Known vulnerabilities in OpenShift Logging - page 2

Software CPE: cpe:2.3:a:red_hat:openshift_logging:*:*:*:*:*:*:*:*
Total vulnerabilities: 810
Public exploits: 50
Known exploited (KEV): 10
Highest CVSSv4 Score: 9.3

Breakdown by Severity Chart

Severity distribution of vulnerabilities affecting OpenShift Logging OpenShift Logging is affected by 810 known vulnerabilities: 2 critical, 100 high, 218 medium, 490 low Critical High Medium Low

Vulnerabilities (810)

Vulnerability CWE-ID CSH Severity Public Exploit KEV First fixed release Published Bulletins
#VU105983 - Resource exhaustion
CVE-2025-30204
CWE-400 Medium
No
No
5.9.13, 6.0.7, 6.0.12, 6.1.5, 6.2.7 24.03.2025 SB2025032475
SB2025032730
SB2025040333
and 97 more
#VU105794 - Improper Neutralization of CRLF Sequences ('CRLF Injection')
CVE-2025-25184
CWE-93 Low
No
No
5.9.12 17.03.2025 SB2025031754
SB2025031758
SB20250317118
and 8 more
#VU105450 - Resource exhaustion
CVE-2025-27144
CWE-400 Medium
No
No
5.9.13, 6.0.6, 6.1.4 07.03.2025 SB2025030735
SB2025030736
SB2025030737
and 80 more
#VU104117 - Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection')
CVE-2025-1244
CWE-78 High
No
No
5.8.18 21.02.2025 SB2025022110
SB2025022111
SB2025022112
and 31 more
#VU104099 - Use After Free
CVE-2024-56171
CWE-416 High
No
No
5.8.19, 5.9.13, 6.0.6, 6.1.4, 6.1.5 20.02.2025 SB2025022003
SB2025022010
SB2025022023
and 111 more
#VU104098 - Stack-based buffer overflow
CVE-2025-24928
CWE-121 High
No
No
5.8.19, 5.9.13, 6.0.6, 6.1.4, 6.1.5 20.02.2025 SB2025022003
SB2025022010
SB2025022023
and 111 more
#VU103771 - Improper Authentication
CVE-2024-12797
CWE-287 Medium
No
No
5.8.19, 5.8.20, 5.9.12, 5.9.14 11.02.2025 SB2025021187
SB20250211108
SB20250211159
and 60 more
#VU103502 - Use After Free
CVE-2022-49043
CWE-416 Medium
No
No
5.8.18, 5.9.12, 6.0.6, 6.1.4, 6.1.5 03.02.2025 SB2025020327
SB2025020330
SB2025020353
and 60 more
#VU103455 - Exposure of sensitive information to an unauthorized actor
CVE-2024-45336
CWE-200 Low
No
No
6.1.4 30.01.2025 SB2025013039
SB2025013043
SB2025013044
and 38 more
#VU101868 - Resource exhaustion
CVE-2024-45338
CWE-400 Medium
No
No
5.8.20, 5.9.14, 6.0.6, 6.1.4 19.12.2024 SB2024121932
SB2024123101
SB2025010619
and 137 more
#VU97182 - Use of Uninitialized Resource
CVE-2024-45018
CWE-908 Low
No
No
5.8.17 12.09.2024 SB2024091226
SB2024100401
SB2024100877
and 39 more
#VU96886 - Improper input validation
CVE-2024-44994
CWE-20 Low
No
No
5.8.17 05.09.2024 SB2024090577
SB2024092777
SB2024121158
and 1 more
#VU96099 - Missing release of memory after effective lifetime
CVE-2024-43854
CWE-401 Low
No
No
5.8.17 19.08.2024 SB2024081941
SB2024090668
SB2024090669
and 58 more
#VU95441 - Missing release of memory after effective lifetime
CVE-2024-26462
CWE-401 Medium
No
No
5.8.17, 5.8.20 07.08.2024 SB2024040939
SB2024080724
SB2024080725
and 18 more
#VU93849 - Permissions, Privileges, and Access Controls
CVE-2024-38564
CWE-264 Low
No
No
5.8.17 07.07.2024 SB2024070725
SB2024070726
SB2024070973
and 30 more
#VU90627 - NULL Pointer Dereference
CVE-2024-26615
CWE-476 Low
No
No
5.8.17 31.05.2024 SB20240531529
SB2024062123
SB2024062124
and 45 more
#VU89673 - NULL Pointer Dereference
CVE-2024-27399
CWE-476 Medium
No
No
5.8.17 20.05.2024 SB2024052063
SB2024052087
SB2024052088
and 45 more
#VU88226 - Missing release of memory after effective lifetime
CVE-2024-26461
CWE-401 Medium
No
No
5.8.17, 5.8.20 09.04.2024 SB2024040939
SB2024040943
SB20240611102
and 46 more
#VU88225 - Missing release of memory after effective lifetime
CVE-2024-26458
CWE-401 Medium
No
No
5.8.17, 5.8.20 09.04.2024 SB2024040938
SB2024040943
SB20240611102
and 47 more
#VU27519 - Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')
CVE-2020-11023
CWE-79 Low
Available
Exploited
5.8.18, 5.8.19, 5.8.20, 5.9.12, 5.9.14 05.05.2020 SB2020042126
SB2020052033
SB2020052103
and 180 more


Showing elements 21 - 40 out of 810