Known vulnerabilities in Red Hat OpenShift GitOps - page 10
Vendor:
Red Hat Inc.
Software:
Red Hat OpenShift GitOps
Software CPE:
cpe:2.3:a:red_hat:red_hat_openshift_gitops:*:*:*:*:*:*:*:*
Website:
https://www.redhat.com/en
Total vulnerabilities:
241
Public exploits:
21
Known exploited (KEV):
3
Highest CVSSv4 Score:
9.4
Breakdown by Severity Chart
1.20.6
1.19.6
1.19.5
1.21.1
1.20.5
1.20.4
1.19.4
1.18.6
1.20.2
1.19.3
1.18.5
1.19.2
1.18.4
1.17.5
1.19.1
1.17.4
1.18.3
1.17.2
1.17.1
1.17.0
1.18.1
1.18.0
1.16.4
1.16.3
1.16.2
1.16.0
1.17.3
1.18.2
1.16.5
1.16.1
1.15.3
1.14.4
1.15.2
1.12.6
1.13.2
1.12.5
1.11.7
1.13.1
1.11.6
1.12.4
1.10.5
1.12.2
1.11.4
1.10.6
1.12.3
1.11.5
1.12.1
1.10.4
1.10.3
1.10.2
1.11.3
1.11.2
1.11.1
1.12.0
1.11
1.9.3
1.9.2
1.9.1
1.10.1
1.10.0
1.9
1.8
1.6.4
1.6.3
1.6.2
1.6.1
1.6.0
1.7
1.5.9
1.5.8
1.5.7
1.5.6
1.5.5
1.5.4
1.5.3
1.5.2
1.5.1
1.5
1.4.4
1.4.3
1.4.2
1.4.1
1.2.3
1.2.2
1.2.1
1.3.6
1.3.5
1.3.4
1.3.3
1.3.2
1.3.1
1.4
1.3
1.2
1.1
1.0
Vulnerabilities (241)
| Vulnerability | CWE-ID | CSH Severity | Public Exploit | KEV | First fixed release | Published | Bulletins |
|---|---|---|---|---|---|---|---|
| #VU71569 - Improper Authorization CVE-2023-22736 |
CWE-285 | Low | 1.7 | 26.01.2023 |
SB2023012633 SB2023012635 |
||
| #VU71568 - Improper Authorization CVE-2023-22482 |
CWE-285 | Medium | 1.5.9, 1.6.4, 1.7 | 26.01.2023 |
SB2023012633 SB2023012634 SB2023012635 and 1 more |
||
| #VU71238 - Heap-based Buffer Overflow CVE-2022-41903 |
CWE-122 | High | - | 17.01.2023 |
SB2023011739 SB2023011741 SB2023011804 and 51 more |
||
| #VU70474 - Integer overflow CVE-2022-47629 |
CWE-190 | High | 1.12.5, 1.13.1 | 22.12.2022 |
SB2022122202 SB2022122204 SB2022122205 and 98 more |
||
| #VU69807 - Off-by-one Error CVE-2022-3821 |
CWE-193 | Low | 1.5.9, 1.7, 1.10.4, 1.11.3, 1.12.0 | 01.12.2022 |
SB2022120139 SB2022120141 SB2022120143 and 50 more |
||
| #VU68858 - Off-by-one Error CVE-2021-46848 |
CWE-193 | Medium | 1.5.9, 1.6.4, 1.7, 1.10.0, 1.11, 1.12.5, 1.13.1 | 31.10.2022 |
SB2022103141 SB2022103142 SB2022103143 and 84 more |
||
| #VU68829 - Resource Management Errors CVE-2022-40304 |
CWE-399 | Medium | 1.5.9, 1.6.4, 1.7, 1.10.0, 1.11 | 30.10.2022 |
SB2022103005 SB2022103006 SB2022103007 and 90 more |
||
| #VU68828 - Integer overflow CVE-2022-40303 |
CWE-190 | High | 1.5.9, 1.6.4, 1.7, 1.10.0, 1.11 | 30.10.2022 |
SB2022103005 SB2022103006 SB2022103007 and 88 more |
||
| #VU68718 - Use After Free CVE-2022-43680 |
CWE-416 | Medium | 1.5.9, 1.6.4, 1.7, 1.10.0, 1.11 | 25.10.2022 |
SB2022102560 SB2022102566 SB2022103010 and 99 more |
||
| #VU67971 - Use After Free CVE-2022-42012 |
CWE-416 | Low | 1.5.9, 1.6.4, 1.7 | 06.10.2022 |
SB2022100645 SB2022100708 SB2022102733 and 57 more |
||
| #VU67970 - Out-of-bounds read CVE-2022-42011 |
CWE-125 | Low | 1.5.9, 1.6.4, 1.7 | 06.10.2022 |
SB2022100645 SB2022100708 SB2022102733 and 57 more |
||
| #VU67969 - Reachable Assertion CVE-2022-42010 |
CWE-617 | Low | 1.5.9, 1.6.4, 1.7 | 06.10.2022 |
SB2022100645 SB2022100708 SB2022102733 and 58 more |
||
| #VU67414 - Improper Validation of Array Index CVE-2022-35737 |
CWE-129 | Medium | 1.5.9, 1.6.4, 1.7, 1.10.0, 1.11 | 15.09.2022 |
SB2022091537 SB2022092034 SB2022092682 and 72 more |
||
| #VU64594 - Out-of-bounds write CVE-2022-31036 |
CWE-787 | Low | 1.5 | 22.06.2022 |
SB2022062239 SB2022062725 SB2022062727 and 2 more |
||
| #VU64593 - Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') CVE-2022-31035 |
CWE-79 | Low | 1.5 | 22.06.2022 |
SB2022062239 SB2022062725 SB2022062727 and 2 more |
||
| #VU64591 - Resource exhaustion CVE-2022-31016 |
CWE-400 | Medium | 1.5 | 22.06.2022 |
SB2022062239 SB2022062725 SB2022062727 and 2 more |
||
| #VU64588 - Insufficient Entropy CVE-2022-31034 |
CWE-331 | High | 1.5 | 22.06.2022 |
SB2022062228 SB2022062239 SB2022062725 and 2 more |
||
| #VU62002 - Improper input validation CVE-2022-1271 |
CWE-20 | High | 1.5 | 08.04.2022 |
SB2022040803 SB2022040804 SB2022040822 and 134 more |
||
| #VU61671 - Memory corruption CVE-2018-25032 |
CWE-119 | Medium | 1.5 | 28.03.2022 |
SB2022032844 SB2022032845 SB2022033018 and 192 more |
||
| #VU61439 - Improper Control of Generation of Code ('Code Injection') CVE-2022-0811 |
CWE-94 | Medium | 1.3.6 | 17.03.2022 |
SB2022031714 SB2022031723 SB2022032225 and 12 more |
Showing elements 181 - 200 out of 241