Known vulnerabilities in JBoss Enterprise Application Platform - page 2

Software CPE: cpe:2.3:a:red_hat:jboss_enterprise_application_platform:*:*:*:*:*:*:*:*
Total vulnerabilities: 241
Public exploits: 27
Known exploited (KEV): 6
Highest CVSSv4 Score: 9.4

Breakdown by Severity Chart

Severity distribution of vulnerabilities affecting JBoss Enterprise Application Platform JBoss Enterprise Application Platform is affected by 241 known vulnerabilities: 2 critical, 42 high, 122 medium, 75 low Critical High Medium Low

Vulnerabilities (241)

Vulnerability CWE-ID CSH Severity Public Exploit KEV First fixed release Published Bulletins
#VU101867 - Creation of Temporary File With Insecure Permissions
CVE-2024-51127
CWE-378 Low
No
No
7.4.21 19.12.2024 SB2024121931
SB2025011664
SB2025021825
and 4 more
#VU98024 - Improper input validation
CVE-2024-47561
CWE-20 High
No
No
7.1.8, 7.3.11 03.10.2024 SB2024100351
SB2024100504
SB2024100984
and 36 more
#VU97630 - Missing release of memory after effective lifetime
CVE-2024-41172
CWE-401 Medium
No
No
8.0.4 20.09.2024 SB2024091810
SB2024092018
SB2024100250
and 5 more
#VU97622 - URL Redirection to Untrusted Site ('Open Redirect')
CVE-2024-8883
CWE-601 Low
No
No
8.0.4, 8.0.4.1 20.09.2024 SB2024092009
SB2024092069
SB2024092070
and 12 more
#VU97621 - Improper Verification of Cryptographic Signature
CVE-2024-8698
CWE-347 Medium
Available
No
8.0.4 20.09.2024 SB2024092009
SB2024092069
SB2024092070
and 11 more
#VU96052 - Resource exhaustion
CVE-2024-5971
CWE-400 Medium
No
No
7.4.18 15.08.2024 SB2024081548
SB2024082312
SB2024082313
and 11 more
#VU93103 - Resource exhaustion
CVE-2023-5685
CWE-400 Medium
No
No
7.1.8, 7.3.11 24.06.2024 SB2024062414
SB2024062415
SB2024062425
and 14 more
#VU92405 - Uncontrolled Memory Allocation
CVE-2024-4068
CWE-789 Medium
No
No
7.4.19 20.06.2024 SB20240620121
SB2024062833
SB2024070809
and 51 more
#VU89919 - Allocation of Resources Without Limits or Throttling
CVE-2024-4029
CWE-770 Low
No
No
7.4.19, 8.0.4 30.05.2024 SB2024053024
SB2024101587
SB2024101588
and 5 more
#VU88173 - Resource exhaustion
CVE-2023-51775
CWE-400 Medium
No
No
7.4.19 05.04.2024 SB2024040525
SB2024041129
SB2024041130
and 83 more
#VU87615 - Resource exhaustion
CVE-2023-52428
CWE-400 Medium
No
No
8.0.4 19.03.2024 SB2024031924
SB2024040107
SB2024041643
and 43 more
#VU66756 - Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')
CVE-2022-36033
CWE-79 Low
No
No
7.4.19 25.08.2022 SB2022082508
SB2022101893
SB2022111644
and 44 more
#VU65495 - Improper input validation
CVE-2022-34169
CWE-20 High
Available
No
7.1.8, 7.3.11, 7.4.19, 8.0.4 20.07.2022 SB2022072046
SB2022072047
SB2022072140
and 137 more
#VU61938 - Deserialization of Untrusted Data
CVE-2022-23221
CWE-502 High
No
No
7.1.8, 7.3.11, 7.4.5 06.04.2022 SB2022040618
SB2022040619
SB2022042260
and 7 more
#VU51511 - Improper Control of Generation of Code ('Code Injection')
CVE-2020-13936
CWE-94 High
No
No
7.1.9, 7.3.12 16.03.2021 SB2021031618
SB2021072614
SB2022011911
and 45 more
#VU26494 - Deserialization of Untrusted Data
CVE-2020-10673
CWE-502 High
Available
No
7.1.9 01.04.2020 SB2020030909
SB2020073033
SB2022060909
and 17 more
#VU26493 - Deserialization of Untrusted Data
CVE-2020-10672
CWE-502 High
No
No
7.1.9 01.04.2020 SB2020030909
SB2020073033
SB2022060909
and 16 more
#VU25832 - Deserialization of Untrusted Data
CVE-2020-9548
CWE-502 High
Available
No
7.1.9 09.03.2020 SB2020030909
SB2020073033
SB2022060909
and 14 more
#VU25831 - Deserialization of Untrusted Data
CVE-2020-9547
CWE-502 High
Available
No
7.1.9 09.03.2020 SB2020030909
SB2020073033
SB2022060909
and 13 more
#VU25830 - Deserialization of Untrusted Data
CVE-2020-9546
CWE-502 High
No
No
7.1.9 09.03.2020 SB2020030909
SB2020071523
SB2020071620
and 31 more


Showing elements 21 - 40 out of 241