Known vulnerabilities in OpenShift Data Foundation (formerly OpenShift Container Storage) - page 5

Software CPE: cpe:2.3:a:red_hat:openshift_container_storage:*:*:*:*:*:*:*:*
Total vulnerabilities: 476
Public exploits: 35
Known exploited (KEV): 5
Highest CVSSv4 Score: 9.4

Breakdown by Severity Chart

Severity distribution of vulnerabilities affecting OpenShift Data Foundation (formerly OpenShift Container Storage) OpenShift Data Foundation (formerly OpenShift Container Storage) is affected by 476 known vulnerabilities: 1 critical, 90 high, 246 medium, 139 low Critical High Medium Low

Vulnerabilities (476)

Vulnerability CWE-ID CSH Severity Public Exploit KEV First fixed release Published Bulletins
#VU100912 - Improper Authentication
CVE-2024-10963
CWE-287 Medium
No
No
4.14.13, 4.15.9, 4.16.4, 4.17.1 25.11.2024 SB2024112540
SB2024112541
SB2024112542
and 56 more
#VU99614 - Improper input validation
CVE-2024-50602
CWE-20 Medium
No
No
4.14.13, 4.15.9, 4.16.4, 4.17.1 01.11.2024 SB2024110155
SB2024110182
SB2024110534
and 98 more
#VU98828 - Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal')
CVE-2024-9675
CWE-22 Low
No
No
4.14.13, 4.15.9, 4.16.4, 4.17.1 21.10.2024 SB2024102103
SB2024102104
SB2024102107
and 51 more
#VU98817 - UNIX Symbolic Link (Symlink) Following
CVE-2024-9676
CWE-61 Low
No
No
4.14.13, 4.15.9, 4.16.4, 4.17.1 18.10.2024 SB2024101822
SB2024101823
SB2024101824
and 54 more
#VU97217 - Resource exhaustion
CVE-2024-34158
CWE-400 Medium
No
No
4.14.13, 4.15.9, 4.16.4, 4.17.1 12.09.2024 SB2024091261
SB2024091264
SB2024091265
and 76 more
#VU97216 - Resource exhaustion
CVE-2024-34156
CWE-400 Medium
No
No
4.14.13, 4.15.9, 4.16.4, 4.17.1 12.09.2024 SB2024091261
SB2024091264
SB2024091265
and 143 more
#VU97215 - Resource exhaustion
CVE-2024-34155
CWE-400 Medium
No
No
4.14.13, 4.15.9, 4.16.4, 4.17.1 12.09.2024 SB2024091261
SB2024091264
SB2024091265
and 81 more
#VU97208 - Asymmetric Resource Consumption (Amplification)
CVE-2024-45590
CWE-405 Medium
Available
No
4, 4.14.18, 4.15.14, 4.16.3, 4.17.0, 4.17.7 12.09.2024 SB2024091249
SB2024091251
SB2024091252
and 59 more
#VU96745 - Incorrect Regular Expression
CVE-2024-6232
CWE-185 Medium
No
No
4.16.4, 4.17.1 03.09.2024 SB2024090377
SB2024090927
SB2024091048
and 145 more
#VU96744 - Type confusion
CVE-2024-6119
CWE-843 Medium
No
No
4.13.12, 4.14.11, 4.16.3 03.09.2024 SB2024090364
SB2024090365
SB2024090384
and 99 more
#VU96642 - Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')
CVE-2024-43788
CWE-79 Low
No
No
4.14.13, 4.16.3, 4.17.0 30.08.2024 SB2024083026
SB2024100824
SB2024100825
and 21 more
#VU94063 - Use of a Broken or Risky Cryptographic Algorithm
CVE-2024-3596
CWE-327 Medium
Available
No
4.14.13, 4.15.9, 4.16.4, 4.17.1 10.07.2024 SB2024071018
SB2024071019
SB2024071020
and 114 more
#VU93424 - Out-of-bounds read
CVE-2024-5535
CWE-125 Low
Available
No
4.14.13, 4.15.9, 4.16.4, 4.17.1 27.06.2024 SB2024062720
SB20240717135
SB2024072154
and 157 more
#VU89861 - Use After Free
CVE-2024-4741
CWE-416 Medium
No
No
4.14.13, 4.15.9, 4.16.4, 4.17.1 29.05.2024 SB2024052912
SB2024060803
SB2024060804
and 88 more
#VU89677 - Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')
CVE-2024-34064
CWE-79 Medium
No
No
4.14.13, 4.15.9, 4.16.4, 4.17.1 20.05.2024 SB2024052067
SB2024052081
SB2024052082
and 83 more
#VU89624 - Resource Management Errors
CVE-2024-4603
CWE-399 Low
No
No
4.14.13, 4.15.9, 4.16.4, 4.17.1 17.05.2024 SB2024051715
SB2024052732
SB2024060735
and 65 more
#VU89351 - Insufficient Verification of Data Authenticity
CVE-2024-34397
CWE-345 Low
No
No
4.13.12, 4.14.11, 4.16.3 10.05.2024 SB2024051042
SB2024051043
SB2024051044
and 88 more
#VU88532 - URL Redirection to Untrusted Site ('Open Redirect')
CVE-2024-29041
CWE-601 Medium
No
No
4, 4.14.11, 4.14.18, 4.15.14, 4.17.7 15.04.2024 SB2024041530
SB2024041532
SB2024042918
and 44 more
#VU88211 - Resource exhaustion
CVE-2024-2511
CWE-400 Medium
No
No
4.14.13, 4.15.9, 4.16.4, 4.17.1 08.04.2024 SB2024040853
SB2024042960
SB2024051069
and 91 more
#VU87339 - Information Exposure Through Timing Discrepancy
CVE-2024-2236
CWE-208 Medium
No
No
4.14.13, 4.15.9, 4.16.4, 4.17.1 11.03.2024 SB2024031137
SB2024031141
SB2024111242
and 58 more


Showing elements 81 - 100 out of 476