Known vulnerabilities in openstack-tripleo-heat-templates (Red Hat package)

Software CPE: cpe:2.3:o:red_hat:openstack-tripleo-heat-templates_redhat_package:*:*:*:*:*:red_hat_enterprise_linux:*:*
Total vulnerabilities: 11
Public exploits: 0
Known exploited (KEV): 0
Highest CVSSv4 Score: 9.3

Breakdown by Severity Chart

Severity distribution of vulnerabilities affecting openstack-tripleo-heat-templates (Red Hat package) openstack-tripleo-heat-templates (Red Hat package) is affected by 11 known vulnerabilities: 1 high, 5 medium, 5 low Critical High Medium Low

Vulnerabilities (11)

Vulnerability CWE-ID CSH Severity Public Exploit KEV First fixed release Published Bulletins
#VU140607 - Time-of-check Time-of-use (TOCTOU) Race Condition
CVE-2026-32282
CWE-367 Low
No
No
14.3.1-17.1.20260803105013.e7c7ce3.el9ost 31.07.2026 SB2026073125
SB2026073160
SB2026073161
and 51 more
#VU140599 - Resource exhaustion
CVE-2026-32280
CWE-400 Medium
No
No
14.3.1-17.1.20260803105013.e7c7ce3.el9ost 31.07.2026 SB2026073125
SB2026073160
SB2026073161
and 75 more
#VU136680 - Dependency on Vulnerable Third-Party Component
CVE-2026-32283
CWE-1395 Medium
No
No
14.3.1-17.1.20260803105013.e7c7ce3.el9ost 02.07.2026 SB2026070218
SB2026070239
SB2026070240
and 63 more
#VU124118 - Improper input validation
CVE-2026-25679
CWE-20 Medium
No
No
14.3.1-17.1.20260803105013.e7c7ce3.el9ost 19.03.2026 SB2026031903
SB2026031904
SB2026031905
and 136 more
#VU124034 - Resource exhaustion
CVE-2025-61726
CWE-400 Medium
No
No
14.3.1-17.1.20260803105013.e7c7ce3.el9ost 16.03.2026 SB2026031636
SB2026031637
SB2026031638
and 145 more
#VU123129 - Improper Certificate Validation
CVE-2025-68121
CWE-295 High
No
No
14.3.1-17.1.20260803105013.e7c7ce3.el9ost 23.02.2026 SB2026022333
SB2026030334
SB2026030343
and 118 more
#VU122995 - Allocation of Resources Without Limits or Throttling
CVE-2026-24708
CWE-770 Low
No
No
14.3.1-17.1.20260803105013.e7c7ce3.el9ost 17.02.2026 SB2026021762
SB2026021847
SB2026022004
and 2 more
#VU100770 - Information Exposure Through Log Files
CVE-2024-4840
CWE-532 Low
No
No
14.3.1-17.1.20240919130756.el9ost 21.11.2024 SB2024112112
#VU87916 - Exposure of sensitive information to an unauthorized actor
CVE-2024-29156
CWE-200 Medium
No
No
11.6.1-2.20230808225220.el8ost, 14.3.1-17.1.20231103003748.2.el8ost, 14.3.1-17.1.20231103010826.2.el9ost 29.03.2024 SB2024032948
SB2024032949
SB2024032950
and 6 more
#VU68863 - Incorrect Default Permissions
CVE-2022-3146
CWE-276 Low
No
No
11.3.2-1.20220114223346.el8ost, 11.6.1-2.20220409014870.el8ost 31.10.2022 SB2022103149
#VU68862 - Incorrect Default Permissions
CVE-2022-3101
CWE-276 Low
No
No
11.3.2-1.20220114223346.el8ost, 11.6.1-2.20220409014870.el8ost 31.10.2022 SB2022103149