Known vulnerabilities in Red Hat OpenShift GitOps - page 7

Software CPE: cpe:2.3:a:red_hat:red_hat_openshift_gitops:*:*:*:*:*:*:*:*
Total vulnerabilities: 241
Public exploits: 21
Known exploited (KEV): 3
Highest CVSSv4 Score: 9.4

Breakdown by Severity Chart

Severity distribution of vulnerabilities affecting Red Hat OpenShift GitOps Red Hat OpenShift GitOps is affected by 241 known vulnerabilities: 60 high, 133 medium, 48 low Critical High Medium Low

Vulnerabilities (241)

Vulnerability CWE-ID CSH Severity Public Exploit KEV First fixed release Published Bulletins
#VU85991 - Security Features
CVE-2024-21626
CWE-254 High
Available
No
1.10.0, 1.11 01.02.2024 SB2024020112
SB2024020113
SB2024020123
and 78 more
#VU85623 - Information Exposure Through Timing Discrepancy
CVE-2024-0553
CWE-208 Medium
No
No
1.10.0, 1.10.4, 1.11, 1.11.3, 1.12.0 21.01.2024 SB2024012105
SB2024012106
SB2024012234
and 78 more
#VU84789 - Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection')
CVE-2023-51385
CWE-78 Medium
Available
No
1.11 26.12.2023 SB2023121905
SB2023122710
SB2023122801
and 65 more
#VU84537 - Inadequate Encryption Strength
CVE-2023-48795
CWE-326 Low
Available
No
1.10.0, 1.11 19.12.2023 SB2023121903
SB2023121905
SB2023121906
and 343 more
#VU83316 - Information Exposure Through Timing Discrepancy
CVE-2023-5981
CWE-208 Medium
No
No
1.10.0, 1.11 20.11.2023 SB2023112075
SB2023112145
SB2023120164
and 79 more
#VU82980 - Improper input validation
CVE-2023-27043
CWE-20 Medium
No
No
1.10.0, 1.11 10.11.2023 SB2023041957
SB2023111064
SB2023111315
and 120 more
#VU82978 - Exposure of sensitive information to an unauthorized actor
CVE-2023-45803
CWE-200 Medium
No
No
1.10.0, 1.11 10.11.2023 SB2023111038
SB2023111040
SB2023111048
and 122 more
#VU82078 - Use After Free
CVE-2022-48560
CWE-416 Medium
No
No
1.10.0, 1.11 17.10.2023 SB2023101708
SB2023101712
SB20231017145
and 29 more
#VU82077 - Resource exhaustion
CVE-2022-48564
CWE-400 Medium
No
No
1.10.0, 1.11 17.10.2023 SB2023101707
SB20231123125
SB2023112746
and 19 more
#VU81322 - Exposure of sensitive information to an unauthorized actor
CVE-2023-43804
CWE-200 Low
Available
No
1.10.0, 1.11 02.10.2023 SB2023100251
SB2023100259
SB2023100260
and 112 more
#VU81044 - Out-of-bounds read
CVE-2023-39615
CWE-125 Medium
No
No
1.10.0, 1.11 21.09.2023 SB2023092155
SB2023092202
SB2023092203
and 61 more
#VU79522 - Time-of-check Time-of-use (TOCTOU) Race Condition
CVE-2021-35937
CWE-367 Low
No
No
1.10.0, 1.11 15.08.2023 SB2023081530
SB2024012452
SB2024012458
and 45 more
#VU77164 - Exposure of sensitive information to an unauthorized actor
CVE-2023-32681
CWE-200 Medium
Available
No
1.10.0, 1.11, 1.12.5, 1.13.1 12.06.2023 SB2023061224
SB2023061306
SB2023061514
and 114 more
#VU75741 - Improper input validation
CVE-2023-1667
CWE-20 Medium
No
No
1.10.0, 1.11 04.05.2023 SB2023050456
SB2023050501
SB2023052441
and 75 more
#VU75740 - Improper Authentication
CVE-2023-2283
CWE-287 High
No
No
1.10.0, 1.11 04.05.2023 SB2023050456
SB2023050501
SB2023052441
and 84 more
#VU75141 - Memory corruption
CVE-2023-29491
CWE-119 Low
No
No
1.10.0, 1.11 14.04.2023 SB2023041454
SB2023052328
SB2023052346
and 132 more
#VU73828 - State Issues
CVE-2023-27535
CWE-371 Low
No
No
1.10.0, 1.11 20.03.2023 SB2023032027
SB2023032028
SB2023032044
and 84 more
#VU67583 - Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal')
CVE-2007-4559
CWE-22 High
Available
No
1.10.0, 1.11 22.09.2022 SB2007082801
SB2022120206
SB2023060825
and 68 more
#VU30789 - Resource exhaustion
CVE-2019-16163
CWE-400 Medium
No
No
1.10.0, 1.11 09.09.2019 SB2019090921
SB2022092145
SB2022110232
and 24 more
#VU20904 - Use After Free
CVE-2019-13224
CWE-416 High
No
No
1.10.0, 1.11 06.09.2019 SB2019090602
SB2019092002
SB2019100314
and 26 more


Showing elements 121 - 140 out of 241