Known vulnerabilities in Red Hat OpenShift Dev Spaces - page 32

Software CPE: cpe:2.3:a:red_hat:red_hat_openshift_dev_spaces:*:*:*:*:*:*:*:*
Total vulnerabilities: 723
Public exploits: 26
Known exploited (KEV): 6
Highest CVSSv4 Score: 9.3

Breakdown by Severity Chart

Severity distribution of vulnerabilities affecting Red Hat OpenShift Dev Spaces Red Hat OpenShift Dev Spaces is affected by 723 known vulnerabilities: 3 critical, 51 high, 136 medium, 533 low Critical High Medium Low

Vulnerabilities (723)

Vulnerability CWE-ID CSH Severity Public Exploit KEV First fixed release Published Bulletins
#VU94043 - Resource exhaustion
CVE-2024-30105
CWE-400 Medium
No
No
3.15.0 10.07.2024 SB2024071003
SB2024071025
SB2024071055
and 5 more
#VU94041 - Use After Free
CVE-2024-35264
CWE-416 High
No
No
3.15.0 10.07.2024 SB2024071002
SB2024071025
SB2024071055
and 3 more
#VU92075 - UNIX Symbolic Link (Symlink) Following
CVE-2024-35235
CWE-61 Low
Available
No
3.15.0, 3.16.0 13.06.2024 SB2024061389
SB2024061398
SB2024061399
and 29 more
#VU91609 - Improper input validation
CVE-2024-35845
CWE-20 Low
No
No
3.15.0 10.06.2024 SB2024061045
SB2024061046
SB2024070835
and 43 more
#VU91346 - Exposure of sensitive information to an unauthorized actor
CVE-2024-35838
CWE-200 Low
No
No
3.15.0 08.06.2024 SB2024060869
SB2024070904
SB2024070913
and 25 more
#VU91288 - Improper Control of Generation of Code ('Code Injection')
CVE-2024-32465
CWE-94 High
No
No
3.15.0, 3.16.0, 3.17.0 07.06.2024 SB2024060720
SB2024060721
SB2024060723
and 44 more
#VU91287 - UNIX Symbolic Link (Symlink) Following
CVE-2024-32021
CWE-61 Medium
No
No
3.15.0, 3.16.0, 3.17.0 07.06.2024 SB2024060720
SB2024060721
SB2024060723
and 44 more
#VU91286 - UNIX Hard Link
CVE-2024-32020
CWE-62 Medium
No
No
3.15.0, 3.16.0, 3.17.0 07.06.2024 SB2024060720
SB2024060721
SB2024060723
and 43 more
#VU90167 - Use After Free
CVE-2024-35789
CWE-416 Low
No
No
3.15.0 31.05.2024 SB2024053184
SB2024062808
SB20240702143
and 70 more
#VU89983 - Missing release of memory after effective lifetime
CVE-2024-35852
CWE-401 Low
No
No
3.15.0 30.05.2024 SB2024053088
SB2024070893
SB2024070894
and 47 more
#VU89712 - Stack-based buffer overflow
CVE-2024-33599
CWE-121 High
No
No
3.15.0 21.05.2024 SB2024052147
SB2024052148
SB2024052305
and 84 more
#VU89711 - NULL Pointer Dereference
CVE-2024-33600
CWE-476 Medium
No
No
3.15.0 21.05.2024 SB2024052147
SB2024052148
SB2024052305
and 83 more
#VU89710 - Allocation of Resources Without Limits or Throttling
CVE-2024-33601
CWE-770 Low
No
No
3.15.0 21.05.2024 SB2024052147
SB2024052148
SB2024052305
and 82 more
#VU89709 - Memory corruption
CVE-2024-33602
CWE-119 Medium
No
No
3.15.0 21.05.2024 SB2024052147
SB2024052148
SB2024052305
and 91 more
#VU89491 - Unrestricted Upload of File with Dangerous Type
CVE-2024-32002
CWE-434 High
Available
No
3.15.0, 3.16.0, 3.17.0 15.05.2024 SB2024051504
SB2024060720
SB2024060721
and 52 more
#VU89490 - Improper Control of Generation of Code ('Code Injection')
CVE-2024-32004
CWE-94 High
No
No
3.15.0, 3.16.0, 3.17.0 15.05.2024 SB2024051503
SB2024060720
SB2024060721
and 51 more
#VU88533 - Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection')
CVE-2024-32487
CWE-78 Medium
No
No
3.15.0, 3.16.0 15.04.2024 SB2024041531
SB2024041533
SB2024042949
and 63 more
#VU87672 - Improper input validation
CVE-2024-28835
CWE-20 Medium
No
No
3.15.0, 3.16.0, 3.17.0 20.03.2024 SB2024032057
SB2024032058
SB2024032059
and 71 more
#VU87671 - Cryptographic Issues
CVE-2024-28834
CWE-310 Medium
No
No
3.15.0, 3.16.0, 3.17.0 20.03.2024 SB2024032057
SB2024032058
SB2024032059
and 111 more
#VU87337 - Improper Restriction of XML External Entity Reference ('XXE')
CVE-2024-28757
CWE-611 Medium
No
No
3.15.0 11.03.2024 SB2024031135
SB2024031143
SB2024031144
and 72 more


Showing elements 621 - 640 out of 723