Known vulnerabilities in Ansible Automation Platform - page 10

Software CPE: cpe:2.3:a:red_hat:ansible_automation_platform:*:*:*:*:*:*:*:*
Total vulnerabilities: 321
Public exploits: 26
Known exploited (KEV): 6
Highest CVSSv4 Score: 9.3

Breakdown by Severity Chart

Severity distribution of vulnerabilities affecting Ansible Automation Platform Ansible Automation Platform is affected by 321 known vulnerabilities: 1 critical, 58 high, 172 medium, 90 low Critical High Medium Low

Vulnerabilities (321)

Vulnerability CWE-ID CSH Severity Public Exploit KEV First fixed release Published Bulletins
#VU85747 - Observable discrepancy
CVE-2023-52323
CWE-203 Low
No
No
- 24.01.2024 SB2024012414
SB2024012416
SB2024022053
and 24 more
#VU85621 - Missing release of memory after effective lifetime
CVE-2024-0690
CWE-401 Low
No
No
- 19.01.2024 SB2024011931
SB2024011933
SB2024011934
and 11 more
#VU85065 - Resource exhaustion
CVE-2023-49295
CWE-400 Medium
No
No
- 08.01.2024 SB2024010822
SB2024010823
SB2024021301
and 7 more
#VU83632 - Inconsistent Interpretation of HTTP Requests ('HTTP Request Smuggling')
CVE-2023-49081
CWE-444 Medium
No
No
- 04.12.2023 SB2023120404
SB2023120408
SB2023121355
and 15 more
#VU83631 - Inconsistent Interpretation of HTTP Requests ('HTTP Request Smuggling')
CVE-2023-47627
CWE-444 Medium
No
No
- 04.12.2023 SB2023120403
SB2023120406
SB2023120407
and 15 more
#VU83261 - Resource exhaustion
CVE-2023-44271
CWE-400 Medium
No
No
- 18.11.2023 SB2023111809
SB2023111810
SB2023111811
and 25 more
#VU82547 - Inconsistent Interpretation of HTTP Requests ('HTTP Request Smuggling')
CVE-2023-46137
CWE-444 Medium
No
No
- 30.10.2023 SB2023103002
SB2023112046
SB2023112942
and 16 more
#VU82226 - Inefficient Regular Expression Complexity
CVE-2022-40896
CWE-1333 Medium
No
No
- 18.10.2023 SB20231018123
SB2023121111
SB2023122110
and 15 more
#VU81322 - Exposure of sensitive information to an unauthorized actor
CVE-2023-43804
CWE-200 Low
Available
No
- 02.10.2023 SB2023100251
SB2023100259
SB2023100260
and 112 more
#VU81056 - Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal')
CVE-2023-41040
CWE-22 Low
No
No
- 22.09.2023 SB2023092227
SB2023102621
SB2023110908
and 6 more
#VU80575 - Improper input validation
CVE-2023-39322
CWE-20 Medium
No
No
- 08.09.2023 SB2023090845
SB2023091875
SB2023091876
and 51 more
#VU80574 - Improper input validation
CVE-2023-39321
CWE-20 Medium
No
No
- 08.09.2023 SB2023090845
SB2023091875
SB2023091876
and 52 more
#VU72432 - Heap-based Buffer Overflow
CVE-2022-48303
CWE-122 High
No
No
- 21.02.2023 SB2023022105
SB2023022111
SB2023022112
and 72 more
#VU71996 - Double Free
CVE-2022-4450
CWE-415 Medium
No
No
- 07.02.2023 SB2023020742
SB2023020748
SB2023020771
and 180 more
#VU71993 - Information Exposure Through Timing Discrepancy
CVE-2022-4304
CWE-208 Medium
No
No
- 07.02.2023 SB2023020742
SB2023020748
SB2023020767
and 222 more
#VU66153 - Heap-based Buffer Overflow
CVE-2022-37434
CWE-122 High
Available
No
- 07.08.2022 SB2022080705
SB2022081833
SB2022081851
and 154 more
#VU64909 - Improper Verification of Cryptographic Signature
CVE-2022-34903
CWE-347 Medium
No
No
- 04.07.2022 SB2022070429
SB2022070443
SB2022070521
and 58 more
#VU64508 - Out-of-bounds read
CVE-2022-1927
CWE-125 Low
No
No
- 20.06.2022 SB2022062022
SB2022080332
SB2022080610
and 49 more
#VU64506 - Out-of-bounds write
CVE-2022-1897
CWE-787 Low
No
No
- 20.06.2022 SB2022062022
SB2022070807
SB2022080332
and 48 more
#VU60842 - Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection')
CVE-2022-24407
CWE-89 High
No
No
- 24.02.2022 SB2022022409
SB2022022410
SB2022022421
and 67 more


Showing elements 181 - 200 out of 321