Known vulnerabilities in atomic-openshift-service-idler (Red Hat package) - page 7

Software CPE: cpe:2.3:o:red_hat:atomic-openshift-service-idler_redhat_package:*:*:*:*:*:red_hat_enterprise_linux:*:*
Total vulnerabilities: 142
Public exploits: 12
Known exploited (KEV): 0
Highest CVSSv4 Score: 9.3

Breakdown by Severity Chart

Severity distribution of vulnerabilities affecting atomic-openshift-service-idler (Red Hat package) atomic-openshift-service-idler (Red Hat package) is affected by 142 known vulnerabilities: 14 high, 80 medium, 48 low Critical High Medium Low

Vulnerabilities (142)

Vulnerability CWE-ID CSH Severity Public Exploit KEV First fixed release Published Bulletins
#VU60104 - Improper input validation
CVE-2020-8554
CWE-20 Medium
No
No
3.11.374-1.git.15.523a1f7.el7 27.01.2022 SB2022012749
SB2022012750
SB2022042257
and 2 more
#VU47403 - Improper Neutralization of CRLF Sequences ('CRLF Injection')
CVE-2020-26137
CWE-93 Medium
No
No
3.11.374-1.git.15.523a1f7.el7 30.09.2020 SB2020100716
SB2020121420
SB2021052028
and 35 more
#VU34130 - Permissions, Privileges, and Access Controls
CVE-2020-8559
CWE-264 Medium
Available
No
3.11.346-1.git.15.35bbcf7.el7 22.07.2020 SB2020072221
SB2020120203
SB2020121809
and 6 more
#VU26474 - Uncontrolled Memory Allocation
CVE-2020-8552
CWE-789 Medium
No
No
4.3.9-202003230116.git.13.7ac3e5c.el7 31.03.2020 SB2020033111
SB2020040174
SB2020042251
and 6 more
#VU26412 - Improper Neutralization of CRLF Sequences ('CRLF Injection')
CVE-2019-11236
CWE-93 Medium
Available
No
4.3.28-202006270952.p0.git.13.4a5b28a.el7, 4.4.0-202006271254.p0.git.13.6b09c66.el7 26.03.2020 SB2020032626
SB2020031827
SB2019091504
and 36 more
#VU26393 - Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')
CVE-2020-2163
CWE-79 Low
No
No
4.3.25-202006081518.git.1.79365c5.el7, 4.4.0-202006080017.git.1.7e463c3.el7 26.03.2020 SB2020032622
SB2020032668
SB2020061738
and 1 more
#VU26392 - Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')
CVE-2020-2162
CWE-79 Low
No
No
4.3.25-202006081518.git.1.79365c5.el7, 4.4.0-202006080017.git.1.7e463c3.el7 26.03.2020 SB2020032622
SB2020032667
SB2020061738
and 1 more
#VU26391 - Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')
CVE-2020-2161
CWE-79 Low
No
No
4.3.25-202006081518.git.1.79365c5.el7, 4.4.0-202006080017.git.1.7e463c3.el7 26.03.2020 SB2020032622
SB2020032662
SB2020061738
and 1 more
#VU26390 - Cross-Site Request Forgery (CSRF)
CVE-2020-2160
CWE-352 Low
No
No
4.3.25-202006081518.git.1.79365c5.el7, 4.4.0-202006080017.git.1.7e463c3.el7 26.03.2020 SB2020032622
SB2020032661
SB2020061738
and 1 more
#VU25501 - Use After Free
CVE-2020-8945
CWE-416 High
No
No
4.3.10-202003300415.git.13.ac05c4a.el7 21.02.2020 SB2020022110
SB2020031116
SB2020031126
and 23 more
#VU24764 - User Interface (UI) Misrepresentation of Critical Information (Clickjacking, spoofing)
CVE-2020-2105
CWE-451 Low
No
No
4.3.5-202003020117.git.13.3ac2b0e.el7 30.01.2020 SB2020013005
SB20200310153
#VU24763 - Exposure of sensitive information to an unauthorized actor
CVE-2020-2104
CWE-200 Low
No
No
4.3.5-202003020117.git.13.3ac2b0e.el7 30.01.2020 SB2020013005
SB20200310153
#VU24762 - Exposure of sensitive information to an unauthorized actor
CVE-2020-2103
CWE-200 Low
No
No
4.3.5-202003020117.git.13.3ac2b0e.el7 30.01.2020 SB2020013005
SB20200310153
#VU24761 - Cryptographic Issues
CVE-2020-2102
CWE-310 Medium
No
No
4.3.5-202003020117.git.13.3ac2b0e.el7 30.01.2020 SB2020013005
SB20200310153
#VU24760 - Exposure of sensitive information to an unauthorized actor
CVE-2020-2101
CWE-200 Medium
No
No
4.3.5-202003020117.git.13.3ac2b0e.el7 30.01.2020 SB2020013005
SB20200310153
#VU24759 - Resource Management Errors
CVE-2020-2100
CWE-399 Medium
No
No
4.3.5-202003020117.git.13.3ac2b0e.el7 30.01.2020 SB2020013005
SB20200310153
#VU24758 - Improper Authentication
CVE-2020-2099
CWE-287 High
No
No
4.3.5-202003020117.git.13.3ac2b0e.el7 30.01.2020 SB2020013004
SB20200310153
#VU35005 - URL Redirection to Untrusted Site ('Open Redirect')
CVE-2018-1002102
CWE-601 Low
No
No
3.11.346-1.git.15.35bbcf7.el7 05.12.2019 SB2019120529
SB2020121809
SB2020010218
#VU21780 - Improper Certificate Validation
CVE-2019-11324
CWE-295 Medium
Available
No
4.3.28-202006270952.p0.git.13.4a5b28a.el7, 4.4.0-202006271254.p0.git.13.6b09c66.el7 15.10.2019 SB2019041823
SB2020031827
SB2019091504
and 19 more
#VU21118 - Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection')
CVE-2019-10392
CWE-78 Medium
No
No
4.2.20-202002170402.git.1.43218bc.el7, 4.3.3-202002170501.git.1.4feff9c.el7 16.09.2019 SB2019091607
SB2020061842
SB2020022451
and 2 more


Showing elements 121 - 140 out of 142