Known vulnerabilities in Multicluster Engine for Kubernetes - page 2

Software CPE: cpe:2.3:a:red_hat:multicluster_engine_for_kubernetes:*:*:*:*:*:*:*:*
Total vulnerabilities: 224
Public exploits: 15
Known exploited (KEV): 4
Highest CVSSv4 Score: 9.4

Breakdown by Severity Chart

Severity distribution of vulnerabilities affecting Multicluster Engine for Kubernetes Multicluster Engine for Kubernetes is affected by 224 known vulnerabilities: 42 high, 138 medium, 44 low Critical High Medium Low

Vulnerabilities (224)

Vulnerability CWE-ID CSH Severity Public Exploit KEV First fixed release Published Bulletins
#VU114769 - Improper Link Resolution Before File Access ('Link Following')
CVE-2025-8941
CWE-59 Low
No
No
2.7.6, 2.8.3 03.09.2025 SB2025090350
SB2025090372
SB2025090373
and 20 more
#VU113738 - Loop with Unreachable Exit Condition ('Infinite Loop')
CVE-2025-8194
CWE-835 Medium
No
No
2.7.6, 2.8.3 07.08.2025 SB2025080731
SB2025080738
SB2025080739
and 93 more
#VU113637 - Integer overflow
CVE-2025-47268
CWE-190 Low
No
No
2.8.3 05.08.2025 SB2025080521
SB2025080531
SB2025080532
and 38 more
#VU113526 - Concurrent Execution using Shared Resource with Improper Synchronization ('Race Condition')
CVE-2025-40909
CWE-362 Low
No
No
2.6.8, 2.8.3 31.07.2025 SB2025073123
SB2025073125
SB2025073126
and 43 more
#VU113187 - Double Free
CVE-2025-8058
CWE-415 High
No
No
2.7.6, 2.8.3 24.07.2025 SB2025072408
SB2025072511
SB2025072512
and 59 more
#VU113156 - Memory corruption
CVE-2025-6965
CWE-119 Medium
No
No
2.6.8, 2.7.6, 2.8.3 22.07.2025 SB2025072254
SB2025072807
SB2025072890
and 100 more
#VU112440 - Use of a Broken or Risky Cryptographic Algorithm
CVE-2025-3576
CWE-327 Medium
No
No
2.6.8, 2.8.3 07.07.2025 SB2025070764
SB2025070769
SB2025070770
and 29 more
#VU111970 - Expected Behavior Violation
CVE-2025-4435
CWE-440 Low
No
No
2.6.8 26.06.2025 SB2025062630
SB2025062633
SB2025062634
and 59 more
#VU111969 - Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal')
CVE-2024-12718
CWE-22 Medium
No
No
2.6.8 26.06.2025 SB2025062630
SB2025062633
SB2025062634
and 62 more
#VU111968 - Improper Link Resolution Before File Access ('Link Following')
CVE-2025-4138
CWE-59 High
Available
No
2.6.8 26.06.2025 SB2025062630
SB2025062633
SB2025062634
and 64 more
#VU111967 - Improper Link Resolution Before File Access ('Link Following')
CVE-2025-4330
CWE-59 High
No
No
2.6.8 26.06.2025 SB2025062630
SB2025062633
SB2025062634
and 63 more
#VU111389 - Improper Access Control
CVE-2025-6020
CWE-284 Low
No
No
2.6.8, 2.7.6, 2.8.3 19.06.2025 SB2025061987
SB2025061992
SB20250619103
and 69 more
#VU111143 - Double Free
CVE-2025-5914
CWE-415 High
No
No
2.7.6, 2.8.3 16.06.2025 SB2025061602
SB2025061603
SB2025061604
and 51 more
#VU109848 - Integer overflow
CVE-2025-4373
CWE-190 High
No
No
2.6.8, 2.7.6, 2.8.3 27.05.2025 SB2025052742
SB2025052946
SB2025060610
and 42 more
#VU109840 - Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal')
CVE-2025-47273
CWE-22 High
No
No
2.6.8, 2.8.3 27.05.2025 SB2025052721
SB2025052734
SB2025052736
and 107 more
#VU107596 - Heap-based Buffer Overflow
CVE-2025-32415
CWE-122 High
No
No
2.7.6, 2.8.3 17.04.2025 SB2025041758
SB2025041880
SB2025042531
and 56 more
#VU107595 - Out-of-bounds read
CVE-2025-32414
CWE-125 Medium
No
No
2.7.6, 2.8.3 17.04.2025 SB2025041758
SB2025041850
SB2025041880
and 56 more
#VU107019 - Inconsistent Interpretation of HTTP Requests ('HTTP Request Smuggling')
CVE-2025-22871
CWE-444 Medium
No
No
2.8.3 05.04.2025 SB2025040507
SB2025040508
SB2025040739
and 109 more
#VU90156 - Security Features
CVE-2024-35195
CWE-254 Low
No
No
2.6.8 31.05.2024 SB2024053174
SB2024053188
SB2024053192
and 116 more
#VU80506 - Use After Free
CVE-2023-4752
CWE-416 Low
No
No
2.6.8 06.09.2023 SB2023090645
SB2023090649
SB2023090650
and 32 more


Showing elements 21 - 40 out of 224