Known vulnerabilities in Red Hat OpenShift Dev Spaces - page 35

Software CPE: cpe:2.3:a:red_hat:red_hat_openshift_dev_spaces:*:*:*:*:*:*:*:*
Total vulnerabilities: 723
Public exploits: 26
Known exploited (KEV): 6
Highest CVSSv4 Score: 9.3

Breakdown by Severity Chart

Severity distribution of vulnerabilities affecting Red Hat OpenShift Dev Spaces Red Hat OpenShift Dev Spaces is affected by 723 known vulnerabilities: 3 critical, 51 high, 136 medium, 533 low Critical High Medium Low

Vulnerabilities (723)

Vulnerability CWE-ID CSH Severity Public Exploit KEV First fixed release Published Bulletins
#VU91401 - Out-of-bounds read
CVE-2023-52626
CWE-125 Low
No
No
3.15.0 08.06.2024 SB20240608118
SB2024070904
SB2024070911
and 23 more
#VU90922 - Double Free
CVE-2023-52667
CWE-415 Low
No
No
3.15.0 03.06.2024 SB20240603191
SB2024061207
SB2024061208
and 33 more
#VU90798 - Improper Locking
CVE-2023-52615
CWE-667 Low
No
No
3.15.0 03.06.2024 SB2024060398
SB2024060852
SB2024070405
and 56 more
#VU90024 - Missing release of memory after effective lifetime
CVE-2023-52560
CWE-401 Low
No
No
3.15.0 30.05.2024 SB20240530129
SB2024070866
SB2024070869
and 23 more
#VU88895 - Out-of-bounds write
CVE-2023-52464
CWE-787 Low
No
No
3.15.0 22.04.2024 SB2024042243
SB2024042247
SB2024061380
and 40 more
#VU88184 - Resource exhaustion
CVE-2023-45288
CWE-400 Medium
Available
No
3.15.0 05.04.2024 SB2024040533
SB2024040549
SB2024040551
and 187 more
#VU86885 - Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection')
CVE-2022-48624
CWE-78 Medium
No
No
3.15.0 28.02.2024 SB2024022820
SB2024022839
SB2024030503
and 60 more
#VU86230 - Resource exhaustion
CVE-2023-52425
CWE-400 Medium
No
No
3.15.0 07.02.2024 SB2024020750
SB2024020754
SB2024020765
and 118 more
#VU84537 - Inadequate Encryption Strength
CVE-2023-48795
CWE-326 Low
Available
No
3.15.0 19.12.2023 SB2023121903
SB2023121905
SB2023121906
and 343 more
#VU83383 - Improper Handling of Exceptional Conditions
CVE-2023-5090
CWE-755 Low
No
No
3.15.0 21.11.2023 SB2023112174
SB2023112182
SB2023112185
and 36 more
#VU81799 - Inconsistent Interpretation of HTTP Requests ('HTTP Request Smuggling')
CVE-2023-45648
CWE-444 Medium
No
No
3.15.0 10.10.2023 SB2023101084
SB2023101122
SB2023101123
and 47 more
#VU81728 - Resource exhaustion
CVE-2023-44487
CWE-400 High
Available
Exploited
3.15.0 10.10.2023 SB2023101023
SB2023101024
SB2023101037
and 648 more
#VU80089 - URL Redirection to Untrusted Site ('Open Redirect')
CVE-2023-41080
CWE-601 Medium
Available
No
3.15.0 29.08.2023 SB2023082924
SB2023100565
SB2023101122
and 51 more
#VU78490 - Permissions, Privileges, and Access Controls
CVE-2023-34969
CWE-264 Low
No
No
3.15.0 21.07.2023 SB2023072119
SB2023072121
SB2023072122
and 61 more
#VU77450 - Out-of-bounds write
CVE-2023-3138
CWE-787 Medium
No
No
3.15.0 15.06.2023 SB2023061549
SB2023061554
SB2023061556
and 45 more
#VU77252 - NULL Pointer Dereference
CVE-2023-2953
CWE-476 Medium
No
No
3.15.0 13.06.2023 SB2023061366
SB2023061417
SB2023061418
and 59 more
#VU76757 - Missing release of memory after effective lifetime
CVE-2023-2602
CWE-401 Medium
No
No
3.15.0, 3.16.0, 3.17.0 01.06.2023 SB2023060126
SB2023061452
SB2023070343
and 74 more
#VU75915 - Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection')
CVE-2023-2491
CWE-78 High
No
No
3.15.0 09.05.2023 SB20230509106
SB2023051666
SB2023042426
and 17 more
#VU72703 - Improper Control of Filename for Include/Require Statement in PHP Program
CVE-2023-2603
CWE-98 High
No
No
3.15.0, 3.16.0, 3.17.0 01.03.2023 SB2023030118
SB2023060126
SB2023061452
and 87 more
#VU72575 - Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection')
CVE-2022-48339
CWE-78 High
No
No
3.15.0 26.02.2023 SB2022120142
SB2023022605
SB2023030230
and 50 more


Showing elements 681 - 700 out of 723