Known vulnerabilities in OpenShift API for Data Protection (OADP) - page 5

Software CPE: cpe:2.3:a:red_hat:oadp:*:*:*:*:*:red_hat_openshift_container_platform:*:*
Total vulnerabilities: 307
Public exploits: 18
Known exploited (KEV): 6
Highest CVSSv4 Score: 9.3

Breakdown by Severity Chart

Severity distribution of vulnerabilities affecting OpenShift API for Data Protection (OADP) OpenShift API for Data Protection (OADP) is affected by 307 known vulnerabilities: 2 critical, 67 high, 164 medium, 74 low Critical High Medium Low

Vulnerabilities (307)

Vulnerability CWE-ID CSH Severity Public Exploit KEV First fixed release Published Bulletins
#VU95157 - Incorrect Provision of Specified Functionality
CVE-2024-4032
CWE-684 Medium
No
No
1.3.3 02.08.2024 SB2024080203
SB2024080207
SB2024080209
and 101 more
#VU92201 - Heap-based Buffer Overflow
CVE-2022-48622
CWE-122 High
No
No
1.3.3 18.06.2024 SB2024061845
SB2024061849
SB2024061854
and 23 more
#VU92102 - Uncontrolled Search Path Element
CVE-2024-33871
CWE-427 High
No
No
1.3.3 13.06.2024 SB20240613135
SB20240613136
SB2024061422
and 28 more
#VU92075 - UNIX Symbolic Link (Symlink) Following
CVE-2024-35235
CWE-61 Low
Available
No
1.3.3 13.06.2024 SB2024061389
SB2024061398
SB2024061399
and 29 more
#VU91160 - Improper input validation
CVE-2024-24790
CWE-20 Medium
No
No
1.3.3 05.06.2024 SB2024060520
SB2024060635
SB2024060729
and 90 more
#VU91159 - Improper input validation
CVE-2024-24789
CWE-20 Low
No
No
1.3.3 05.06.2024 SB2024060520
SB2024060635
SB2024060729
and 78 more
#VU89296 - Loop with Unreachable Exit Condition ('Infinite Loop')
CVE-2024-24788
CWE-835 Medium
No
No
1.3.3 09.05.2024 SB2024050936
SB2024050937
SB2024051029
and 43 more
#VU88827 - Argument Injection or Modification
CVE-2024-32462
CWE-88 Low
No
No
1.3.3 19.04.2024 SB2024041902
SB2024041903
SB2024042944
and 29 more
#VU88184 - Resource exhaustion
CVE-2023-45288
CWE-400 Medium
Available
No
1.3.3 05.04.2024 SB2024040533
SB2024040549
SB2024040551
and 189 more
#VU87201 - Improper input validation
CVE-2024-24784
CWE-20 Medium
No
No
1.3.2 07.03.2024 SB2024030734
SB2024030750
SB2024030752
and 48 more
#VU87200 - Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')
CVE-2024-24785
CWE-79 Low
No
No
1.3.2 07.03.2024 SB2024030734
SB2024030750
SB2024030752
and 61 more
#VU87198 - Exposure of sensitive information to an unauthorized actor
CVE-2023-45289
CWE-200 Low
No
No
1.3.2 07.03.2024 SB2024030734
SB2024030750
SB2024030752
and 54 more
#VU87197 - Resource exhaustion
CVE-2023-45290
CWE-400 Medium
No
No
1.3.2 07.03.2024 SB2024030734
SB2024030750
SB2024030752
and 101 more
#VU87196 - Error Handling
CVE-2024-24783
CWE-388 Medium
No
No
1.3.2 07.03.2024 SB2024030734
SB2024030750
SB2024030752
and 81 more
#VU86885 - Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection')
CVE-2022-48624
CWE-78 Medium
No
No
1.3.2 28.02.2024 SB2024022820
SB2024022839
SB2024030503
and 60 more
#VU83502 - Loop with Unreachable Exit Condition ('Infinite Loop')
CVE-2022-40090
CWE-835 Medium
No
No
1.3.2 27.11.2023 SB2023112716
SB2023112717
SB2023121257
and 12 more
#VU82946 - Integer overflow
CVE-2022-33065
CWE-190 High
No
No
1.3.2 09.11.2023 SB2023110948
SB2023110949
SB2023110951
and 8 more
#VU80613 - Out-of-bounds read
CVE-2021-29390
CWE-125 Medium
No
No
1.3.2 11.09.2023 SB2023091154
SB2023091155
SB2023091156
and 33 more
#VU80421 - Out-of-bounds read
CVE-2022-48554
CWE-125 Low
No
No
1.3.2 05.09.2023 SB2023090535
SB2023090536
SB2023091257
and 52 more
#VU41645 - Use After Free
CVE-2014-1745
CWE-416 Medium
No
No
1.3.2 21.05.2014 SB2014052104
SB2023032760
SB2023032802
and 11 more


Showing elements 81 - 100 out of 307