Known vulnerabilities in Red Hat OpenShift GitOps - page 4

Software CPE: cpe:2.3:a:red_hat:red_hat_openshift_gitops:*:*:*:*:*:*:*:*
Total vulnerabilities: 241
Public exploits: 21
Known exploited (KEV): 3
Highest CVSSv4 Score: 9.4

Breakdown by Severity Chart

Severity distribution of vulnerabilities affecting Red Hat OpenShift GitOps Red Hat OpenShift GitOps is affected by 241 known vulnerabilities: 60 high, 133 medium, 48 low Critical High Medium Low

Vulnerabilities (241)

Vulnerability CWE-ID CSH Severity Public Exploit KEV First fixed release Published Bulletins
#VU91288 - Improper Control of Generation of Code ('Code Injection')
CVE-2024-32465
CWE-94 High
No
No
1.11.6, 1.12.5, 1.13.1 07.06.2024 SB2024060720
SB2024060721
SB2024060723
and 44 more
#VU91287 - UNIX Symbolic Link (Symlink) Following
CVE-2024-32021
CWE-61 Medium
No
No
1.11.6, 1.12.5, 1.13.1 07.06.2024 SB2024060720
SB2024060721
SB2024060723
and 44 more
#VU91286 - UNIX Hard Link
CVE-2024-32020
CWE-62 Medium
No
No
1.11.6, 1.12.5, 1.13.1 07.06.2024 SB2024060720
SB2024060721
SB2024060723
and 43 more
#VU89491 - Unrestricted Upload of File with Dangerous Type
CVE-2024-32002
CWE-434 High
Available
No
1.11.6, 1.12.5, 1.13.1 15.05.2024 SB2024051504
SB2024060720
SB2024060721
and 52 more
#VU89490 - Improper Control of Generation of Code ('Code Injection')
CVE-2024-32004
CWE-94 High
No
No
1.11.6, 1.12.5, 1.13.1 15.05.2024 SB2024051503
SB2024060720
SB2024060721
and 51 more
#VU88828 - Resource exhaustion
CVE-2024-3651
CWE-400 Medium
No
No
1.12.5, 1.13.1 19.04.2024 SB2024041905
SB2024041906
SB2024041907
and 112 more
#VU88533 - Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection')
CVE-2024-32487
CWE-78 Medium
No
No
1.11.6, 1.12.5, 1.13.1 15.04.2024 SB2024041531
SB2024041533
SB2024042949
and 63 more
#VU88144 - Improper input validation
CVE-2024-28182
CWE-20 Medium
No
No
1.11.6, 1.12.5, 1.13.1 04.04.2024 SB2024040442
SB2024040443
SB2024040444
and 124 more
#VU88098 - Use of Uninitialized Variable
CVE-2024-26147
CWE-457 Low
No
No
1.11.6, 1.12.4 03.04.2024 SB2024040355
SB2024040357
SB2024040358
and 13 more
#VU87326 - Loop with Unreachable Exit Condition ('Infinite Loop')
CVE-2024-24786
CWE-835 Medium
No
No
1.11.6, 1.12.4, 1.12.6 11.03.2024 SB2024031115
SB2024031435
SB2024031555
and 134 more
#VU86707 - Server-Side Request Forgery (SSRF)
CVE-2024-24806
CWE-918 Medium
No
No
1.12.5, 1.13.1 22.02.2024 SB2024022210
SB2024022214
SB2024022225
and 54 more
#VU86548 - Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal')
CVE-2024-25620
CWE-22 Medium
No
No
1.11.6, 1.12.4 15.02.2024 SB2024021537
SB2024040354
SB2024040360
and 9 more
#VU84540 - Unchecked Return Value
CVE-2023-6918
CWE-252 Low
No
No
1.10.6, 1.11.5, 1.12.3, 1.12.5, 1.13.1 19.12.2023 SB2023121906
SB2023121910
SB2023121911
and 63 more
#VU84538 - Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection')
CVE-2023-6004
CWE-78 Medium
No
No
1.10.6, 1.11.5, 1.12.3, 1.12.5, 1.13.1 19.12.2023 SB2023121905
SB2023121906
SB2023121910
and 58 more
#VU82894 - Resource Management Errors
CVE-2023-5678
CWE-399 Medium
No
No
1.12.5, 1.13.1 07.11.2023 SB20231107122
SB2023112047
SB2023112048
and 147 more
#VU79561 - Out-of-bounds write
CVE-2023-4016
CWE-787 High
No
No
1.12.5, 1.13.1 15.08.2023 SB2023081548
SB20230821203
SB2023082925
and 49 more
#VU78798 - Resource Management Errors
CVE-2023-3817
CWE-399 Low
No
No
1.12.5, 1.13.1 31.07.2023 SB2023073153
SB2023080268
SB2023080438
and 158 more
#VU78463 - Resource Management Errors
CVE-2023-3446
CWE-399 Medium
No
No
1.12.5, 1.13.1 20.07.2023 SB2023072079
SB2023072524
SB2023072525
and 152 more
#VU77252 - NULL Pointer Dereference
CVE-2023-2953
CWE-476 Medium
No
No
1.11.6, 1.12.5, 1.13.1 13.06.2023 SB2023061366
SB2023061417
SB2023061418
and 59 more
#VU7120 - Memory corruption
CVE-2017-8461
CWE-119 High
Available
No
1.11.6 15.06.2017 SB2017061408
SB20240718200


Showing elements 61 - 80 out of 241