown by Severity Chart

Severity distribution of vulnerabilities affecting Red Hat Advanced Cluster Management for Kubernetes Red Hat Advanced Cluster Management for Kubernetes is affected by 718 known vulnerabilities: 1 critical, 134 high, 307 medium, 276 low Critical High Medium Low

Vulnerabilities (718)

Vulnerability CWE-ID CSH Severity Public Exploit KEV First fixed release Published Bulletins
#VU109182 - Inefficient Regular Expression Complexity
CVE-2021-3795
CWE-1333 High
No
No
2.2.10 14.05.2025 SB2021091549
SB2022111063
SB2021120933
#VU63770 - Insufficient Verification of Data Authenticity
CVE-2021-4122
CWE-345 Medium
No
No
2.3.6 27.05.2022 SB2022061409
SB2022021531
SB2022082249
and 12 more
#VU63059 - Heap-based Buffer Overflow
CVE-2021-3872
CWE-122 High
No
No
2.3.6 11.05.2022 SB2022051173
SB2021111514
SB2022062022
and 21 more
#VU63049 - Heap-based Buffer Overflow
CVE-2021-3984
CWE-122 High
No
No
2.3.6 11.05.2022 SB2022051173
SB2022052327
SB2022012777
and 24 more
#VU63048 - Out-of-bounds write
CVE-2021-4019
CWE-787 High
No
No
2.3.6 11.05.2022 SB2022051173
SB2022052327
SB2022012777
and 26 more
#VU60790 - Use After Free
CVE-2021-4192
CWE-416 High
No
No
2.3.6 22.02.2022 SB2022022221
SB2022031433
SB2022051702
and 24 more
#VU60789 - Out-of-bounds read
CVE-2021-4193
CWE-125 Low
No
No
2.3.6 22.02.2022 SB2022022221
SB2022031433
SB2022051702
and 26 more
#VU60087 - Improper input validation
CVE-2021-23440
CWE-20 High
No
No
2.2.10 27.01.2022 SB2022012755
SB2022082512
SB2023060703
and 5 more
#VU60007 - Improper input validation
CVE-2021-4034
CWE-20 Medium
Available
Exploited
2.3.6 26.01.2022 SB2022012601
SB2022012604
SB2022012605
and 51 more
#VU59993 - Improper Verification of Cryptographic Signature
CVE-2021-3521
CWE-347 Medium
No
No
2.3.6 25.01.2022 SB2022012518
SB2022012519
SB2022020935
and 23 more
#VU59833 - Exposure of sensitive information to an unauthorized actor
CVE-2021-23566
CWE-200 Low
No
No
2.3.6, 2.3.8, 2.4.3 19.01.2022 SB2022011925
SB2022032843
SB2022061711
and 10 more
#VU59812 - Permissions, Privileges, and Access Controls
CVE-2021-4155
CWE-264 Low
No
No
2.3.6 19.01.2022 SB2022011910
SB2022011932
SB2022011937
and 54 more
#VU59695 - Integer overflow
CVE-2022-0185
CWE-190 Low
Available
Exploited
2.3.6 18.01.2022 SB2022011820
SB2022011932
SB2022011937
and 33 more
#VU59583 - Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection')
CVE-2022-20617
CWE-78 Medium
No
No
2.3.6 13.01.2022 SB2022011311
SB2022021019
SB2022021637
and 5 more
#VU59576 - Cross-Site Request Forgery (CSRF)
CVE-2022-20612
CWE-352 Low
No
No
2.3.6 13.01.2022 SB2022011305
SB2022021019
SB2022021637
and 6 more
#VU59473 - Improper Resource Shutdown or Release
CVE-2020-36322
CWE-404 Low
No
No
2.3.6 11.01.2022 SB2021041422
SB2022011150
SB2022011151
and 37 more
#VU57848 - Improper input validation
CVE-2021-42574
CWE-20 Low
Available
No
2.2.10, 2.3.6 02.11.2021 SB2021110201
SB2021110205
SB2021110206
and 64 more
#VU56064 - Out-of-bounds read
CVE-2021-3712
CWE-125 Medium
No
No
2.3.6 24.08.2021 SB2021082414
SB2021082508
SB2021082510
and 142 more
#VU55258 - Missing release of memory after effective lifetime
CVE-2020-25704
CWE-401 Low
No
No
2.3.6 22.07.2021 SB2020120226
SB2021072251
SB2021072252
and 25 more
#VU20426 - Resource exhaustion
CVE-2019-10747
CWE-400 Medium
No
No
2.2.10 28.08.2019 SB2019082316
SB2022082512
SB2020110621
and 5 more


Showing elements 561 - 580 out of 718