Known vulnerabilities in openshift-clients (Red Hat package) - page 11

Software CPE: cpe:2.3:o:red_hat:openshift-clients_redhat_package:*:*:*:*:*:red_hat_enterprise_linux:*:*
Total vulnerabilities: 220
Public exploits: 19
Known exploited (KEV): 3
Highest CVSSv4 Score: 9.3

Breakdown by Severity Chart

Severity distribution of vulnerabilities affecting openshift-clients (Red Hat package) openshift-clients (Red Hat package) is affected by 220 known vulnerabilities: 13 high, 136 medium, 71 low Critical High Medium Low

Vulnerabilities (220)

Vulnerability CWE-ID CSH Severity Public Exploit KEV First fixed release Published Bulletins
#VU69447 - Reachable Assertion
CVE-2020-9283
CWE-617 Medium
Available
No
4.3.31-202007250052.p0.git.3329.59998b9.el7, 4.3.31-202007250052.p0.git.3329.59998b9.el8 21.11.2022 SB2020022039
SB2022112104
SB2023090418
and 6 more
#VU48976 - Information Exposure Through Log Files
CVE-2020-8563
CWE-532 Low
No
No
4.6.0-202011260456.p0.git.3798.fcf58ff.el7, 4.6.0-202011260456.p0.git.3798.fcf58ff.el8 07.12.2020 SB2020121507
SB2020121508
SB2020121509
#VU26474 - Uncontrolled Memory Allocation
CVE-2020-8552
CWE-789 Medium
No
No
4.3.9-202003230116.git.0.3d3933c.el7, 4.3.9-202003230116.git.0.3d3933c.el8 31.03.2020 SB2020033111
SB2020040174
SB2020042251
and 6 more
#VU26412 - Improper Neutralization of CRLF Sequences ('CRLF Injection')
CVE-2019-11236
CWE-93 Medium
Available
No
4.3.28-202006270952.p0.git.3325.7c2f859.el7, 4.3.28-202006270952.p0.git.3325.7c2f859.el8, 4.4.0-202006271254.p0.git.3436.9f4fcab.el7, 4.4.0-202006271254.p0.git.3436.9f4fcab.el8 26.03.2020 SB2020032626
SB2020031827
SB2019091504
and 36 more
#VU26393 - Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')
CVE-2020-2163
CWE-79 Low
No
No
4.3.25-202006060952.git.1.fd93102.el7, 4.3.25-202006060952.git.1.fd93102.el8, 4.4.0-202006061254.git.1.26cb6dc.el7, 4.4.0-202006061254.git.1.26cb6dc.el8 26.03.2020 SB2020032622
SB2020032668
SB2020061738
and 1 more
#VU26392 - Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')
CVE-2020-2162
CWE-79 Low
No
No
4.3.25-202006060952.git.1.fd93102.el7, 4.3.25-202006060952.git.1.fd93102.el8, 4.4.0-202006061254.git.1.26cb6dc.el7, 4.4.0-202006061254.git.1.26cb6dc.el8 26.03.2020 SB2020032622
SB2020032667
SB2020061738
and 1 more
#VU26391 - Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')
CVE-2020-2161
CWE-79 Low
No
No
4.3.25-202006060952.git.1.fd93102.el7, 4.3.25-202006060952.git.1.fd93102.el8, 4.4.0-202006061254.git.1.26cb6dc.el7, 4.4.0-202006061254.git.1.26cb6dc.el8 26.03.2020 SB2020032622
SB2020032662
SB2020061738
and 1 more
#VU26390 - Cross-Site Request Forgery (CSRF)
CVE-2020-2160
CWE-352 Low
No
No
4.3.25-202006060952.git.1.fd93102.el7, 4.3.25-202006060952.git.1.fd93102.el8, 4.4.0-202006061254.git.1.26cb6dc.el7, 4.4.0-202006061254.git.1.26cb6dc.el8 26.03.2020 SB2020032622
SB2020032661
SB2020061738
and 1 more
#VU25501 - Use After Free
CVE-2020-8945
CWE-416 High
No
No
4.2.32-202005020632.git.1.1b0fab9.el8, 4.3.7-202003130552.git.0.6027a27.el7, 4.3.7-202003130552.git.0.6027a27.el8, 4.3.10-202003300001.git.0.e43c148.el8, 4.3.10-202003300415.git.0.3576c99.el7 21.02.2020 SB2020022110
SB2020031116
SB2020031126
and 23 more
#VU25458 - Heap-based Buffer Overflow
CVE-2020-7039
CWE-122 Low
No
No
4.3.1-202001310552.git.1.075d46a.el7, 4.3.1-202001310552.git.1.075d46a.el8 19.02.2020 SB2020021912
SB2020031117
SB2020031053
and 25 more
#VU25457 - Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal')
CVE-2020-7211
CWE-22 Low
No
No
4.3.1-202001310552.git.1.075d46a.el7, 4.3.1-202001310552.git.1.075d46a.el8 19.02.2020 SB2020021912
SB2020021193
#VU24764 - User Interface (UI) Misrepresentation of Critical Information (Clickjacking, spoofing)
CVE-2020-2105
CWE-451 Low
No
No
4.3.5-202002280657.git.1.55a9334.el7, 4.3.5-202002280657.git.1.55a9334.el8 30.01.2020 SB2020013005
SB20200310153
#VU24763 - Exposure of sensitive information to an unauthorized actor
CVE-2020-2104
CWE-200 Low
No
No
4.3.5-202002280657.git.1.55a9334.el7, 4.3.5-202002280657.git.1.55a9334.el8 30.01.2020 SB2020013005
SB20200310153
#VU24762 - Exposure of sensitive information to an unauthorized actor
CVE-2020-2103
CWE-200 Low
No
No
4.3.5-202002280657.git.1.55a9334.el7, 4.3.5-202002280657.git.1.55a9334.el8 30.01.2020 SB2020013005
SB20200310153
#VU24761 - Cryptographic Issues
CVE-2020-2102
CWE-310 Medium
No
No
4.3.5-202002280657.git.1.55a9334.el7, 4.3.5-202002280657.git.1.55a9334.el8 30.01.2020 SB2020013005
SB20200310153
#VU24760 - Exposure of sensitive information to an unauthorized actor
CVE-2020-2101
CWE-200 Medium
No
No
4.3.5-202002280657.git.1.55a9334.el7, 4.3.5-202002280657.git.1.55a9334.el8 30.01.2020 SB2020013005
SB20200310153
#VU24759 - Resource Management Errors
CVE-2020-2100
CWE-399 Medium
No
No
4.3.5-202002280657.git.1.55a9334.el7, 4.3.5-202002280657.git.1.55a9334.el8 30.01.2020 SB2020013005
SB20200310153
#VU24758 - Improper Authentication
CVE-2020-2099
CWE-287 High
No
No
4.3.5-202002280657.git.1.55a9334.el7, 4.3.5-202002280657.git.1.55a9334.el8 30.01.2020 SB2020013004
SB20200310153
#VU21780 - Improper Certificate Validation
CVE-2019-11324
CWE-295 Medium
Available
No
4.3.28-202006270952.p0.git.3325.7c2f859.el7, 4.3.28-202006270952.p0.git.3325.7c2f859.el8, 4.4.0-202006271254.p0.git.3436.9f4fcab.el7, 4.4.0-202006271254.p0.git.3436.9f4fcab.el8 15.10.2019 SB2019041823
SB2020031827
SB2019091504
and 19 more
#VU21118 - Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection')
CVE-2019-10392
CWE-78 Medium
No
No
4.3.3-202002140552.git.1.ff73b47.el7, 4.3.3-202002140552.git.1.ff73b47.el8 16.09.2019 SB2019091607
SB2020061842
SB2020022451
and 2 more


Showing elements 201 - 220 out of 220