Known vulnerabilities in obs-scm-bridge
Vendor:
SUSE
Software:
obs-scm-bridge
Software CPE:
cpe:2.3:o:suse:obs-scm-bridge:*:*:*:*:*:suse_linux:*:*
Website:
https://www.suse.com/
Total vulnerabilities:
5
Public exploits:
1
Known exploited (KEV):
1
Highest CVSSv4 Score:
8.7
Breakdown by Severity Chart
Vulnerabilities (5)
| Vulnerability | CWE-ID | CSH Severity | Public Exploit | KEV | First fixed release | Published | Bulletins |
|---|---|---|---|---|---|---|---|
| #VU112646 - Product UI does not Warn User of Unsafe Actions CVE-2025-46835 |
CWE-356 | Medium | 0.7.4-150600.14.4.1 | 09.07.2025 |
SB2025070994 SB20250709121 SB2025071019 and 22 more |
||
| #VU112643 - Improper input validation CVE-2025-27614 |
CWE-20 | High | 0.7.4-150600.14.4.1 | 09.07.2025 |
SB2025070994 SB20250709119 SB2025071019 and 18 more |
||
| #VU112642 - Protection Mechanism Failure CVE-2025-27613 |
CWE-693 | High | 0.7.4-150600.14.4.1 | 09.07.2025 |
SB2025070994 SB20250709122 SB2025071019 and 22 more |
||
| #VU112638 - Improper input validation CVE-2025-48385 |
CWE-20 | High | 0.7.4-150600.14.4.1 | 09.07.2025 |
SB2025070989 SB2025070990 SB2025070991 and 38 more |
||
| #VU112637 - Improper Neutralization of CRLF Sequences ('CRLF Injection') CVE-2025-48384 |
CWE-93 | Medium | 0.7.4-150600.14.4.1 | 09.07.2025 |
SB2025070989 SB2025070990 SB2025070991 and 52 more |