Known vulnerabilities in grafana-debuginfo - page 2
Vendor:
SUSE
Software:
grafana-debuginfo
Software CPE:
cpe:2.3:o:suse:grafana-debuginfo:*:*:*:*:*:suse_linux:*:*
Website:
https://www.suse.com/
Total vulnerabilities:
101
Public exploits:
9
Known exploited (KEV):
2
Highest CVSSv4 Score:
9.4
Breakdown by Severity Chart
12.4.5-150200.3.91.1
12.4.5-160002.1.1
12.4.5-150000.1.98.1
12.4.5-150002.4.24.1
11.6.14+security04-160002.1.1
11.6.14+security04-150002.4.21.1
11.6.14+security01-150200.3.88.1
11.6.14+security01-150000.1.95.2
11.6.14+security01-150002.4.14.1
11.6.14+security01-160002.1.1
11.6.11-159000.2.3.2
11.6.11-150200.3.83.1
11.6.11-150000.1.90.1
11.5.10-150002.4.9.1
11.5.10-120002.4.9.1
11.5.10-150200.3.80.1
11.5.10-150002.4.6.1
11.5.10-120002.4.6.1
11.5.7-150002.4.3.3
11.5.7-120002.4.3.2
11.5.5-150200.3.72.2
11.5.5-150000.1.79.1
10.4.15-150200.3.67.1
10.4.15-150200.3.69.1
10.4.15-150000.1.75.1
10.4.15-150000.1.71.1
10.4.15-150200.3.64.1
10.4.13-150200.3.59.1
10.4.13-150000.1.66.1
9.5.18-159000.4.33.4
9.5.18-150200.3.56.1
9.5.18-150000.1.63.2
9.5.16-159000.4.30.2
9.5.8-150000.1.60.2
9.5.8-159000.4.24.1
9.5.5-150000.1.54.3
9.5.5-150200.3.47.1
9.5.5-150000.1.51.1
9.5.5-150200.3.44.1
9.5.1-150200.3.41.3
9.5.1-150000.1.48.5
8.5.22-150000.1.45.1
8.5.22-150200.3.38.1
8.5.20-150000.1.42.1
8.5.20-150200.3.35.1
8.3.5-150000.1.30.1
8.5.15-150200.3.32.1
8.5.15-150000.1.39.1
8.3.10-150000.1.33.1
8.3.10-150200.3.26.1
8.5.13-150100.3.12.1
6.7.4-3.29.1
6.7.4-4.23.1
Vulnerabilities (101)
| Vulnerability | CWE-ID | CSH Severity | Public Exploit | KEV | First fixed release | Published | Bulletins |
|---|---|---|---|---|---|---|---|
| #VU105450 - Resource exhaustion CVE-2025-27144 |
CWE-400 | Medium | 10.4.15-150000.1.75.1, 10.4.15-150200.3.67.1, 10.4.15-150200.3.69.1 | 07.03.2025 |
SB2025030735 SB2025030736 SB2025030737 and 80 more |
||
| #VU104138 - Improper Link Resolution Before File Access ('Link Following') CVE-2024-45339 |
CWE-59 | Low | 10.4.15-150000.1.71.1, 10.4.15-150200.3.64.1 | 21.02.2025 |
SB2025022137 SB2025022138 SB2025022141 and 35 more |
||
| #VU104016 - Exposure of sensitive information to an unauthorized actor CVE-2024-22037 |
CWE-200 | Low | 10.4.13-150000.1.66.1 | 17.02.2025 |
SB2025021737 SB2025021738 SB2025021739 and 5 more |
||
| #VU103503 - Exposure of sensitive information to an unauthorized actor CVE-2024-11741 |
CWE-200 | Medium | 10.4.15-150000.1.71.1, 10.4.15-150200.3.64.1 | 03.02.2025 |
SB2025020329 SB2025022148 SB2025022149 and 1 more |
||
| #VU103421 - Argument Injection or Modification CVE-2025-21613 |
CWE-88 | Low | 10.4.15-150000.1.71.1, 10.4.15-150200.3.64.1 | 29.01.2025 |
SB2025012918 SB2025012919 SB2025012920 and 27 more |
||
| #VU101894 - Insufficient Technical Documentation CVE-2024-51744 |
CWE-1059 | Low | 10.4.13-150000.1.66.1 | 23.12.2024 |
SB2024122304 SB2024122309 SB20241230139 and 21 more |
||
| #VU101777 - Improper Authorization CVE-2024-45337 |
CWE-285 | Medium | 10.4.13-150000.1.66.1, 10.4.13-150200.3.59.1 | 13.12.2024 |
SB2024121332 SB2024121333 SB2024121334 and 93 more |
||
| #VU99259 - Improper Access Control CVE-2024-8118 |
CWE-284 | Low | 10.4.13-150000.1.66.1, 10.4.13-150200.3.59.1 | 22.10.2024 |
SB20241022375 SB2025021467 SB2025021742 and 1 more |
||
| #VU96048 - Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') CVE-2024-6837 |
CWE-79 | Medium | 10.4.13-150000.1.66.1, 10.4.13-150200.3.59.1 | 15.08.2024 |
SB2024081534 SB2025021467 SB2025021742 and 1 more |
||
| #VU89210 - Incorrect Authorization CVE-2023-6152 |
CWE-863 | Low | 9.5.16-159000.4.30.2, 9.5.18-150000.1.63.2, 9.5.18-150200.3.56.1, 10.4.13-150000.1.66.1, 10.4.13-150200.3.59.1 | 07.05.2024 |
SB2024050715 SB2024050717 SB2024050718 and 8 more |
||
| #VU87845 - Improper Authorization CVE-2024-1313 |
CWE-285 | Medium | 9.5.18-150000.1.63.2, 9.5.18-150200.3.56.1, 9.5.18-159000.4.33.4 | 27.03.2024 |
SB2024032711 SB2024043089 SB2024050720 and 10 more |
||
| #VU87538 - Resource exhaustion CVE-2024-28180 |
CWE-400 | Medium | 10.4.15-150000.1.71.1, 10.4.15-150200.3.64.1 | 14.03.2024 |
SB2024031446 SB2024031447 SB2024031448 and 106 more |
||
| #VU77652 - Improper Authentication CVE-2023-3128 |
CWE-287 | High | 9.5.5-150000.1.51.1, 9.5.5-150200.3.44.1, 9.5.8-159000.4.24.1, 10.4.13-150000.1.66.1, 10.4.13-150200.3.59.1 | 22.06.2023 |
SB2023062281 SB2023071336 SB20230720114 and 15 more |
||
| #VU29567 - Concurrent Execution using Shared Resource with Improper Synchronization ('Race Condition') CVE-2020-10744 |
CWE-362 | Low | 9.5.18-150000.1.63.2 | 07.07.2020 |
SB2020051522 SB2024050721 |
||
| #VU36806 - Key Management Errors CVE-2016-8614 |
CWE-320 | Medium | 9.5.18-150000.1.63.2 | 31.07.2018 |
SB2018073121 SB2024050721 SB2016110217 and 7 more |
||
| #VU36808 - Command injection CVE-2016-8628 |
CWE-77 | High | 9.5.18-150000.1.63.2 | 31.07.2018 |
SB2018073121 SB2024050721 SB2016110217 and 8 more |
||
| #VU14157 - Permissions, Privileges, and Access Controls CVE-2018-10874 |
CWE-264 | Low | 9.5.16-159000.4.30.2, 9.5.18-150000.1.63.2 | 31.07.2018 |
SB2018080113 SB2018073118 SB2019011610 and 10 more |
||
| #VU12555 - Information Exposure Through Log Files CVE-2017-7550 |
CWE-532 | Low | 9.5.16-159000.4.30.2, 9.5.18-150000.1.63.2 | 05.03.2018 |
SB2018030511 SB2017101940 SB2024050718 and 4 more |
||
| #VU7411 - Improper input validation CVE-2016-8647 |
CWE-20 | Low | 9.5.16-159000.4.30.2, 9.5.18-150000.1.63.2 | 11.07.2017 |
SB2017070615 SB2024050718 SB2024050721 and 4 more |
||
| #VU6639 - Improper input validation CVE-2017-7466 |
CWE-20 | Medium | 9.5.16-159000.4.30.2, 9.5.18-150000.1.63.2 | 17.05.2017 |
SB2017052310 SB2017052601 SB2017070615 and 22 more |
Showing elements 21 - 40 out of 101