Known vulnerabilities in webkit2gtk3 (Red Hat package) - page 15

Software CPE: cpe:2.3:o:red_hat:webkit2gtk3_redhat_package:*:*:*:*:*:red_hat_enterprise_linux:*:*
Total vulnerabilities: 317
Public exploits: 14
Known exploited (KEV): 20
Highest CVSSv4 Score: 9.3

Breakdown by Severity Chart

Severity distribution of vulnerabilities affecting webkit2gtk3 (Red Hat package) webkit2gtk3 (Red Hat package) is affected by 317 known vulnerabilities: 15 critical, 135 high, 75 medium, 92 low Critical High Medium Low

Vulnerabilities (317)

Vulnerability CWE-ID CSH Severity Public Exploit KEV First fixed release Published Bulletins
#VU32970 - Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')
CVE-2020-9925
CWE-79 Medium
No
No
2.28.4-1.el8 02.08.2020 SB2020080202
SB2020080203
SB2020082501
and 11 more
#VU32969 - Permissions, Privileges, and Access Controls
CVE-2020-9915
CWE-264 Medium
No
No
2.28.4-1.el8 02.08.2020 SB2020080202
SB2020080203
SB2020082501
and 11 more
#VU32968 - Use After Free
CVE-2020-9895
CWE-416 High
No
No
2.28.4-1.el8 02.08.2020 SB2020080202
SB2020080203
SB2020082501
and 11 more
#VU32967 - Out-of-bounds read
CVE-2020-9894
CWE-125 Medium
No
No
2.28.4-1.el8 02.08.2020 SB2020080202
SB2020080203
SB2020082501
and 11 more
#VU32966 - Use After Free
CVE-2020-9893
CWE-416 High
No
No
2.28.4-1.el8 02.08.2020 SB2020080202
SB2020080203
SB2020082501
and 11 more
#VU32965 - Command injection
CVE-2020-9862
CWE-77 Medium
No
No
2.28.4-1.el8 02.08.2020 SB2020080202
SB2020080203
SB2020082501
and 11 more
#VU32964 - Improper input validation
CVE-2020-9850
CWE-20 High
Available
No
2.28.4-1.el8 02.08.2020 SB2020071482
SB2020072610
SB2020070947
and 10 more
#VU32963 - Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')
CVE-2020-9843
CWE-79 Medium
No
No
2.28.4-1.el8 02.08.2020 SB2020071482
SB2020072610
SB2020070946
and 10 more
#VU32962 - Memory corruption
CVE-2020-9807
CWE-119 High
No
No
2.28.4-1.el8 02.08.2020 SB2020071482
SB2020072610
SB2020070945
and 10 more
#VU32961 - Memory corruption
CVE-2020-9806
CWE-119 High
No
No
2.28.4-1.el8 02.08.2020 SB2020071482
SB2020072610
SB2020070944
and 10 more
#VU32960 - Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')
CVE-2020-9805
CWE-79 Medium
No
No
2.28.4-1.el8 02.08.2020 SB2020071482
SB2020072610
SB2020070943
and 14 more
#VU32959 - Memory corruption
CVE-2020-9803
CWE-119 High
No
No
2.28.4-1.el8 02.08.2020 SB2020071482
SB2020072610
SB2020070941
and 14 more
#VU32958 - Improper input validation
CVE-2020-9802
CWE-20 High
Available
No
2.28.4-1.el8 02.08.2020 SB2020071482
SB2020072610
SB2020070940
and 14 more
#VU26431 - Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')
CVE-2020-3902
CWE-79 Low
No
No
2.28.4-1.el8 27.03.2020 SB2020032715
SB2020032719
SB2020051104
and 10 more
#VU26430 - Memory corruption
CVE-2020-3899
CWE-119 High
No
No
2.28.4-1.el8 27.03.2020 SB2020032715
SB2020032719
SB2020042823
and 12 more
#VU26427 - Memory corruption
CVE-2020-3900
CWE-119 High
No
No
2.28.4-1.el8 27.03.2020 SB2020032715
SB2020032718
SB2020032719
and 9 more
#VU26424 - Type confusion
CVE-2020-3901
CWE-843 High
No
No
2.28.4-1.el8 27.03.2020 SB2020032715
SB2020032718
SB2020032719
and 9 more
#VU26422 - Type confusion
CVE-2020-3897
CWE-843 High
No
No
2.28.4-1.el8 27.03.2020 SB2020032715
SB2020032718
SB2020032719
and 9 more
#VU33358 - Use After Free
CVE-2019-8644
CWE-416 High
No
No
2.24.4-2.el8_1 18.12.2019 SB2019083018
SB2019121737
SB2019090446
#VU23173 - Memory corruption
CVE-2019-8707
CWE-119 High
No
No
2.24.4-2.el8_1 02.12.2019 SB2019102922
SB2019113004
SB2019113005
and 4 more


Showing elements 281 - 300 out of 317