Known vulnerabilities in gnome-shell-extensions (Red Hat package) - page 2

Software CPE: cpe:2.3:o:red_hat:gnome-shell-extensions_redhat_package:*:*:*:*:*:red_hat_enterprise_linux:*:*
Total vulnerabilities: 64
Public exploits: 3
Known exploited (KEV): 1
Highest CVSSv4 Score: 9.3

Breakdown by Severity Chart

Severity distribution of vulnerabilities affecting gnome-shell-extensions (Red Hat package) gnome-shell-extensions (Red Hat package) is affected by 64 known vulnerabilities: 38 high, 14 medium, 12 low Critical High Medium Low

Vulnerabilities (64)

Vulnerability CWE-ID CSH Severity Public Exploit KEV First fixed release Published Bulletins
#VU32970 - Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')
CVE-2020-9925
CWE-79 Medium
No
No
3.32.1-11.el8 02.08.2020 SB2020080202
SB2020080203
SB2020082501
and 11 more
#VU32969 - Permissions, Privileges, and Access Controls
CVE-2020-9915
CWE-264 Medium
No
No
3.32.1-11.el8 02.08.2020 SB2020080202
SB2020080203
SB2020082501
and 11 more
#VU32968 - Use After Free
CVE-2020-9895
CWE-416 High
No
No
3.32.1-11.el8 02.08.2020 SB2020080202
SB2020080203
SB2020082501
and 11 more
#VU32967 - Out-of-bounds read
CVE-2020-9894
CWE-125 Medium
No
No
3.32.1-11.el8 02.08.2020 SB2020080202
SB2020080203
SB2020082501
and 11 more
#VU32966 - Use After Free
CVE-2020-9893
CWE-416 High
No
No
3.32.1-11.el8 02.08.2020 SB2020080202
SB2020080203
SB2020082501
and 11 more
#VU32965 - Command injection
CVE-2020-9862
CWE-77 Medium
No
No
3.32.1-11.el8 02.08.2020 SB2020080202
SB2020080203
SB2020082501
and 11 more
#VU32964 - Improper input validation
CVE-2020-9850
CWE-20 High
Available
No
3.32.1-11.el8 02.08.2020 SB2020071482
SB2020072610
SB2020070947
and 10 more
#VU32963 - Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')
CVE-2020-9843
CWE-79 Medium
No
No
3.32.1-11.el8 02.08.2020 SB2020071482
SB2020072610
SB2020070946
and 10 more
#VU32962 - Memory corruption
CVE-2020-9807
CWE-119 High
No
No
3.32.1-11.el8 02.08.2020 SB2020071482
SB2020072610
SB2020070945
and 10 more
#VU32961 - Memory corruption
CVE-2020-9806
CWE-119 High
No
No
3.32.1-11.el8 02.08.2020 SB2020071482
SB2020072610
SB2020070944
and 10 more
#VU32960 - Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')
CVE-2020-9805
CWE-79 Medium
No
No
3.32.1-11.el8 02.08.2020 SB2020071482
SB2020072610
SB2020070943
and 14 more
#VU32959 - Memory corruption
CVE-2020-9803
CWE-119 High
No
No
3.32.1-11.el8 02.08.2020 SB2020071482
SB2020072610
SB2020070941
and 14 more
#VU32958 - Improper input validation
CVE-2020-9802
CWE-20 High
Available
No
3.32.1-11.el8 02.08.2020 SB2020071482
SB2020072610
SB2020070940
and 14 more
#VU30304 - Use After Free
CVE-2020-11793
CWE-416 High
No
No
3.32.1-11.el8 17.04.2020 SB2020041720
SB2020050206
SB2020042012
and 13 more
#VU26431 - Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')
CVE-2020-3902
CWE-79 Low
No
No
3.32.1-11.el8 27.03.2020 SB2020032715
SB2020032719
SB2020051104
and 10 more
#VU26424 - Type confusion
CVE-2020-3901
CWE-843 High
No
No
3.32.1-11.el8 27.03.2020 SB2020032715
SB2020032718
SB2020032719
and 9 more
#VU23175 - Memory corruption
CVE-2019-8720
CWE-119 High
No
Exploited
3.32.1-11.el8 02.12.2019 SB2019102922
SB2019113004
SB2019113005
and 7 more
#VU23171 - Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')
CVE-2019-8625
CWE-79 Low
No
No
3.32.1-11.el8 02.12.2019 SB2019102922
SB2019113004
SB2019113005
and 7 more
#VU23153 - Memory corruption
CVE-2019-8743
CWE-119 High
No
No
3.32.1-11.el8 02.12.2019 SB2019110806
SB2019113004
SB2019113005
and 6 more
#VU23152 - Memory corruption
CVE-2019-8710
CWE-119 High
No
No
3.32.1-11.el8 02.12.2019 SB2019110806
SB2019113004
SB2019113005
and 6 more


Showing elements 21 - 40 out of 64