Known vulnerabilities in Fuse - page 4

Software: Fuse
Software CPE: cpe:2.3:a:red_hat:fuse:*:*:*:*:*:*:*:*
Total vulnerabilities: 225
Public exploits: 22
Known exploited (KEV): 7
Highest CVSSv4 Score: 9.4

Breakdown by Severity Chart

Severity distribution of vulnerabilities affecting Fuse Fuse is affected by 225 known vulnerabilities: 3 critical, 52 high, 121 medium, 49 low Critical High Medium Low

Vulnerabilities (225)

Vulnerability CWE-ID CSH Severity Public Exploit KEV First fixed release Published Bulletins
#VU66815 - Authorization Bypass Through User-Controlled Key
CVE-2022-0613
CWE-639 Medium
No
No
7.11.1 29.08.2022 SB2022082938
SB2022082939
SB2022082940
and 5 more
#VU66672 - Resource exhaustion
CVE-2022-2053
CWE-400 Medium
No
No
7.11.1 22.08.2022 SB2022082204
SB2022082205
SB2022100557
and 7 more
#VU65830 - Resource Management Errors
CVE-2022-2048
CWE-399 Medium
No
No
7.11.1 27.07.2022 SB2022072723
SB2022080103
SB2022080260
and 44 more
#VU65499 - Improper input validation
CVE-2021-31684
CWE-20 Medium
No
No
7.11.1 20.07.2022 SB2022072048
SB2022072056
SB2022112850
and 20 more
#VU64471 - Improper Verification of Cryptographic Signature
CVE-2021-22573
CWE-347 Low
No
No
7.10.2-P1 17.06.2022 SB2022061720
SB2022061804
SB2022062732
and 14 more
#VU64030 - Resource exhaustion
CVE-2021-44906
CWE-400 High
No
No
7.11.1 07.06.2022 SB2022060836
SB2022062103
SB2022062203
and 53 more
#VU63777 - Exposure of sensitive information to an unauthorized actor
CVE-2022-1650
CWE-200 Medium
No
No
7.10.2-P1 30.05.2022 SB2022053001
SB2022053002
SB2022061422
and 16 more
#VU61756 - Improper Control of Generation of Code ('Code Injection')
CVE-2022-22965
CWE-94 Critical
Available
Exploited
7.10.2 31.03.2022 SB2022033109
SB2022040109
SB2022040110
and 78 more
#VU59693 - Deserialization of Untrusted Data
CVE-2020-9493
CWE-502 High
No
No
6.3.20, 7.10.1 18.01.2022 SB2021061626
SB2022011819
SB2022012640
and 62 more
#VU59692 - Deserialization of Untrusted Data
CVE-2022-23302
CWE-502 High
No
No
6.3.20, 7.10.1 18.01.2022 SB2022011818
SB2022012640
SB2022012641
and 60 more
#VU59691 - Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection')
CVE-2022-23305
CWE-89 Medium
No
No
6.3.20, 7.10.1 18.01.2022 SB2022011818
SB2022012640
SB2022012641
and 94 more
#VU59098 - Improper Control of Generation of Code ('Code Injection')
CVE-2021-44832
CWE-94 Medium
No
No
7.8.2, 7.9.1, 7.10.1 28.12.2021 SB2021122816
SB2021123002
SB2022010601
and 197 more
#VU59051 - Loop with Unreachable Exit Condition ('Infinite Loop')
CVE-2021-45105
CWE-835 Medium
Available
No
7.8.2, 7.9.1, 7.10.1 18.12.2021 SB2021121802
SB2021121903
SB2021122011
and 169 more
#VU58977 - Deserialization of Untrusted Data
CVE-2021-4104
CWE-502 Medium
No
No
6.3.20, 7.10.1 15.12.2021 SB2021121507
SB2021121647
SB2021121720
and 119 more
#VU58976 - Improper Control of Generation of Code ('Code Injection')
CVE-2021-45046
CWE-94 High
Available
Exploited
7.8.2, 7.9.1, 7.10.1 15.12.2021 SB2021121504
SB2021121511
SB2021121512
and 178 more
#VU58816 - Improper Control of Generation of Code ('Code Injection')
CVE-2021-44228
CWE-94 Critical
Available
Exploited
7.8.2, 7.9.1, 7.10.0, 7.10.1 10.12.2021 SB2021121003
SB2021121101
SB2021121201
and 338 more
#VU58178 - Files or Directories Accessible to External Parties
CVE-2021-3717
CWE-552 Low
No
No
7.11.1 16.11.2021 SB2021111608
SB2021111715
SB2022080830
and 3 more
#VU56019 - Resource exhaustion
CVE-2021-30468
CWE-400 Medium
No
No
7.10.0 20.08.2021 SB2021082016
SB2021101933
SB2022042254
and 8 more
#VU52563 - Deserialization of Untrusted Data
CVE-2021-21346
CWE-502 High
No
No
7.10.0 26.04.2021 SB2021042607
SB2021042608
SB2021043019
and 21 more
#VU26943 - Improper input validation
CVE-2020-2875
CWE-20 Medium
No
No
7.10.0 15.04.2020 SB2020041904
SB2020061502
SB2021052616
and 4 more


Showing elements 61 - 80 out of 225