Known vulnerabilities in Quay - page 3

Software: Quay
Software CPE: cpe:2.3:a:red_hat:quay:*:*:*:*:*:*:*:*
Total vulnerabilities: 115
Public exploits: 10
Known exploited (KEV): 1
Highest CVSSv4 Score: 9.3

Breakdown by Severity Chart

Severity distribution of vulnerabilities affecting Quay Quay is affected by 115 known vulnerabilities: 40 high, 52 medium, 23 low Critical High Medium Low

Vulnerabilities (115)

Vulnerability CWE-ID CSH Severity Public Exploit KEV First fixed release Published Bulletins
#VU48896 - NULL Pointer Dereference
CVE-2020-1971
CWE-476 Medium
Available
No
3.3.3 08.12.2020 SB2020120852
SB2020120903
SB2020120905
and 91 more
#VU46824 - Out-of-bounds write
CVE-2020-14382
CWE-787 High
No
No
3.3.3 16.09.2020 SB2020090419
SB2020110421
SB2020110527
and 7 more
#VU49120 - Cleartext Storage of Sensitive Information
CVE-2020-14391
CWE-312 Low
No
No
3.3.3 01.09.2020 SB2020122208
SB2021011210
SB2021012638
and 2 more
#VU34080 - NULL Pointer Dereference
CVE-2020-13632
CWE-476 Low
No
No
3.3.3 06.08.2020 SB2020080601
SB2020080704
SB2020072756
and 21 more
#VU34079 - Permissions, Privileges, and Access Controls
CVE-2020-13631
CWE-264 Low
No
No
3.3.3 06.08.2020 SB2020080601
SB2020080704
SB2020072756
and 22 more
#VU34077 - Use After Free
CVE-2020-13630
CWE-416 High
No
No
3.3.3 06.08.2020 SB2020080601
SB2020080704
SB2020072756
and 21 more
#VU32970 - Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')
CVE-2020-9925
CWE-79 Medium
No
No
3.3.3 02.08.2020 SB2020080202
SB2020080203
SB2020082501
and 11 more
#VU32969 - Permissions, Privileges, and Access Controls
CVE-2020-9915
CWE-264 Medium
No
No
3.3.3 02.08.2020 SB2020080202
SB2020080203
SB2020082501
and 11 more
#VU32968 - Use After Free
CVE-2020-9895
CWE-416 High
No
No
3.3.3 02.08.2020 SB2020080202
SB2020080203
SB2020082501
and 11 more
#VU32967 - Out-of-bounds read
CVE-2020-9894
CWE-125 Medium
No
No
3.3.3 02.08.2020 SB2020080202
SB2020080203
SB2020082501
and 11 more
#VU32966 - Use After Free
CVE-2020-9893
CWE-416 High
No
No
3.3.3 02.08.2020 SB2020080202
SB2020080203
SB2020082501
and 11 more
#VU32965 - Command injection
CVE-2020-9862
CWE-77 Medium
No
No
3.3.3 02.08.2020 SB2020080202
SB2020080203
SB2020082501
and 11 more
#VU32964 - Improper input validation
CVE-2020-9850
CWE-20 High
Available
No
3.3.3 02.08.2020 SB2020071482
SB2020072610
SB2020070947
and 10 more
#VU32963 - Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')
CVE-2020-9843
CWE-79 Medium
No
No
3.3.3 02.08.2020 SB2020071482
SB2020072610
SB2020070946
and 10 more
#VU32962 - Memory corruption
CVE-2020-9807
CWE-119 High
No
No
3.3.3 02.08.2020 SB2020071482
SB2020072610
SB2020070945
and 10 more
#VU31920 - Memory corruption
CVE-2020-15503
CWE-119 Medium
No
No
3.3.3 27.07.2020 SB2020070228
SB2020072741
SB2020080204
and 12 more
#VU29544 - Resource exhaustion
CVE-2020-14422
CWE-400 Medium
No
No
3.3.3 07.07.2020 SB2020070704
SB2020070705
SB2020070710
and 40 more
#VU27033 - Out-of-bounds write
CVE-2020-1751
CWE-787 High
No
No
3.3.3 20.04.2020 SB2020040708
SB2020061304
SB2020110915
and 14 more
#VU26388 - Stack-based buffer overflow
CVE-2020-10029
CWE-121 High
No
No
3.3.3 25.03.2020 SB2020030423
SB2020032513
SB2020061304
and 26 more
#VU26076 - Use After Free
CVE-2020-10018
CWE-416 High
No
No
3.3.3 13.03.2020 SB2020031317
SB2020031318
SB2020031709
and 14 more


Showing elements 41 - 60 out of 115