Known vulnerabilities in eap7-wildfly (Red Hat package)

Software CPE: cpe:2.3:o:red_hat:eap7-wildfly_redhat_package:*:*:*:*:*:red_hat_enterprise_linux:*:*
Total vulnerabilities: 107
Public exploits: 19
Known exploited (KEV): 5
Highest CVSSv4 Score: 9.3

Breakdown by Severity Chart

Severity distribution of vulnerabilities affecting eap7-wildfly (Red Hat package) eap7-wildfly (Red Hat package) is affected by 107 known vulnerabilities: 2 critical, 20 high, 59 medium, 26 low Critical High Medium Low

Vulnerabilities (107)

Vulnerability CWE-ID CSH Severity Public Exploit KEV First fixed release Published Bulletins
#VU114026 - Resource exhaustion
CVE-2025-55163
CWE-400 Medium
No
No
7.1.13-6.GA_redhat_00002.1.ep7.el7, 7.3.16-3.GA_redhat_00003.1.el7eap 13.08.2025 SB2025081378
SB2025081948
SB2025081949
and 71 more
#VU112106 - Memory corruption
CVE-2025-52999
CWE-119 Medium
No
No
7.1.13-6.GA_redhat_00002.1.ep7.el7, 7.3.16-3.GA_redhat_00003.1.el7eap 02.07.2025 SB2025070257
SB2025070261
SB2025070262
and 43 more
#VU106929 - Improper Access Control
CVE-2025-23367
CWE-284 Medium
No
No
7.4.22-2.GA_redhat_00001.1.el7eap, 7.4.22-2.GA_redhat_00001.1.el8eap, 7.4.22-2.GA_redhat_00001.1.el9eap 03.04.2025 SB2025040321
SB2025040329
SB2025050938
and 3 more
#VU103770 - Improper input validation
CVE-2025-24970
CWE-20 Medium
No
No
7.4.22-2.GA_redhat_00001.1.el7eap, 7.4.22-2.GA_redhat_00001.1.el8eap, 7.4.22-2.GA_redhat_00001.1.el9eap 11.02.2025 SB2025021186
SB202502197190
SB2025030409
and 88 more
#VU103769 - Resource exhaustion
CVE-2025-25193
CWE-400 Low
No
No
7.4.22-2.GA_redhat_00001.1.el7eap, 7.4.22-2.GA_redhat_00001.1.el8eap, 7.4.22-2.GA_redhat_00001.1.el9eap 11.02.2025 SB2025021186
SB202502197190
SB2025030409
and 56 more
#VU101867 - Creation of Temporary File With Insecure Permissions
CVE-2024-51127
CWE-378 Low
No
No
7.4.21-2.GA_redhat_00001.1.el7eap, 7.4.21-2.GA_redhat_00001.1.el8eap, 7.4.21-2.GA_redhat_00001.1.el9eap 19.12.2024 SB2024121931
SB2025011664
SB2025021825
and 4 more
#VU100259 - Resource Management Errors
CVE-2024-47535
CWE-399 Low
No
No
7.4.22-2.GA_redhat_00001.1.el7eap, 7.4.22-2.GA_redhat_00001.1.el8eap, 7.4.22-2.GA_redhat_00001.1.el9eap 12.11.2024 SB2024111299
SB2024122313
SB2025012061
and 79 more
#VU70443 - Exposure of sensitive information to an unauthorized actor
CVE-2022-46363
CWE-200 Low
No
No
7.1.9-2.GA_redhat_00002.1.ep7.el7, 7.3.12-3.GA_redhat_00002.1.el7eap 20.12.2022 SB2022122009
SB2023011707
SB2023012719
and 22 more
#VU68307 - Improper Control of Generation of Code ('Code Injection')
CVE-2022-42889
CWE-94 High
Available
Exploited
7.1.9-2.GA_redhat_00002.1.ep7.el7, 7.3.12-3.GA_redhat_00002.1.el7eap 14.10.2022 SB2022101405
SB2022102709
SB2022110306
and 91 more
#VU61937 - Deserialization of Untrusted Data
CVE-2021-42392
CWE-502 Critical
Available
No
7.3.12-3.GA_redhat_00002.1.el7eap 06.04.2022 SB2022040617
SB2022040619
SB2022042257
and 10 more
#VU60243 - Resource Management Errors
CVE-2021-3859
CWE-399 Medium
No
No
7.3.11-4.GA_redhat_00002.1.el7eap 02.02.2022 SB2022020210
SB2022020326
SB2022020327
and 4 more
#VU58977 - Deserialization of Untrusted Data
CVE-2021-4104
CWE-502 Medium
No
No
7.3.11-4.GA_redhat_00002.1.el7eap, 7.4.4-3.GA_redhat_00011.1.el7eap, 7.4.4-3.GA_redhat_00011.1.el8eap 15.12.2021 SB2021121507
SB2021121647
SB2021121720
and 119 more
#VU58178 - Files or Directories Accessible to External Parties
CVE-2021-3717
CWE-552 Low
No
No
7.1.9-2.GA_redhat_00002.1.ep7.el7 16.11.2021 SB2021111608
SB2021111715
SB2022080830
and 3 more
#VU51511 - Improper Control of Generation of Code ('Code Injection')
CVE-2020-13936
CWE-94 High
No
No
7.1.9-2.GA_redhat_00002.1.ep7.el7, 7.3.12-3.GA_redhat_00002.1.el7eap 16.03.2021 SB2021031618
SB2021072614
SB2022011911
and 45 more
#VU26494 - Deserialization of Untrusted Data
CVE-2020-10673
CWE-502 High
Available
No
7.1.9-2.GA_redhat_00002.1.ep7.el7 01.04.2020 SB2020030909
SB2020073033
SB2022060909
and 17 more
#VU26493 - Deserialization of Untrusted Data
CVE-2020-10672
CWE-502 High
No
No
7.1.9-2.GA_redhat_00002.1.ep7.el7 01.04.2020 SB2020030909
SB2020073033
SB2022060909
and 16 more
#VU25832 - Deserialization of Untrusted Data
CVE-2020-9548
CWE-502 High
Available
No
7.1.9-2.GA_redhat_00002.1.ep7.el7 09.03.2020 SB2020030909
SB2020073033
SB2022060909
and 14 more
#VU25831 - Deserialization of Untrusted Data
CVE-2020-9547
CWE-502 High
Available
No
7.1.9-2.GA_redhat_00002.1.ep7.el7 09.03.2020 SB2020030909
SB2020073033
SB2022060909
and 13 more
#VU25830 - Deserialization of Untrusted Data
CVE-2020-9546
CWE-502 High
No
No
7.1.9-2.GA_redhat_00002.1.ep7.el7 09.03.2020 SB2020030909
SB2020071523
SB2020071620
and 31 more
#VU25469 - Improper Control of Generation of Code ('Code Injection')
CVE-2020-8840
CWE-94 Medium
Available
No
7.1.9-2.GA_redhat_00002.1.ep7.el7 19.02.2020 SB2020021921
SB2020022615
SB2020061106
and 18 more


Showing elements 1 - 20 out of 107