Known vulnerabilities in grafana-debuginfo - page 4

Vendor: SUSE
Software CPE: cpe:2.3:o:suse:grafana-debuginfo:*:*:*:*:*:suse_linux:*:*
Total vulnerabilities: 101
Public exploits: 9
Known exploited (KEV): 2
Highest CVSSv4 Score: 9.4

Breakdown by Severity Chart

Severity distribution of vulnerabilities affecting grafana-debuginfo grafana-debuginfo is affected by 101 known vulnerabilities: 13 high, 42 medium, 46 low Critical High Medium Low

Vulnerabilities (101)

Vulnerability CWE-ID CSH Severity Public Exploit KEV First fixed release Published Bulletins
#VU72132 - Improper Authentication
CVE-2022-39229
CWE-287 Low
No
No
8.5.15-150000.1.39.1, 8.5.15-150200.3.32.1, 9.5.8-159000.4.24.1 12.02.2023 SB2023021201
SB2023021202
SB2023021203
and 13 more
#VU72131 - Exposure of sensitive information to an unauthorized actor
CVE-2022-39201
CWE-200 Medium
No
No
8.5.15-150000.1.39.1, 8.5.15-150200.3.32.1, 9.5.8-159000.4.24.1 12.02.2023 SB2023021201
SB2023021202
SB2023021203
and 12 more
#VU72130 - Exposure of sensitive information to an unauthorized actor
CVE-2022-31130
CWE-200 Medium
No
No
8.5.15-150000.1.39.1, 8.5.15-150200.3.32.1, 9.5.8-159000.4.24.1 12.02.2023 SB2023021201
SB2023021202
SB2023021203
and 11 more
#VU72128 - Improper Verification of Cryptographic Signature
CVE-2022-31123
CWE-347 Medium
No
No
8.5.15-150000.1.39.1, 8.5.15-150200.3.32.1, 9.5.8-159000.4.24.1 11.02.2023 SB2023021201
SB2023021202
SB2023021203
and 15 more
#VU71567 - Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')
CVE-2022-23552
CWE-79 Low
No
No
8.5.20-150000.1.42.1, 8.5.20-150200.3.35.1, 9.5.8-159000.4.24.1 26.01.2023 SB2023012632
SB2023032032
SB2023032033
and 10 more
#VU69485 - Exposure of sensitive information to an unauthorized actor
CVE-2022-39307
CWE-200 Medium
No
No
8.5.15-150000.1.39.1, 8.5.15-150200.3.32.1, 9.5.8-159000.4.24.1 22.11.2022 SB2022112220
SB2023021202
SB2023021203
and 12 more
#VU69484 - Improper input validation
CVE-2022-39306
CWE-20 Medium
No
No
8.5.15-150000.1.39.1, 8.5.15-150200.3.32.1, 9.5.8-159000.4.24.1 22.11.2022 SB2022112220
SB2023021202
SB2023021203
and 12 more
#VU68897 - Resource exhaustion
CVE-2022-32149
CWE-400 Medium
No
No
9.5.1-150000.1.48.5, 9.5.1-150200.3.41.3, 9.5.5-150000.1.54.3, 9.5.8-159000.4.24.1 01.11.2022 SB2022110139
SB2022110140
SB2022110142
and 68 more
#VU68557 - Authentication Bypass Using an Alternate Path or Channel
CVE-2022-35957
CWE-288 Low
No
No
8.5.13-150100.3.12.1, 9.5.1-150000.1.48.5, 9.5.1-150200.3.41.3, 9.5.8-159000.4.24.1 20.10.2022 SB2022092614
SB2022102094
SB2023050969
and 16 more
#VU67646 - Permissions, Privileges, and Access Controls
CVE-2022-36062
CWE-264 Medium
No
No
8.5.13-150100.3.12.1, 9.5.1-150000.1.48.5, 9.5.1-150200.3.41.3, 9.5.8-159000.4.24.1 26.09.2022 SB2022092614
SB2022102094
SB2023062230
and 10 more
#VU67396 - Improper input validation
CVE-2022-27664
CWE-20 Medium
No
No
9.5.1-150000.1.48.5, 9.5.1-150200.3.41.3, 9.5.8-159000.4.24.1 15.09.2022 SB2022091520
SB2022091521
SB2022092144
and 127 more
#VU65354 - Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')
CVE-2022-31097
CWE-79 Low
No
No
8.3.10-150000.1.33.1, 8.3.10-150200.3.26.1, 8.5.13-150100.3.12.1, 9.5.1-150000.1.48.5, 9.5.1-150200.3.41.3, 9.5.8-159000.4.24.1 15.07.2022 SB2022071510
SB2022102094
SB2022102641
and 16 more
#VU65353 - Improper Authentication
CVE-2022-31107
CWE-287 High
No
No
8.3.10-150000.1.33.1, 8.3.10-150200.3.26.1, 8.5.13-150100.3.12.1, 9.5.1-150000.1.48.5, 9.5.1-150200.3.41.3, 9.5.8-159000.4.24.1 15.07.2022 SB2022071510
SB2022072642
SB2022072643
and 21 more
#VU64430 - Incorrect Authorization
CVE-2021-41244
CWE-863 Medium
No
No
8.3.5-150000.1.30.1, 8.5.13-150100.3.12.1, 9.5.8-159000.4.24.1 16.06.2022 SB2021111513
SB2022062026
SB2022102094
and 5 more
#VU64273 - Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal')
CVE-2021-43813
CWE-22 Low
No
No
8.3.5-150000.1.30.1, 9.5.8-159000.4.24.1 14.06.2022 SB2022061422
SB2022062026
SB2022081215
and 16 more
#VU63461 - Improper input validation
CVE-2022-29170
CWE-20 Low
No
No
9.5.8-159000.4.24.1 19.05.2022 SB2022051916
SB2024012352
SB2024012403
and 3 more
#VU57926 - Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')
CVE-2021-41174
CWE-79 Low
Available
No
8.3.5-150000.1.30.1, 8.5.13-150100.3.12.1, 9.5.8-159000.4.24.1 03.11.2021 SB2021110312
SB2021110517
SB2022062026
and 4 more
#VU57422 - Information Exposure Through an Error Message
CVE-2021-3620
CWE-209 Low
No
No
9.5.8-159000.4.24.1 19.10.2021 SB2021101903
SB2021101904
SB2021101905
and 10 more
#VU56063 - Memory corruption
CVE-2021-3711
CWE-119 High
No
No
8.3.5-150000.1.30.1, 8.5.13-150100.3.12.1, 9.5.8-159000.4.24.1 24.08.2021 SB2021082414
SB2021082508
SB2021082510
and 53 more
#VU55287 - NULL Pointer Dereference
CVE-2021-36222
CWE-476 Medium
No
No
8.3.5-150000.1.30.1, 8.5.13-150100.3.12.1, 9.5.8-159000.4.24.1 25.07.2021 SB2021072501
SB2021072502
SB2021080601
and 24 more


Showing elements 61 - 80 out of 101