Known vulnerabilities in golang-github-prometheus-prometheus - page 5

Vendor: SUSE
Software CPE: cpe:2.3:o:suse:golang-github-prometheus-prometheus:*:*:*:*:*:suse_linux:*:*
Total vulnerabilities: 94
Public exploits: 8
Known exploited (KEV): 2
Highest CVSSv4 Score: 9.3

Breakdown by Severity Chart

Severity distribution of vulnerabilities affecting golang-github-prometheus-prometheus golang-github-prometheus-prometheus is affected by 94 known vulnerabilities: 10 high, 44 medium, 40 low Critical High Medium Low

Vulnerabilities (94)

Vulnerability CWE-ID CSH Severity Public Exploit KEV First fixed release Published Bulletins
#VU82817 - Incorrect Permission Assignment for Critical Resource
CVE-2022-22941
CWE-732 Medium
No
No
2.32.1-4.30.1, 2.32.1-159000.6.30.4 07.11.2023 SB2022032942
SB2023110714
SB2022033035
and 21 more
#VU82815 - Authentication Bypass by Capture-replay
CVE-2022-22936
CWE-294 Medium
No
No
2.32.1-4.30.1, 2.32.1-159000.6.30.4 07.11.2023 SB2022032942
SB2023110714
SB2022033035
and 21 more
#VU82801 - Insufficient Verification of Data Authenticity
CVE-2022-22935
CWE-345 Medium
No
No
2.32.1-159000.6.30.4 07.11.2023 SB2022032942
SB2023110714
SB2022033035
and 20 more
#VU82800 - Cryptographic Issues
CVE-2022-22934
CWE-310 Low
No
No
2.32.1-4.30.1, 2.32.1-159000.6.30.4 07.11.2023 SB2022032942
SB2023110714
SB2022033035
and 21 more
#VU78913 - Improper Certificate Validation
CVE-2023-29409
CWE-295 Medium
No
No
2.45.0-1.47.3, 2.45.0-150000.3.50.3 03.08.2023 SB2023080320
SB2023080321
SB2023080370
and 98 more
#VU61599 - Improper input validation
CVE-2022-21698
CWE-20 Medium
No
No
2.32.1-1.38.1, 2.32.1-4.30.1, 2.32.1-150000.3.41.2, 2.32.1-150100.4.9.2, 2.32.1-159000.6.30.4, 2.45.0-4.33.3 24.03.2022 SB2022021530
SB2022032413
SB2022040807
and 110 more
#VU58294 -
CVE-2021-21996
Low
No
No
2.27.1-6.21.2 23.11.2021 SB2021112301
SB2021112302
SB2021102724
and 20 more
#VU53343 - URL Redirection to Untrusted Site ('Open Redirect')
CVE-2021-29622
CWE-601 Medium
No
No
2.27.1-1.29.2, 2.27.1-3.8.1, 2.27.1-3.31.1, 2.27.1-4.21.1, 2.27.1-6.21.2 19.05.2021 SB2021051910
SB2021052521
SB2021081236
and 6 more
#VU51582 - Improper Control of Interaction Frequency
CVE-2021-28148
CWE-799 Medium
No
No
2.27.1-1.29.2, 2.27.1-3.31.1, 2.27.1-4.21.1, 2.27.1-6.21.2 19.03.2021 SB2021031903
SB2021081235
SB2021081237
and 3 more
#VU51581 - Improper Access Control
CVE-2021-28147
CWE-284 Medium
No
No
2.27.1-1.29.2, 2.27.1-3.31.1, 2.27.1-4.21.1, 2.27.1-6.21.2 19.03.2021 SB2021031903
SB2021081235
SB2021081237
and 3 more
#VU51580 - Improper Access Control
CVE-2021-28146
CWE-284 Medium
No
No
2.27.1-1.29.2, 2.27.1-3.31.1, 2.27.1-4.21.1, 2.27.1-6.21.2 19.03.2021 SB2021031903
SB2021081235
SB2021081237
and 3 more
#VU51579 - Improper Privilege Management
CVE-2021-27962
CWE-269 Low
No
No
2.27.1-1.29.2, 2.27.1-3.31.1, 2.27.1-4.21.1, 2.27.1-6.21.2 19.03.2021 SB2021031903
SB2021081235
SB2021081237
and 3 more
#VU50936 - Information Exposure Through Log Files
CVE-2021-20191
CWE-532 Low
No
No
2.45.0-159000.6.33.1 25.02.2021 SB2021022511
SB2021022512
SB2021022513
and 11 more
#VU50429 - Information Exposure Through Log Files
CVE-2021-20180
CWE-532 Low
No
No
2.45.0-159000.6.33.1 09.02.2021 SB2021020903
SB2021020904
SB2021022512
and 11 more


Showing elements 81 - 100 out of 94