Known vulnerabilities in OpenShift API for Data Protection (OADP) - page 14

Software CPE: cpe:2.3:a:red_hat:oadp:*:*:*:*:*:red_hat_openshift_container_platform:*:*
Total vulnerabilities: 307
Public exploits: 18
Known exploited (KEV): 6
Highest CVSSv4 Score: 9.3

Breakdown by Severity Chart

Severity distribution of vulnerabilities affecting OpenShift API for Data Protection (OADP) OpenShift API for Data Protection (OADP) is affected by 307 known vulnerabilities: 2 critical, 67 high, 164 medium, 74 low Critical High Medium Low

Vulnerabilities (307)

Vulnerability CWE-ID CSH Severity Public Exploit KEV First fixed release Published Bulletins
#VU71236 - Untrusted Search Path
CVE-2022-4883
CWE-426 Low
No
No
1.1.2 17.01.2023 SB2023011734
SB2023011737
SB2023011806
and 38 more
#VU70461 - Improper Privilege Management
CVE-2022-4415
CWE-269 Low
No
No
1.1.2 21.12.2022 SB2022122140
SB2022122735
SB2022122816
and 70 more
#VU68897 - Resource exhaustion
CVE-2022-32149
CWE-400 Medium
No
No
1.0.7 01.11.2022 SB2022110139
SB2022110140
SB2022110142
and 68 more
#VU68376 - Integer overflow
CVE-2022-3515
CWE-190 High
No
No
1.1.1 18.10.2022 SB2022101805
SB2022101807
SB2022101808
and 64 more
#VU67556 - Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal')
CVE-2022-32190
CWE-22 Medium
No
No
1.1.1 21.09.2022 SB2022091520
SB2022092146
SB2022092946
and 33 more
#VU67532 - Use After Free
CVE-2022-40674
CWE-416 High
No
No
1.0.5, 1.1.1 21.09.2022 SB2022092118
SB2022092119
SB2022092317
and 111 more
#VU67412 - Out-of-bounds read
CVE-2020-35527
CWE-125 Medium
No
No
1.1.1 15.09.2022 SB2020080601
SB2022091540
SB2022102543
and 29 more
#VU67411 - NULL Pointer Dereference
CVE-2020-35525
CWE-476 Medium
No
No
1.1.1 15.09.2022 SB2020080601
SB2022091540
SB2022092902
and 30 more
#VU67396 - Improper input validation
CVE-2022-27664
CWE-20 Medium
No
No
1.1.1 15.09.2022 SB2022091520
SB2022091521
SB2022092144
and 127 more
#VU66153 - Heap-based Buffer Overflow
CVE-2022-37434
CWE-122 High
Available
No
1.1.1 07.08.2022 SB2022080705
SB2022081833
SB2022081851
and 154 more
#VU66068 - Resource exhaustion
CVE-2022-30635
CWE-400 Medium
No
No
1.1.1 03.08.2022 SB2022080321
SB2022080323
SB2022080324
and 86 more
#VU66067 - Resource exhaustion
CVE-2022-30632
CWE-400 Medium
No
No
1.1.1 03.08.2022 SB2022080321
SB2022080323
SB2022080324
and 79 more
#VU65915 - Double Free
CVE-2022-2509
CWE-415 High
No
No
1.1.1 02.08.2022 SB2022080207
SB2022080208
SB2022080509
and 54 more
#VU64909 - Improper Verification of Cryptographic Signature
CVE-2022-34903
CWE-347 Medium
No
No
1.0.5, 1.1.1 04.07.2022 SB2022070429
SB2022070443
SB2022070521
and 58 more
#VU62039 - Use of a Broken or Risky Cryptographic Algorithm
CVE-2022-27191
CWE-327 Medium
No
No
1.1.1 10.04.2022 SB2022041004
SB2022041406
SB2022081226
and 91 more
#VU61599 - Improper input validation
CVE-2022-21698
CWE-20 Medium
No
No
1.0.4, 1.0.5, 1.1.0, 1.1.6 24.03.2022 SB2022021530
SB2022032413
SB2022040807
and 110 more
#VU61337 - Heap-based Buffer Overflow
CVE-2022-22629
CWE-122 High
Available
No
1.1.2 14.03.2022 SB2022031433
SB2022031436
SB2022031437
and 33 more
#VU61336 - Use After Free
CVE-2022-22628
CWE-416 High
No
No
1.1.2 14.03.2022 SB2022031433
SB2022031436
SB2022031437
and 32 more
#VU61335 - Use After Free
CVE-2022-22624
CWE-416 High
No
No
1.1.2 14.03.2022 SB2022031433
SB2022031436
SB2022031437
and 32 more
#VU61333 - Exposure of sensitive information to an unauthorized actor
CVE-2022-22662
CWE-200 Medium
No
No
1.1.2 14.03.2022 SB2022031433
SB2022031434
SB2022031435
and 35 more


Showing elements 261 - 280 out of 307