Known vulnerabilities in Red Hat OpenShift GitOps - page 8

Software CPE: cpe:2.3:a:red_hat:red_hat_openshift_gitops:*:*:*:*:*:*:*:*
Total vulnerabilities: 241
Public exploits: 21
Known exploited (KEV): 3
Highest CVSSv4 Score: 9.4

Breakdown by Severity Chart

Severity distribution of vulnerabilities affecting Red Hat OpenShift GitOps Red Hat OpenShift GitOps is affected by 241 known vulnerabilities: 60 high, 133 medium, 48 low Critical High Medium Low

Vulnerabilities (241)

Vulnerability CWE-ID CSH Severity Public Exploit KEV First fixed release Published Bulletins
#VU82923 - Allocation of Resources Without Limits or Throttling
CVE-2023-3153
CWE-770 Medium
No
No
1.9.3 08.11.2023 SB2023110861
SB2023110864
SB2023110866
and 2 more
#VU82064 - Resource exhaustion
CVE-2023-39325
CWE-400 Medium
No
No
1.9.3, 1.10.1 16.10.2023 SB2023101651
SB2023101652
SB2023101653
and 341 more
#VU81728 - Resource exhaustion
CVE-2023-44487
CWE-400 High
Available
Exploited
1.9.3, 1.10.1 10.10.2023 SB2023101023
SB2023101024
SB2023101037
and 650 more
#VU80801 - Exposure of sensitive information to an unauthorized actor
CVE-2023-4641
CWE-200 Low
No
No
1.9.3, 1.10.0, 1.11 14.09.2023 SB2023091453
SB2023091455
SB2023101019
and 66 more
#VU80557 - Exposure of sensitive information to an unauthorized actor
CVE-2023-40029
CWE-200 Medium
No
No
1.9 08.09.2023 SB2023090822
SB2023090846
SB2023091175
#VU80556 - Improper input validation
CVE-2023-40584
CWE-20 Medium
No
No
1.9 08.09.2023 SB2023090822
SB2023090846
SB2023091175
#VU79523 - Improper Link Resolution Before File Access ('Link Following')
CVE-2021-35939
CWE-59 Low
No
No
1.10.0, 1.11 15.08.2023 SB2023081530
SB2024012452
SB2024012458
and 45 more
#VU79521 - Improper Link Resolution Before File Access ('Link Following')
CVE-2021-35938
CWE-59 Low
No
No
1.10.0, 1.11 15.08.2023 SB2023081530
SB2024012452
SB2024012458
and 45 more
#VU77780 - Memory corruption
CVE-2020-24736
CWE-119 Low
No
No
1.10.0, 1.11 29.06.2023 SB2023062903
SB2023062908
SB2023062968
and 45 more
#VU76757 - Missing release of memory after effective lifetime
CVE-2023-2602
CWE-401 Medium
No
No
- 01.06.2023 SB2023060126
SB2023061452
SB2023070343
and 74 more
#VU75606 - Improper Certificate Validation
CVE-2023-31486
CWE-295 Medium
No
No
1.9.3 01.05.2023 SB2023050118
SB2023070339
SB2023101769
and 46 more
#VU75482 - Integer overflow
CVE-2022-48468
CWE-190 High
No
No
1.10.0, 1.11 25.04.2023 SB2022072825
SB2023042551
SB2023050992
and 50 more
#VU72575 - Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection')
CVE-2022-48339
CWE-78 High
No
No
1.9.3 26.02.2023 SB2022120142
SB2023022605
SB2023030230
and 50 more
#VU72573 - Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection')
CVE-2022-48337
CWE-78 High
No
No
1.9.3 26.02.2023 SB2022120142
SB2023022605
SB2023030230
and 42 more
#VU70456 - Use After Free
CVE-2022-43552
CWE-416 Low
No
No
1.10.0, 1.11 21.12.2022 SB2022122102
SB2022122620
SB2022122621
and 66 more
#VU66881 - Improper input validation
CVE-2022-35252
CWE-20 Medium
No
No
1.10.0, 1.11 31.08.2022 SB2022083106
SB2022090108
SB2022090217
and 55 more
#VU48418 - Out-of-bounds read
CVE-2020-28241
CWE-125 Medium
No
No
1.10.0, 1.11, 1.12.5, 1.13.1 06.11.2020 SB2020110615
SB2020111401
SB2020111404
and 32 more
#VU22933 - Buffer over-read
CVE-2019-19204
CWE-126 Medium
No
No
1.10.0, 1.11 22.11.2019 SB2019111806
SB2020120202
SB2022092145
and 23 more
#VU22932 - Buffer over-read
CVE-2019-19203
CWE-126 Medium
No
No
1.10.0, 1.11 22.11.2019 SB2019111806
SB2020120202
SB2022092145
and 22 more
#VU22814 - Integer overflow
CVE-2019-19012
CWE-190 High
No
No
1.10.0, 1.11 18.11.2019 SB2019111806
SB2023021411
SB2024012468
and 19 more


Showing elements 141 - 160 out of 241