Known vulnerabilities in Red Hat OpenShift GitOps - page 5
Vendor:
Red Hat Inc.
Software:
Red Hat OpenShift GitOps
Software CPE:
cpe:2.3:a:red_hat:red_hat_openshift_gitops:*:*:*:*:*:*:*:*
Website:
https://www.redhat.com/en
Total vulnerabilities:
241
Public exploits:
21
Known exploited (KEV):
3
Highest CVSSv4 Score:
9.4
Breakdown by Severity Chart
1.20.6
1.19.6
1.19.5
1.21.1
1.20.5
1.20.4
1.19.4
1.18.6
1.20.2
1.19.3
1.18.5
1.19.2
1.18.4
1.17.5
1.19.1
1.17.4
1.18.3
1.17.2
1.17.1
1.17.0
1.18.1
1.18.0
1.16.4
1.16.3
1.16.2
1.16.0
1.17.3
1.18.2
1.16.5
1.16.1
1.15.3
1.14.4
1.15.2
1.12.6
1.13.2
1.12.5
1.11.7
1.13.1
1.11.6
1.12.4
1.10.5
1.12.2
1.11.4
1.10.6
1.12.3
1.11.5
1.12.1
1.10.4
1.10.3
1.10.2
1.11.3
1.11.2
1.11.1
1.12.0
1.11
1.9.3
1.9.2
1.9.1
1.10.1
1.10.0
1.9
1.8
1.6.4
1.6.3
1.6.2
1.6.1
1.6.0
1.7
1.5.9
1.5.8
1.5.7
1.5.6
1.5.5
1.5.4
1.5.3
1.5.2
1.5.1
1.5
1.4.4
1.4.3
1.4.2
1.4.1
1.2.3
1.2.2
1.2.1
1.3.6
1.3.5
1.3.4
1.3.3
1.3.2
1.3.1
1.4
1.3
1.2
1.1
1.0
Vulnerabilities (241)
| Vulnerability | CWE-ID | CSH Severity | Public Exploit | KEV | First fixed release | Published | Bulletins |
|---|---|---|---|---|---|---|---|
| #VU90715 - Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') CVE-2024-29180 |
CWE-22 | Medium | 1.10.5, 1.11.4, 1.12.2 | 03.06.2024 |
SB2024060314 SB2024060328 SB2024060410 and 18 more |
||
| #VU89712 - Stack-based buffer overflow CVE-2024-33599 |
CWE-121 | High | 1.11.6, 1.12.4, 1.12.5, 1.13.1 | 21.05.2024 |
SB2024052147 SB2024052148 SB2024052305 and 84 more |
||
| #VU89711 - NULL Pointer Dereference CVE-2024-33600 |
CWE-476 | Medium | 1.11.6, 1.12.4, 1.12.5, 1.13.1 | 21.05.2024 |
SB2024052147 SB2024052148 SB2024052305 and 83 more |
||
| #VU89710 - Allocation of Resources Without Limits or Throttling CVE-2024-33601 |
CWE-770 | Low | 1.11.6, 1.12.4, 1.12.5, 1.13.1 | 21.05.2024 |
SB2024052147 SB2024052148 SB2024052305 and 82 more |
||
| #VU89709 - Memory corruption CVE-2024-33602 |
CWE-119 | Medium | 1.11.6, 1.12.4, 1.12.5, 1.13.1 | 21.05.2024 |
SB2024052147 SB2024052148 SB2024052305 and 91 more |
||
| #VU88822 - Memory corruption CVE-2024-2961 |
CWE-119 | High | 1.10.6, 1.11.4, 1.11.5, 1.12.3, 1.12.4 | 18.04.2024 |
SB2024041855 SB2024041856 SB2024041857 and 107 more |
||
| #VU88184 - Resource exhaustion CVE-2023-45288 |
CWE-400 | Medium | 1.10.5, 1.11.4, 1.11.6, 1.12.4 | 05.04.2024 |
SB2024040533 SB2024040549 SB2024040551 and 189 more |
||
| #VU87685 - Resource exhaustion CVE-2024-0450 |
CWE-400 | Medium | 1.12.4, 1.12.5, 1.13.1 | 21.03.2024 |
SB2024032107 SB2024032110 SB2024040848 and 80 more |
||
| #VU87671 - Cryptographic Issues CVE-2024-28834 |
CWE-310 | Medium | 1.10.5, 1.10.6, 1.11.4, 1.11.5, 1.12.2, 1.12.3, 1.12.4, 1.12.5, 1.13.1 | 20.03.2024 |
SB2024032057 SB2024032058 SB2024032059 and 111 more |
||
| #VU87198 - Exposure of sensitive information to an unauthorized actor CVE-2023-45289 |
CWE-200 | Low | 1.11.6, 1.12.4 | 07.03.2024 |
SB2024030734 SB2024030750 SB2024030752 and 54 more |
||
| #VU87197 - Resource exhaustion CVE-2023-45290 |
CWE-400 | Medium | 1.11.6, 1.12.4 | 07.03.2024 |
SB2024030734 SB2024030750 SB2024030752 and 101 more |
||
| #VU87196 - Error Handling CVE-2024-24783 |
CWE-388 | Medium | 1.11.6, 1.12.4 | 07.03.2024 |
SB2024030734 SB2024030750 SB2024030752 and 81 more |
||
| #VU87185 - UNIX Symbolic Link (Symlink) Following CVE-2023-6597 |
CWE-61 | Low | 1.12.4, 1.12.5, 1.13.1 | 07.03.2024 |
SB2024030718 SB2024030726 SB2024030727 and 88 more |
||
| #VU86383 - Resource exhaustion CVE-2023-4408 |
CWE-400 | Medium | 1.10.5, 1.10.6, 1.11.4, 1.11.5, 1.12.2, 1.12.3, 1.12.4, 1.12.5, 1.13.1 | 13.02.2024 |
SB2024021329 SB2024021330 SB2024021347 and 82 more |
||
| #VU86378 - Resource exhaustion CVE-2023-50868 |
CWE-400 | Medium | 1.10.5, 1.10.6, 1.11.4, 1.11.5, 1.12.2, 1.12.3, 1.12.4, 1.12.5, 1.13.1 | 13.02.2024 |
SB2024021325 SB2024021330 SB2024021329 and 143 more |
||
| #VU86377 - Resource exhaustion CVE-2023-50387 |
CWE-400 | Medium | 1.10.5, 1.10.6, 1.11.4, 1.11.5, 1.12.2, 1.12.3, 1.12.4, 1.12.5, 1.13.1 | 13.02.2024 |
SB2024021325 SB2024021330 SB2024021329 and 145 more |
||
| #VU86052 - Use After Free CVE-2024-25062 |
CWE-416 | High | 1.11.6, 1.12.4, 1.12.5, 1.13.1 | 05.02.2024 |
SB2024020507 SB2024020508 SB2024020742 and 115 more |
||
| #VU71529 - Resource exhaustion CVE-2022-3094 |
CWE-400 | Medium | 1.12.4 | 25.01.2023 |
SB2023012556 SB2023012559 SB2023012602 and 47 more |
||
| #VU67545 - Resource Management Errors CVE-2022-2795 |
CWE-399 | Medium | 1.12.4 | 21.09.2022 |
SB2022092131 SB2022092140 SB2022092143 and 71 more |
||
| #VU61422 - Reliance on Reverse DNS Resolution for a Security-Critical Action CVE-2021-25220 |
CWE-350 | Medium | 1.12.4 | 17.03.2022 |
SB2022031701 SB2022031719 SB2022031725 and 57 more |
Showing elements 81 - 100 out of 241