Known vulnerabilities in grafana-debuginfo - page 3
Vendor:
SUSE
Software:
grafana-debuginfo
Software CPE:
cpe:2.3:o:suse:grafana-debuginfo:*:*:*:*:*:suse_linux:*:*
Website:
https://www.suse.com/
Total vulnerabilities:
101
Public exploits:
9
Known exploited (KEV):
2
Highest CVSSv4 Score:
9.4
Breakdown by Severity Chart
12.4.5-150200.3.91.1
12.4.5-160002.1.1
12.4.5-150000.1.98.1
12.4.5-150002.4.24.1
11.6.14+security04-160002.1.1
11.6.14+security04-150002.4.21.1
11.6.14+security01-150200.3.88.1
11.6.14+security01-150000.1.95.2
11.6.14+security01-150002.4.14.1
11.6.14+security01-160002.1.1
11.6.11-159000.2.3.2
11.6.11-150200.3.83.1
11.6.11-150000.1.90.1
11.5.10-150002.4.9.1
11.5.10-120002.4.9.1
11.5.10-150200.3.80.1
11.5.10-150002.4.6.1
11.5.10-120002.4.6.1
11.5.7-150002.4.3.3
11.5.7-120002.4.3.2
11.5.5-150200.3.72.2
11.5.5-150000.1.79.1
10.4.15-150200.3.67.1
10.4.15-150200.3.69.1
10.4.15-150000.1.75.1
10.4.15-150000.1.71.1
10.4.15-150200.3.64.1
10.4.13-150200.3.59.1
10.4.13-150000.1.66.1
9.5.18-159000.4.33.4
9.5.18-150200.3.56.1
9.5.18-150000.1.63.2
9.5.16-159000.4.30.2
9.5.8-150000.1.60.2
9.5.8-159000.4.24.1
9.5.5-150000.1.54.3
9.5.5-150200.3.47.1
9.5.5-150000.1.51.1
9.5.5-150200.3.44.1
9.5.1-150200.3.41.3
9.5.1-150000.1.48.5
8.5.22-150000.1.45.1
8.5.22-150200.3.38.1
8.5.20-150000.1.42.1
8.5.20-150200.3.35.1
8.3.5-150000.1.30.1
8.5.15-150200.3.32.1
8.5.15-150000.1.39.1
8.3.10-150000.1.33.1
8.3.10-150200.3.26.1
8.5.13-150100.3.12.1
6.7.4-3.29.1
6.7.4-4.23.1
Vulnerabilities (101)
| Vulnerability | CWE-ID | CSH Severity | Public Exploit | KEV | First fixed release | Published | Bulletins |
|---|---|---|---|---|---|---|---|
| #VU85621 - Missing release of memory after effective lifetime CVE-2024-0690 |
CWE-401 | Low | 9.5.16-159000.4.30.2, 9.5.18-150000.1.63.2 | 19.01.2024 |
SB2024011931 SB2024011933 SB2024011934 and 11 more |
||
| #VU84381 - Improper Control of Generation of Code ('Code Injection') CVE-2023-5764 |
CWE-94 | Medium | 9.5.16-159000.4.30.2, 9.5.18-150000.1.63.2 | 13.12.2023 |
SB2023121315 SB2023121316 SB2023121317 and 16 more |
||
| #VU68390 - Resource exhaustion CVE-2022-41715 |
CWE-400 | Medium | 9.5.1-150000.1.48.5, 9.5.8-150000.1.60.2, 9.5.8-159000.4.24.1 | 18.10.2022 |
SB2022101833 SB2022101834 SB2022102005 and 113 more |
||
| #VU65355 - Incorrect Regular Expression CVE-2020-7753 |
CWE-185 | Medium | 9.5.1-150000.1.48.5, 9.5.1-150200.3.41.3, 9.5.8-150000.1.60.2, 9.5.8-159000.4.24.1 | 15.07.2022 |
SB2020102724 SB2022071510 SB2023062230 and 12 more |
||
| #VU64404 - Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') CVE-2021-43815 |
CWE-22 | Low | 8.3.5-150000.1.30.1, 8.5.13-150100.3.12.1, 9.5.8-150000.1.60.2, 9.5.8-159000.4.24.1 | 15.06.2022 |
SB2021121022 SB2022062026 SB2022102094 and 8 more |
||
| #VU64034 - Improper Control of Generation of Code ('Code Injection') CVE-2021-3918 |
CWE-94 | High | 9.5.1-150000.1.48.5, 9.5.1-150200.3.41.3, 9.5.8-150000.1.60.2, 9.5.8-159000.4.24.1 | 07.06.2022 |
SB2021111302 SB2022060836 SB2022071504 and 45 more |
||
| #VU62361 - Improper Control of Generation of Code ('Code Injection') CVE-2021-43138 |
CWE-94 | Medium | 9.5.1-150000.1.48.5, 9.5.1-150200.3.41.3, 9.5.8-150000.1.60.2, 9.5.8-159000.4.24.1 | 15.04.2022 |
SB2022041532 SB2022041533 SB2022062103 and 33 more |
||
| #VU61669 - Exposure of sensitive information to an unauthorized actor CVE-2022-0155 |
CWE-200 | Low | 9.5.1-150000.1.48.5, 9.5.1-150200.3.41.3, 9.5.8-150000.1.60.2, 9.5.8-159000.4.24.1 | 28.03.2022 |
SB2022032840 SB2022032843 SB2022071505 and 32 more |
||
| #VU58647 - Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') CVE-2021-43798 |
CWE-22 | High | 8.3.5-150000.1.30.1, 8.5.13-150100.3.12.1, 9.5.8-150000.1.60.2, 9.5.8-159000.4.24.1 | 08.12.2021 |
SB2021120803 SB2022062026 SB2022102094 and 7 more |
||
| #VU57967 - Improper input validation CVE-2021-3807 |
CWE-20 | Medium | 9.5.1-150000.1.48.5, 9.5.1-150200.3.41.3, 9.5.8-150000.1.60.2, 9.5.8-159000.4.24.1 | 05.11.2021 |
SB2021110513 SB2021112603 SB2022042257 and 51 more |
||
| #VU54626 - Improper Control of Generation of Code ('Code Injection') CVE-2021-3583 |
CWE-94 | High | 9.5.8-159000.4.24.1 | 08.07.2021 |
SB2021070822 SB2021070823 SB2021071517 and 12 more |
||
| #VU52984 - Information Exposure Through Log Files CVE-2021-3447 |
CWE-532 | Low | 9.5.8-159000.4.24.1 | 10.05.2021 |
SB2021040180 SB2021051001 SB2021072616 and 13 more |
||
| #VU50936 - Information Exposure Through Log Files CVE-2021-20191 |
CWE-532 | Low | 9.5.8-159000.4.24.1 | 25.02.2021 |
SB2021022511 SB2021022512 SB2021022513 and 11 more |
||
| #VU50818 - Information Exposure Through Log Files CVE-2021-20228 |
CWE-532 | Low | 9.5.8-159000.4.24.1 | 22.02.2021 |
SB2021022203 SB2021022205 SB2021022512 and 7 more |
||
| #VU50429 - Information Exposure Through Log Files CVE-2021-20180 |
CWE-532 | Low | 9.5.8-159000.4.24.1 | 09.02.2021 |
SB2021020903 SB2021020904 SB2021022512 and 11 more |
||
| #VU50428 - Information Exposure Through Log Files CVE-2021-20178 |
CWE-532 | Low | 9.5.8-159000.4.24.1 | 09.02.2021 |
SB2021020903 SB2021020904 SB2021022512 and 10 more |
||
| #VU47274 - Improper Verification of Cryptographic Signature CVE-2020-14365 |
CWE-347 | Low | 9.5.16-159000.4.30.2, 9.5.18-150000.1.63.2 | 23.09.2020 |
SB2020092344 SB2020100222 SB2020102019 and 12 more |
||
| #VU47114 - Improper input validation CVE-2020-14330 |
CWE-20 | Low | 9.5.18-150000.1.63.2 | 11.09.2020 |
SB2020092608 SB2020102017 SB2021080804 and 8 more |
||
| #VU47115 - Information Exposure Through Log Files CVE-2020-14332 |
CWE-532 | Low | 9.5.18-150000.1.63.2 | 11.09.2020 |
SB2020092609 SB2020102018 SB2021080804 and 7 more |
||
| #VU29029 - Information Exposure Through Log Files CVE-2020-1753 |
CWE-532 | Low | 9.5.18-150000.1.63.2 | 15.06.2020 |
SB2020032420 SB2020061518 SB2021080804 and 11 more |
Showing elements 41 - 60 out of 101