Known vulnerabilities in Red Hat Advanced Cluster Security for Kubernetes - page 12

Software CPE: cpe:2.3:a:red_hat:red_hat_advanced_cluster_security_for_kubernetes:*:*:*:*:*:*:*:*
Total vulnerabilities: 284
Public exploits: 21
Known exploited (KEV): 8
Highest CVSSv4 Score: 9.3

Breakdown by Severity Chart

Severity distribution of vulnerabilities affecting Red Hat Advanced Cluster Security for Kubernetes Red Hat Advanced Cluster Security for Kubernetes is affected by 284 known vulnerabilities: 3 critical, 52 high, 159 medium, 70 low Critical High Medium Low

Vulnerabilities (284)

Vulnerability CWE-ID CSH Severity Public Exploit KEV First fixed release Published Bulletins
#VU63952 - Improper Control of Generation of Code ('Code Injection')
CVE-2020-7709
CWE-94 Medium
No
No
3.70 02.06.2022 SB2022060213
SB2022060214
SB2023033133
#VU62002 - Improper input validation
CVE-2022-1271
CWE-20 High
No
No
3.68.2, 3.69.2, 3.70, 3.70.1 08.04.2022 SB2022040803
SB2022040804
SB2022040822
and 134 more
#VU61763 - Use After Free
CVE-2022-1154
CWE-416 High
No
No
3.68.2, 3.69.2, 3.70 31.03.2022 SB2022033113
SB2022033115
SB2022041528
and 33 more
#VU61756 - Improper Control of Generation of Code ('Code Injection')
CVE-2022-22965
CWE-94 Critical
Available
Exploited
3.70 31.03.2022 SB2022033109
SB2022040109
SB2022040110
and 78 more
#VU61754 - Improper Control of Generation of Code ('Code Injection')
CVE-2022-22963
CWE-94 Critical
Available
Exploited
3.70 31.03.2022 SB2022033107
SB2022041275
SB2022060214
and 15 more
#VU61681 - Server-Side Request Forgery (SSRF)
CVE-2021-4189
CWE-918 Medium
No
No
3.68.2, 3.69.2, 3.70 29.03.2022 SB2022032904
SB2022032905
SB2022032907
and 42 more
#VU61671 - Memory corruption
CVE-2018-25032
CWE-119 Medium
No
No
3.68.2, 3.69.2, 3.70 28.03.2022 SB2022032844
SB2022032845
SB2022033018
and 192 more
#VU61394 - UNIX Symbolic Link (Symlink) Following
CVE-2021-31566
CWE-61 Low
No
No
3.68.2 15.03.2022 SB2022031530
SB2022031601
SB2022032445
and 27 more
#VU61393 - UNIX Symbolic Link (Symlink) Following
CVE-2021-23177
CWE-61 Low
No
No
3.68.2 15.03.2022 SB2022031530
SB2022031601
SB2022032445
and 25 more
#VU61391 - Loop with Unreachable Exit Condition ('Infinite Loop')
CVE-2022-0778
CWE-835 Medium
Available
No
3.68.2 15.03.2022 SB2022031520
SB2022031522
SB2022031611
and 238 more
#VU61046 - Type confusion
CVE-2021-23820
CWE-843 High
No
No
3.70 07.03.2022 SB2021110319
SB2022030706
SB2022060214
and 2 more
#VU60842 - Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection')
CVE-2022-24407
CWE-89 High
No
No
3.68.2 24.02.2022 SB2022022409
SB2022022410
SB2022022421
and 67 more
#VU59089 - Loop with Unreachable Exit Condition ('Infinite Loop')
CVE-2021-3737
CWE-835 Low
No
No
3.68.2, 3.69.2, 3.70 22.12.2021 SB2021122214
SB2022050235
SB2022051138
and 58 more
#VU58976 - Improper Control of Generation of Code ('Code Injection')
CVE-2021-45046
CWE-94 High
Available
Exploited
3.68 15.12.2021 SB2021121504
SB2021121511
SB2021121512
and 178 more
#VU58229 - Type confusion
CVE-2021-41190
CWE-843 Low
No
No
3.70 18.11.2021 SB2021111806
SB2021111807
SB2021111809
and 39 more
#VU58114 - Missing Encryption of Sensitive Data
CVE-2021-23222
CWE-311 Medium
No
No
3.68.2, 3.69.2, 3.70 11.11.2021 SB2021111139
SB2021111708
SB2021111709
and 29 more
#VU57752 - Resource exhaustion
CVE-2021-25219
CWE-400 Medium
No
No
3.68.2, 3.69.2, 3.70 28.10.2021 SB2021102801
SB2021102903
SB2021110111
and 33 more
#VU56967 - Improper input validation
CVE-2021-3672
CWE-20 Medium
No
No
3.68.2, 3.69.2, 3.70 30.09.2021 SB2021093017
SB2021110508
SB2022031104
and 39 more
#VU56217 - Memory corruption
CVE-2021-3634
CWE-119 High
No
No
3.68.2, 3.69.2, 3.70 31.08.2021 SB2021083135
SB2021083136
SB2022011903
and 46 more
#VU56064 - Out-of-bounds read
CVE-2021-3712
CWE-125 Medium
No
No
3.68 24.08.2021 SB2021082414
SB2021082508
SB2021082510
and 142 more


Showing elements 221 - 240 out of 284