Known vulnerabilities in Red Hat OpenShift Dev Spaces - page 21

Software CPE: cpe:2.3:a:red_hat:red_hat_openshift_dev_spaces:*:*:*:*:*:*:*:*
Total vulnerabilities: 723
Public exploits: 26
Known exploited (KEV): 6
Highest CVSSv4 Score: 9.3

Breakdown by Severity Chart

Severity distribution of vulnerabilities affecting Red Hat OpenShift Dev Spaces Red Hat OpenShift Dev Spaces is affected by 723 known vulnerabilities: 3 critical, 51 high, 136 medium, 533 low Critical High Medium Low

Vulnerabilities (723)

Vulnerability CWE-ID CSH Severity Public Exploit KEV First fixed release Published Bulletins
#VU106282 - Improper Link Resolution Before File Access ('Link Following')
CVE-2024-12905
CWE-59 High
No
No
3.20.0, 3.21.0 31.03.2025 SB2025033140
SB2025033150
SB2025033151
and 15 more
#VU105973 - Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')
CVE-2025-23207
CWE-79 Low
No
No
3.19.0 24.03.2025 SB2025032441
SB2025032442
#VU105723 - Stack-based buffer overflow
CVE-2024-8176
CWE-121 High
No
No
3.20.0, 3.21.0 14.03.2025 SB2025031426
SB2025031429
SB2025031430
and 105 more
#VU105715 - Out-of-bounds write
CVE-2025-27363
CWE-787 Critical
Available
Exploited
3.20.0 14.03.2025 SB2025031402
SB2025031502
SB2025031750
and 97 more
#VU105548 - Out-of-bounds write
CVE-2025-24201
CWE-787 Critical
Available
Exploited
3.20.0 11.03.2025 SB2025031182
SB2025031183
SB2025031185
and 41 more
#VU105459 - Resource exhaustion
CVE-2025-22869
CWE-400 Low
No
No
3.20.0, 3.21.0 10.03.2025 SB2025031011
SB2025031015
SB2025032557
and 107 more
#VU105450 - Resource exhaustion
CVE-2025-27144
CWE-400 Medium
No
No
3.20.0 07.03.2025 SB2025030735
SB2025030736
SB2025030737
and 80 more
#VU104117 - Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection')
CVE-2025-1244
CWE-78 High
No
No
3.20.0 21.02.2025 SB2025022110
SB2025022111
SB2025022112
and 31 more
#VU104099 - Use After Free
CVE-2024-56171
CWE-416 High
No
No
3.20.0 20.02.2025 SB2025022003
SB2025022010
SB2025022023
and 111 more
#VU104098 - Stack-based buffer overflow
CVE-2025-24928
CWE-121 High
No
No
3.20.0 20.02.2025 SB2025022003
SB2025022010
SB2025022023
and 111 more
#VU103771 - Improper Authentication
CVE-2024-12797
CWE-287 Medium
No
No
3.19.0 11.02.2025 SB2025021187
SB20250211108
SB20250211159
and 58 more
#VU102463 - Loop with Unreachable Exit Condition ('Infinite Loop')
CVE-2024-55565
CWE-835 Medium
No
No
3.18.0 08.01.2025 SB2025010849
SB2025010851
SB2025010853
and 45 more
#VU101868 - Resource exhaustion
CVE-2024-45338
CWE-400 Medium
No
No
3.18.0 19.12.2024 SB2024121932
SB2024123101
SB2025010619
and 137 more
#VU101777 - Improper Authorization
CVE-2024-45337
CWE-285 Medium
Available
No
3.18.0, 3.21.0 13.12.2024 SB2024121332
SB2024121333
SB2024121334
and 93 more
#VU100921 - Incorrect Regular Expression
CVE-2024-21538
CWE-185 Medium
No
No
3.18.0 26.11.2024 SB2024112627
SB2024112629
SB2024120325
and 67 more
#VU97758 - Improperly Controlled Modification of Object Prototype Attributes (\'Prototype Pollution\')
CVE-2024-45801
CWE-1321 Medium
No
No
3.18.0 27.09.2024 SB2024092751
SB2024100823
SB2024100827
and 32 more
#VU96945 - Resource exhaustion
CVE-2024-7592
CWE-400 Medium
No
No
3.20.0 09.09.2024 SB2024090916
SB2024090917
SB2024090918
and 71 more
#VU96147 - Improper Locking
CVE-2024-43855
CWE-667 Low
No
No
3.20.0 19.08.2024 SB2024081988
SB2024091080
SB20240910112
and 23 more
#VU81307 - Improper input validation
CVE-2023-44270
CWE-20 Low
No
No
3.18.0 02.10.2023 SB2023100210
SB2023111710
SB2023112080
and 28 more
#VU27519 - Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')
CVE-2020-11023
CWE-79 Low
Available
Exploited
3.19.0 05.05.2020 SB2020042126
SB2020052033
SB2020052103
and 180 more


Showing elements 401 - 420 out of 723