Known vulnerabilities in Red Hat OpenShift Container Platform - page 106

Software CPE: cpe:2.3:a:red_hat:red_hat_openshift_container_platform:*:*:*:*:*:*:*:*
Total vulnerabilities: 2229
Public exploits: 122
Known exploited (KEV): 31
Highest CVSSv4 Score: 9.4

Breakdown by Severity Chart

Severity distribution of vulnerabilities affecting Red Hat OpenShift Container Platform Red Hat OpenShift Container Platform is affected by 2229 known vulnerabilities: 7 critical, 265 high, 732 medium, 1225 low Critical High Medium Low

Vulnerabilities (2229)

Vulnerability CWE-ID CSH Severity Public Exploit KEV First fixed release Published Bulletins
#VU47105 - Deserialization of Untrusted Data
CVE-2020-24750
CWE-502 High
Available
No
4.3.40, 4.6.26 17.09.2020 SB2020092506
SB2020100512
SB2021012013
and 28 more
#VU47485 - Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal')
CVE-2020-14352
CWE-22 Medium
No
No
4.3.40 30.08.2020 SB2020100908
SB2020091826
SB2020083016
and 11 more
#VU45799 - Out-of-bounds read
CVE-2020-12403
CWE-125 Medium
No
No
4.3.40 20.08.2020 SB2020082004
SB2020082005
SB2020072966
and 17 more
#VU34248 - Loop with Unreachable Exit Condition ('Infinite Loop')
CVE-2020-14040
CWE-835 Medium
No
No
4.5.8 17.06.2020 SB2020061731
SB2020100906
SB2020102814
and 25 more
#VU30267 - Server-Side Request Forgery (SSRF)
CVE-2020-8555
CWE-918 Medium
No
No
- 05.06.2020 SB2020060515
SB2020061840
SB2020061844
and 4 more
#VU30272 - Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')
CVE-2020-7015
CWE-79 Low
No
No
4.5.8 03.06.2020 SB2020060343
SB2020090889
#VU28539 - Memory corruption
CVE-2020-8174
CWE-119 High
No
No
4.5.8 03.06.2020 SB2020060305
SB2020060607
SB2020072216
and 20 more
#VU28538 - Resource exhaustion
CVE-2020-11080
CWE-400 Medium
No
No
4.5.8 03.06.2020 SB2020060305
SB2020060607
SB2020060703
and 42 more
#VU27951 - Resource exhaustion
CVE-2020-12825
CWE-400 Medium
No
No
4.3.40 15.05.2020 SB2020051519
SB2020093066
SB2022042623
and 14 more
#VU30318 - Resource exhaustion
CVE-2019-11254
CWE-400 Medium
No
No
- 01.04.2020 SB2020040177
SB2020061975
SB2023021634
and 6 more
#VU26412 - Improper Neutralization of CRLF Sequences ('CRLF Injection')
CVE-2019-11236
CWE-93 Medium
Available
No
4.3.28, 4.4.11 26.03.2020 SB2020032626
SB2020031827
SB2019091504
and 36 more
#VU26151 - Improper Control of Generation of Code ('Code Injection')
CVE-2020-7598
CWE-94 Medium
No
No
4.5.8, 4.6.38 18.03.2020 SB2020031805
SB2020072216
SB2020061308
and 18 more
#VU26149 - Integer overflow
CVE-2020-10531
CWE-190 High
No
No
4.5.8 17.03.2020 SB2020031801
SB2020031802
SB2020031803
and 40 more
#VU26004 - Permissions, Privileges, and Access Controls
CVE-2020-2134
CWE-264 High
No
No
- 11.03.2020 SB2020031128
SB2020063006
SB2020061842
and 1 more
#VU25281 - Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')
CVE-2020-2111
CWE-79 Low
No
No
- 13.02.2020 SB2020021304
SB2020063006
SB2020061842
and 1 more
#VU25280 - Permissions, Privileges, and Access Controls
CVE-2020-2110
CWE-264 High
No
No
- 13.02.2020 SB2020021303
SB2020063006
SB2020061842
and 1 more
#VU25279 - Permissions, Privileges, and Access Controls
CVE-2020-2109
CWE-264 High
No
No
- 13.02.2020 SB2020021302
SB2020063006
SB2020061842
and 1 more
#VU23633 - Improper input validation
CVE-2017-18367
CWE-20 Low
No
No
4.1.27 17.12.2019 SB2019042410
SB2019121704
SB2020061975
and 1 more
#VU22916 - Improper Access Control
CVE-2019-16538
CWE-284 High
No
No
- 22.11.2019 SB2019112205
SB2020063006
SB2020061842
and 1 more
#VU21780 - Improper Certificate Validation
CVE-2019-11324
CWE-295 Medium
Available
No
4.3.28, 4.4.11 15.10.2019 SB2019041823
SB2020031827
SB2019091504
and 19 more


Showing elements 2101 - 2120 out of 2229