Known vulnerabilities in openshift-kuryr (Red Hat package) - page 8

Software CPE: cpe:2.3:o:red_hat:openshift-kuryr_redhat_package:*:*:*:*:*:red_hat_enterprise_linux:*:*
Total vulnerabilities: 197
Public exploits: 15
Known exploited (KEV): 2
Highest CVSSv4 Score: 9.3

Breakdown by Severity Chart

Severity distribution of vulnerabilities affecting openshift-kuryr (Red Hat package) openshift-kuryr (Red Hat package) is affected by 197 known vulnerabilities: 17 high, 113 medium, 67 low Critical High Medium Low

Vulnerabilities (197)

Vulnerability CWE-ID CSH Severity Public Exploit KEV First fixed release Published Bulletins
#VU53399 - Security Features
CVE-2021-30465
CWE-254 Low
No
No
3.11.452-1.git.c33a657.el7, 4.7.0-202105140104.p0.git.8b61936.el8 20.05.2021 SB2021052013
SB2021052014
SB2021052015
and 33 more
#VU52902 - Improper Validation of Array Index
CVE-2021-3121
CWE-129 High
No
No
4.7.0-202103241948.p0.git.2504.add19d0.el8, 4.8.0-202106281541.p0.git.8a4c2d8.assembly.stream.el8 06.05.2021 SB2021011120
SB2021050602
SB2021050603
and 34 more
#VU52495 - Permissions, Privileges, and Access Controls
CVE-2021-21645
CWE-264 Low
No
No
3.11.462-1.git.c33a657.el7, 4.5.0-202106011407.p0.git.75cc301.el8 22.04.2021 SB2021042205
SB2021060101
SB2021063033
and 3 more
#VU52494 - Cross-Site Request Forgery (CSRF)
CVE-2021-21644
CWE-352 Low
No
No
3.11.462-1.git.c33a657.el7, 4.5.0-202106011407.p0.git.75cc301.el8 22.04.2021 SB2021042205
SB2021060101
SB2021063033
and 3 more
#VU52493 - Permissions, Privileges, and Access Controls
CVE-2021-21643
CWE-264 Low
No
No
3.11.462-1.git.c33a657.el7, 4.5.0-202106011407.p0.git.75cc301.el8 22.04.2021 SB2021042205
SB2021060101
SB2021063033
and 3 more
#VU51878 - Exposure of sensitive information to an unauthorized actor
CVE-2021-28163
CWE-200 Medium
No
No
4.7.0-202105111743.p0.git.36c2cdd.el8 01.04.2021 SB2021040179
SB2021050704
SB2021051321
and 27 more
#VU51876 - Resource exhaustion
CVE-2021-28165
CWE-400 Medium
No
No
4.7.0-202105111743.p0.git.36c2cdd.el8 01.04.2021 SB2021040179
SB2021042208
SB2021050704
and 56 more
#VU51604 - Improper Validation of Certificate with Host Mismatch
CVE-2021-28363
CWE-297 Medium
No
No
3.11.420-1.git.1500.afe0076.el7 22.03.2021 SB2021032215
SB2021052523
SB2021071501
and 9 more
#VU50957 - Integer overflow
CVE-2020-27813
CWE-190 Medium
No
No
3.11.404-1.git.1494.91fb403.el7 25.02.2021 SB2020120224
SB2021052527
SB2023070702
and 3 more
#VU50047 - Incorrect Calculation
CVE-2021-3114
CWE-682 Medium
No
No
4.6.0-202105061806.p0.git.74e6cd2.el8, 4.7.0-202103171728.p0.git.2502.8383c08.el8, 4.7.0-202104250659.p0.git.d49acc4.el8, 4.7.0-202105111743.p0.git.36c2cdd.el8, 4.8.0-202106281541.p0.git.8a4c2d8.assembly.stream.el8 26.01.2021 SB2021012714
SB2021012715
SB20210120130
and 40 more
#VU49522 - Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')
CVE-2021-21603
CWE-79 Low
No
No
4.6.0-202102031810.p0.git.2225.a3ab872.el8 13.01.2021 SB2021011418
SB2021011445
SB2021012106
and 2 more
#VU49526 - XML Injection
CVE-2021-21604
CWE-91 Medium
No
No
4.6.0-202102031810.p0.git.2225.a3ab872.el8 13.01.2021 SB2021011418
SB2021011446
SB2021012106
and 2 more
#VU49527 - Exposure of sensitive information to an unauthorized actor
CVE-2021-21602
CWE-200 Medium
No
No
4.6.0-202102031810.p0.git.2225.a3ab872.el8 13.01.2021 SB2021011418
SB2021011444
SB2021012106
and 2 more
#VU49528 - Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal')
CVE-2021-21605
CWE-22 Medium
No
No
4.6.0-202102031810.p0.git.2225.a3ab872.el8 13.01.2021 SB2021011418
SB2021011447
SB2021012106
and 2 more
#VU49529 - Permissions, Privileges, and Access Controls
CVE-2021-21606
CWE-264 Low
No
No
4.6.0-202102031810.p0.git.2225.a3ab872.el8 13.01.2021 SB2021011418
SB2021011448
SB2021012106
and 2 more
#VU48480 - Improper input validation
CVE-2020-28362
CWE-20 Medium
No
No
4.7.0-202104250659.p0.git.d49acc4.el8, 4.7.0-202105111743.p0.git.36c2cdd.el8 17.11.2020 SB2020111715
SB2020111716
SB2020111225
and 30 more
#VU45699 - Loop with Unreachable Exit Condition ('Infinite Loop')
CVE-2020-16845
CWE-835 Medium
No
No
4.5.0-202010091010.p0.git.1998.b73d461.el8, 4.5.0-202012022006.p0.git.2002.19b85d0.el8, 4.6.0-202103192141.p0.git.2234.cba9525.el8, 4.7.0-202104250659.p0.git.d49acc4.el8 14.08.2020 SB2020081403
SB2020081404
SB2020081405
and 44 more
#VU31891 - Concurrent Execution using Shared Resource with Improper Synchronization ('Race Condition')
CVE-2020-15586
CWE-362 Medium
No
No
4.5.0-202010091010.p0.git.1998.b73d461.el8, 4.5.0-202012022006.p0.git.2002.19b85d0.el8, 4.6.0-202103192141.p0.git.2234.cba9525.el8, 4.7.0-202104250659.p0.git.d49acc4.el8 27.07.2020 SB2020072734
SB2020072735
SB2020072749
and 37 more
#VU27924 - Incorrect Default Permissions
CVE-2020-1945
CWE-276 Low
No
No
4.6.0-202102031810.p0.git.2225.a3ab872.el8 15.05.2020 SB2020051501
SB2020052114
SB2020060205
and 48 more
#VU47428 - Permissions, Privileges, and Access Controls
CVE-2020-11979
CWE-264 Low
No
No
4.6.0-202102031810.p0.git.2225.a3ab872.el8 14.05.2020 SB2020100804
SB2020100815
SB2020111614
and 51 more


Showing elements 141 - 160 out of 197