Known vulnerabilities in Red Hat Advanced Cluster Security for Kubernetes - page 6

Software CPE: cpe:2.3:a:red_hat:red_hat_advanced_cluster_security_for_kubernetes:*:*:*:*:*:*:*:*
Total vulnerabilities: 284
Public exploits: 21
Known exploited (KEV): 8
Highest CVSSv4 Score: 9.3

Breakdown by Severity Chart

Severity distribution of vulnerabilities affecting Red Hat Advanced Cluster Security for Kubernetes Red Hat Advanced Cluster Security for Kubernetes is affected by 284 known vulnerabilities: 3 critical, 52 high, 159 medium, 70 low Critical High Medium Low

Vulnerabilities (284)

Vulnerability CWE-ID CSH Severity Public Exploit KEV First fixed release Published Bulletins
#VU88099 - Exposure of sensitive information to an unauthorized actor
CVE-2019-25210
CWE-200 Low
No
No
4.3.6, 4.4.0 03.04.2024 SB2024040356
SB2024040357
SB2024040358
and 2 more
#VU88098 - Use of Uninitialized Variable
CVE-2024-26147
CWE-457 Low
No
No
4.3.6, 4.4.0 03.04.2024 SB2024040355
SB2024040357
SB2024040358
and 13 more
#VU87833 - Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection')
CVE-2024-27289
CWE-89 Medium
No
No
4.3.5 26.03.2024 SB2024032656
SB2024040339
SB2024041529
and 5 more
#VU87832 - Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection')
CVE-2024-27304
CWE-89 Medium
No
No
4.3.5 26.03.2024 SB2024032656
SB2024032657
SB2024040339
and 5 more
#VU85623 - Information Exposure Through Timing Discrepancy
CVE-2024-0553
CWE-208 Medium
No
No
4.3.5, 4.4.0 21.01.2024 SB2024012105
SB2024012106
SB2024012234
and 78 more
#VU85583 - Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal')
CVE-2023-49569
CWE-22 Medium
No
No
4.3.6 18.01.2024 SB2024011878
SB2024011879
SB2024020832
and 42 more
#VU85582 - Resource exhaustion
CVE-2023-49568
CWE-400 Medium
No
No
4.4.0 18.01.2024 SB2024011878
SB2024011879
SB2024020832
and 37 more
#VU84537 - Inadequate Encryption Strength
CVE-2023-48795
CWE-326 Low
Available
No
4.3.5, 4.4.0 19.12.2023 SB2023121903
SB2023121905
SB2023121906
and 343 more
#VU82941 - Exposure of sensitive information to an unauthorized actor
CVE-2023-5868
CWE-200 Low
No
No
3.74.8, 4.1.6, 4.2.4 09.11.2023 SB2023110930
SB2023111320
SB2023111324
and 53 more
#VU79523 - Improper Link Resolution Before File Access ('Link Following')
CVE-2021-35939
CWE-59 Low
No
No
4.3.5 15.08.2023 SB2023081530
SB2024012452
SB2024012458
and 45 more
#VU79522 - Time-of-check Time-of-use (TOCTOU) Race Condition
CVE-2021-35937
CWE-367 Low
No
No
4.3.5 15.08.2023 SB2023081530
SB2024012452
SB2024012458
and 45 more
#VU79521 - Improper Link Resolution Before File Access ('Link Following')
CVE-2021-35938
CWE-59 Low
No
No
4.3.5 15.08.2023 SB2023081530
SB2024012452
SB2024012458
and 45 more
#VU79454 - Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection')
CVE-2023-39417
CWE-89 Medium
No
No
3.74.8, 4.1.6, 4.2.4 11.08.2023 SB2023081132
SB2023081715
SB2023081716
and 60 more
#VU78327 - Improper Neutralization of HTTP Headers for Scripting Syntax
CVE-2023-29406
CWE-644 Medium
No
No
4.4.0 17.07.2023 SB2023071737
SB2023071738
SB2023071739
and 94 more
#VU48418 - Out-of-bounds read
CVE-2020-28241
CWE-125 Medium
No
No
4.3.5, 4.4.0 06.11.2020 SB2020110615
SB2020111401
SB2020111404
and 32 more
#VU22933 - Buffer over-read
CVE-2019-19204
CWE-126 Medium
No
No
4.3.5, 4.4.0 22.11.2019 SB2019111806
SB2020120202
SB2022092145
and 23 more
#VU22932 - Buffer over-read
CVE-2019-19203
CWE-126 Medium
No
No
4.3.5, 4.4.0 22.11.2019 SB2019111806
SB2020120202
SB2022092145
and 22 more
#VU22814 - Integer overflow
CVE-2019-19012
CWE-190 High
No
No
4.3.5, 4.4.0 18.11.2019 SB2019111806
SB2023021411
SB2024012468
and 19 more
#VU30789 - Resource exhaustion
CVE-2019-16163
CWE-400 Medium
No
No
4.3.5, 4.4.0 09.09.2019 SB2019090921
SB2022092145
SB2022110232
and 24 more
#VU20904 - Use After Free
CVE-2019-13224
CWE-416 High
No
No
4.3.5, 4.4.0 06.09.2019 SB2019090602
SB2019092002
SB2019100314
and 26 more


Showing elements 101 - 120 out of 284