Known vulnerabilities in Basesystem Module 15-SP7 - page 50

Vendor: SUSE
Version: 15-SP7
Software CPE: cpe:2.3:o:suse:basesystem_module:*:*:*:*:*:*:*:*
Total vulnerabilities: 3862
Public exploits: 61
Known exploited (KEV): 14
Highest CVSSv4 Score: 9.4

Vulnerabilities by Severity

Severity distribution of vulnerabilities affecting Basesystem Module version 15-SP7 Basesystem Module 15-SP7 is affected by 3862 vulnerabilities: 9 critical, 141 high, 568 medium, 3143 low Critical High Medium Low

Vulnerabilities (3862)

Vulnerability CWE-ID CSH Severity Public Exploit KEV First fixed release Published Bulletins
#VU133359 - Use After Free
CVE-2026-41035
CWE-416 Medium
No
No
- 04.06.2026 SB2026060475
SB2026060476
SB2026060477
and 21 more
#VU133144 - Time-of-check Time-of-use (TOCTOU) Race Condition
CVE-2026-29518
CWE-367 Low
No
No
- 01.06.2026 SB2026060174
SB2026060175
SB2026060184
and 18 more
#VU133145 - Improper Access Control
CVE-2026-43617
CWE-284 Medium
No
No
- 01.06.2026 SB2026060174
SB2026060175
SB2026060184
and 14 more
#VU133146 - Integer overflow
CVE-2026-43618
CWE-190 Low
No
No
- 01.06.2026 SB2026060174
SB2026060175
SB2026060184
and 24 more
#VU133147 - Improper Link Resolution Before File Access ('Link Following')
CVE-2026-43619
CWE-59 Low
No
No
- 01.06.2026 SB2026060174
SB2026060175
SB2026060184
and 13 more
#VU133148 - Out-of-bounds read
CVE-2026-43620
CWE-125 Medium
No
No
- 01.06.2026 SB2026060174
SB2026060175
SB2026060184
and 18 more
#VU133149 - Off-by-one Error
CVE-2026-45232
CWE-193 Medium
No
No
- 01.06.2026 SB2026060174
SB2026060175
SB2026060184
and 20 more
#VU128730 - Improper Authorization
CVE-2026-33186
CWE-285 High
No
No
- 01.05.2026 SB2026050106
SB2026050107
SB2026050108
and 70 more
#VU128368 - Uncontrolled Memory Allocation
CVE-2026-42154
CWE-789 Medium
No
No
- 28.04.2026 SB20260428200
SB2026060464
SB2026060465
and 3 more
#VU128367 - Exposure of sensitive information to an unauthorized actor
CVE-2026-42151
CWE-200 Medium
No
No
- 28.04.2026 SB20260428200
SB2026060464
SB2026060465
and 1 more
#VU125920 - Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')
CVE-2026-40179
CWE-79 Low
No
No
- 14.04.2026 SB2026041458
SB2026060464
SB2026060465
#VU123754 - Double Free
CVE-2026-23240
CWE-415 Low
No
No
- 10.03.2026 SB20260310109
SB2026041129
SB2026041130
and 39 more
#VU123753 - Double Free
CVE-2026-23239
CWE-415 Low
No
No
- 10.03.2026 SB20260310108
SB20260513116
SB2026053002
and 5 more
#VU123545 - Double Free
CVE-2025-71238
CWE-415 Low
No
No
- 04.03.2026 SB2026030463
SB2026031305
SB2026031306
and 39 more
#VU123543 - NULL Pointer Dereference
CVE-2026-23237
CWE-476 Low
No
No
- 04.03.2026 SB2026030461
SB2026031305
SB2026031306
and 27 more
#VU123540 - Missing release of memory after effective lifetime
CVE-2026-23236
CWE-401 Low
No
No
- 04.03.2026 SB2026030458
SB2026031305
SB2026031306
and 24 more
#VU123174 - Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal')
CVE-2026-27606
CWE-22 High
Public exploit available
No
- 24.02.2026 SB2026022445
SB2026040631
SB2026040632
and 4 more
#VU122910 - Improper Locking
CVE-2026-23168
CWE-667 Low
No
No
- 16.02.2026 SB2026021695
SB2026052083
SB2026052160
and 13 more
#VU122221 - Loop with Unreachable Exit Condition ('Infinite Loop')
CVE-2025-71183
CWE-835 Low
No
No
- 02.02.2026 SB2026020272
SB2026020972
SB2026020973
and 14 more
#VU120074 - Improper Locking
CVE-2025-68310
CWE-667 Low
No
No
- 16.12.2025 SB20251216117
SB2026020690
SB2026020691
and 18 more


Showing elements 981 - 1000 out of 3862