Known vulnerabilities in rhvm-appliance (Red Hat package)

Software CPE: cpe:2.3:o:red_hat:rhvm-appliance_redhat_package:*:*:*:*:*:red_hat_enterprise_linux:*:*
Total vulnerabilities: 12
Public exploits: 1
Known exploited (KEV): 0
Highest CVSSv4 Score: 9.3

Breakdown by Severity Chart

Severity distribution of vulnerabilities affecting rhvm-appliance (Red Hat package) rhvm-appliance (Red Hat package) is affected by 12 known vulnerabilities: 2 high, 3 medium, 7 low Critical High Medium Low

Vulnerabilities (12)

Vulnerability CWE-ID CSH Severity Public Exploit KEV First fixed release Published Bulletins
#VU59043 - Missing release of memory after effective lifetime
CVE-2021-3677
CWE-401 Low
No
No
4.5-20220603.1.el8ev 16.12.2021 SB2021121641
SB2021121642
SB2021121643
and 17 more
#VU45749 - Untrusted Search Path
CVE-2020-14350
CWE-426 Medium
No
No
4.4-20210310.0.el8ev 18.08.2020 SB2020081801
SB2020081802
SB2020081803
and 31 more
#VU45748 - Untrusted Search Path
CVE-2020-14349
CWE-426 Medium
No
No
4.4-20210310.0.el8ev 18.08.2020 SB2020081801
SB2020081803
SB2020082205
and 23 more
#VU48780 - Memory corruption
CVE-2015-8011
CWE-119 High
No
No
4.4-20210310.0.el8ev 28.01.2020 SB2020012836
SB2020120408
SB2020120409
and 17 more
#VU28395 - Exposure of sensitive information to an unauthorized actor
CVE-2018-12127
CWE-200 Low
No
No
4.3-20190506.0.el7 30.05.2019 SB2019053010
SB2019051422
SB2019072469
and 67 more
#VU28396 - Exposure of sensitive information to an unauthorized actor
CVE-2018-12130
CWE-200 Low
No
No
4.3-20190506.0.el7 30.05.2019 SB2019053011
SB2019051422
SB2019072469
and 67 more
#VU28397 - Exposure of sensitive information to an unauthorized actor
CVE-2018-12126
CWE-200 Low
No
No
4.3-20190506.0.el7 30.05.2019 SB2019053012
SB2019051422
SB2019072469
and 67 more
#VU28398 - Exposure of sensitive information to an unauthorized actor
CVE-2019-11091
CWE-200 Low
No
No
4.3-20190506.0.el7 30.05.2019 SB2019053013
SB2019051422
SB2019072469
and 67 more
#VU18355 - Improper input validation
CVE-2019-9636
CWE-20 Medium
No
No
4.2-20190411.1.el7 27.04.2019 SB2019042703
SB2019050611
SB2019051007
and 56 more
#VU15723 - Information Exposure Through Timing Discrepancy
CVE-2018-5407
CWE-208 Low
Available
No
4.3-20190409.0.el7 06.11.2018 SB2018110602
SB2018111301
SB2018112201
and 30 more
#VU14515 - Improper Restriction of XML External Entity Reference ('XXE')
CVE-2018-1000632
CWE-611 Low
No
No
4.3-20190502.0.el7 21.08.2018 SB2018082321
SB2018120722
SB2018121006
and 20 more
#VU11268 - Deserialization of Untrusted Data
CVE-2018-7489
CWE-502 High
No
No
4.2-20180620.0.el7 26.03.2018 SB2018021604
SB2018041910
SB2018050306
and 28 more