Known vulnerabilities in OpenShift Compliance Operator

Software CPE: cpe:2.3:a:red_hat:openshift_compliance_operator:*:*:*:*:*:*:*:*
Total vulnerabilities: 7
Public exploits: 0
Known exploited (KEV): 0
Highest CVSSv4 Score: 9.2

Breakdown by Severity Chart

Severity distribution of vulnerabilities affecting OpenShift Compliance Operator OpenShift Compliance Operator is affected by 7 known vulnerabilities: 2 high, 2 medium, 3 low Critical High Medium Low

Vulnerabilities (7)

Vulnerability CWE-ID CSH Severity Public Exploit KEV First fixed release Published Bulletins
#VU118221 - Incorrect Default Permissions
CVE-2025-7195
CWE-276 Low
No
No
1.8.1 10.11.2025 SB2025111053
SB2025120350
SB2025120351
and 8 more
#VU114769 - Improper Link Resolution Before File Access ('Link Following')
CVE-2025-8941
CWE-59 Low
No
No
1.8.0 03.09.2025 SB2025090350
SB2025090372
SB2025090373
and 20 more
#VU113533 - Use After Free
CVE-2025-7425
CWE-416 High
No
No
1.8.0 31.07.2025 SB2025073137
SB2025073144
SB2025073053
and 56 more
#VU113156 - Memory corruption
CVE-2025-6965
CWE-119 Medium
No
No
1.8.0 22.07.2025 SB2025072254
SB2025072807
SB2025072890
and 100 more
#VU111389 - Improper Access Control
CVE-2025-6020
CWE-284 Low
No
No
1.8.0 19.06.2025 SB2025061987
SB2025061992
SB20250619103
and 69 more
#VU111143 - Double Free
CVE-2025-5914
CWE-415 High
No
No
1.8.0 16.06.2025 SB2025061602
SB2025061603
SB2025061604
and 51 more
#VU102730 - Use of Uninitialized Variable
CVE-2024-12085
CWE-457 Medium
No
No
1.8.0 14.01.2025 SB2025011495
SB2025011504
SB2025011530
and 92 more