Known vulnerabilities in Red Hat OpenShift Builds

Software CPE: cpe:2.3:a:red_hat:red_hat_openshift_builds:*:*:*:*:*:*:*:*
Total vulnerabilities: 43
Public exploits: 5
Known exploited (KEV): 1
Highest CVSSv4 Score: 9.2

Breakdown by Severity Chart

Severity distribution of vulnerabilities affecting Red Hat OpenShift Builds Red Hat OpenShift Builds is affected by 43 known vulnerabilities: 4 high, 25 medium, 14 low Critical High Medium Low

Vulnerabilities (43)

Vulnerability CWE-ID CSH Severity Public Exploit KEV First fixed release Published Bulletins
#VU119230 - Allocation of Resources Without Limits or Throttling
CVE-2025-66418
CWE-770 Medium
No
No
1.6.2 05.12.2025 SB2025120581
SB2025121208
SB2025121938
and 93 more
#VU118105 - UNIX Symbolic Link (Symlink) Following
CVE-2025-52881
CWE-61 Low
No
No
1.6.2 05.11.2025 SB2025110519
SB2025110530
SB2025110545
and 62 more
#VU89296 - Loop with Unreachable Exit Condition ('Infinite Loop')
CVE-2024-24788
CWE-835 Medium
No
No
1.1.0 09.05.2024 SB2024050936
SB2024050937
SB2024051029
and 43 more
#VU88184 - Resource exhaustion
CVE-2023-45288
CWE-400 Medium
Available
No
1.1.0 05.04.2024 SB2024040533
SB2024040549
SB2024040551
and 189 more
#VU87326 - Loop with Unreachable Exit Condition ('Infinite Loop')
CVE-2024-24786
CWE-835 Medium
No
No
1.1.0 11.03.2024 SB2024031115
SB2024031435
SB2024031555
and 134 more
#VU87200 - Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')
CVE-2024-24785
CWE-79 Low
No
No
1.1.0 07.03.2024 SB2024030734
SB2024030750
SB2024030752
and 61 more
#VU87197 - Resource exhaustion
CVE-2023-45290
CWE-400 Medium
No
No
1.1.0 07.03.2024 SB2024030734
SB2024030750
SB2024030752
and 101 more
#VU87196 - Error Handling
CVE-2024-24783
CWE-388 Medium
No
No
1.1.0 07.03.2024 SB2024030734
SB2024030750
SB2024030752
and 81 more
#VU85583 - Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal')
CVE-2023-49569
CWE-22 Medium
No
No
1.0.1, 1.1.0 18.01.2024 SB2024011878
SB2024011879
SB2024020832
and 42 more
#VU85582 - Resource exhaustion
CVE-2023-49568
CWE-400 Medium
No
No
1.0.1 18.01.2024 SB2024011878
SB2024011879
SB2024020832
and 37 more
#VU84537 - Inadequate Encryption Strength
CVE-2023-48795
CWE-326 Low
Available
No
1.0.1 19.12.2023 SB2023121903
SB2023121905
SB2023121906
and 343 more
#VU79523 - Improper Link Resolution Before File Access ('Link Following')
CVE-2021-35939
CWE-59 Low
No
No
1.0.1 15.08.2023 SB2023081530
SB2024012452
SB2024012458
and 45 more
#VU79522 - Time-of-check Time-of-use (TOCTOU) Race Condition
CVE-2021-35937
CWE-367 Low
No
No
1.0.1 15.08.2023 SB2023081530
SB2024012452
SB2024012458
and 45 more
#VU79521 - Improper Link Resolution Before File Access ('Link Following')
CVE-2021-35938
CWE-59 Low
No
No
1.0.1 15.08.2023 SB2023081530
SB2024012452
SB2024012458
and 45 more
#VU78798 - Resource Management Errors
CVE-2023-3817
CWE-399 Low
No
No
1.0.1 31.07.2023 SB2023073153
SB2023080268
SB2023080438
and 158 more
#VU78463 - Resource Management Errors
CVE-2023-3446
CWE-399 Medium
No
No
1.0.1 20.07.2023 SB2023072079
SB2023072524
SB2023072525
and 152 more
#VU73826 - Improper input validation
CVE-2023-27533
CWE-20 Low
No
No
1.0.1 20.03.2023 SB2023032027
SB2023032028
SB2023032044
and 42 more
#VU72575 - Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection')
CVE-2022-48339
CWE-78 High
No
No
1.0.1 26.02.2023 SB2022120142
SB2023022605
SB2023030230
and 50 more
#VU72573 - Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection')
CVE-2022-48337
CWE-78 High
No
No
1.0.1 26.02.2023 SB2022120142
SB2023022605
SB2023030230
and 42 more
#VU63553 - Integer overflow
CVE-2021-43618
CWE-190 Medium
No
No
1.0.1 24.05.2022 SB2021121654
SB2022052401
SB2021120223
and 85 more


Showing elements 1 - 20 out of 43