Known vulnerabilities in python-pulpcore (Red Hat package) - page 5

Software CPE: cpe:2.3:o:red_hat:python-pulpcore_redhat_package:*:*:*:*:*:red_hat_enterprise_linux:*:*
Total vulnerabilities: 95
Public exploits: 7
Known exploited (KEV): 3
Highest CVSSv4 Score: 9.3

Breakdown by Severity Chart

Severity distribution of vulnerabilities affecting python-pulpcore (Red Hat package) python-pulpcore (Red Hat package) is affected by 95 known vulnerabilities: 17 high, 61 medium, 17 low Critical High Medium Low

Vulnerabilities (95)

Vulnerability CWE-ID CSH Severity Public Exploit KEV First fixed release Published Bulletins
#VU82280 - Improper Control of Generation of Code ('Code Injection')
CVE-2023-0462
CWE-94 Low
No
No
3.21.18-1.el8pc 20.10.2023 SB2023102019
SB2023102351
SB2023102352
#VU82064 - Resource exhaustion
CVE-2023-39325
CWE-400 Medium
No
No
3.21.18-1.el8pc 16.10.2023 SB2023101651
SB2023101652
SB2023101653
and 341 more
#VU81728 - Resource exhaustion
CVE-2023-44487
CWE-400 High
Available
Exploited
3.21.18-1.el8pc 10.10.2023 SB2023101023
SB2023101024
SB2023101037
and 650 more
#VU79631 - Improper input validation
CVE-2023-40267
CWE-20 High
No
No
3.21.18-1.el8pc 16.08.2023 SB2023081631
SB20230821206
SB20230821207
and 9 more
#VU79630 - Improper Control of Generation of Code ('Code Injection')
CVE-2022-24439
CWE-94 High
No
No
3.21.18-1.el8pc 16.08.2023 SB2022120650
SB20230816235
SB2023082070
and 12 more
#VU78931 - Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection')
CVE-2023-0118
CWE-78 Low
No
No
3.21.9-1.el8pc 03.08.2023 SB2023080359
SB2023080360
SB2023102351
and 2 more
#VU71137 - Incorrect Regular Expression
CVE-2022-40899
CWE-185 Medium
No
No
3.21.9-1.el8pc 12.01.2023 SB2023011234
SB2023011239
SB2023011240
and 26 more
#VU69545 - Incorrect Default Permissions
CVE-2022-41946
CWE-276 Low
No
No
3.18.16-1.el8pc 23.11.2022 SB2022112335
SB2023010922
SB2023011025
and 42 more
#VU68307 - Improper Control of Generation of Code ('Code Injection')
CVE-2022-42889
CWE-94 High
Available
Exploited
3.18.11-1.el8pc 14.10.2022 SB2022101405
SB2022102709
SB2022110306
and 91 more
#VU65868 - Deserialization of Untrusted Data
CVE-2022-32224
CWE-502 Medium
No
No
3.18.11-1.el8pc 28.07.2022 SB2022072836
SB2023011881
SB2023050806
and 2 more
#VU62051 - Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection')
CVE-2022-28347
CWE-89 High
No
No
3.15.9-2.el8pc, 3.17.6-3.el8ui 11.04.2022 SB2022041110
SB2022041125
SB2022041267
and 8 more
#VU62050 - Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection')
CVE-2022-28346
CWE-89 High
Available
No
3.15.9-2.el8pc, 3.17.6-3.el8ui 11.04.2022 SB2022041110
SB2022041125
SB2022041126
and 14 more
#VU61248 - Improper Authentication
CVE-2021-4142
CWE-287 Medium
No
No
3.14.12-1.el7pc 10.03.2022 SB2022031037
#VU54626 - Improper Control of Generation of Code ('Code Injection')
CVE-2021-3583
CWE-94 High
No
No
3.11.2-2.el8pc 08.07.2021 SB2021070822
SB2021070823
SB2021071517
and 12 more
#VU53543 - Off-by-one Error
CVE-2021-23017
CWE-193 High
Available
No
3.7.6-1.el7pc 25.05.2021 SB2021052543
SB2021052713
SB2021052901
and 48 more


Showing elements 81 - 100 out of 95