Known vulnerabilities in openSUSE Leap

Vendor: SUSE
Software: openSUSE Leap
Software CPE: cpe:2.3:o:suse:opensuse_leap:*:*:*:*:*:*:*:*
Total vulnerabilities: 12331
Public exploits: 252
Known exploited (KEV): 60
Highest CVSSv4 Score: 9.4

Breakdown by Severity Chart

Severity distribution of vulnerabilities affecting openSUSE Leap openSUSE Leap is affected by 12331 known vulnerabilities: 38 critical, 1037 high, 2248 medium, 9006 low Critical High Medium Low

Vulnerabilities (12331)

Vulnerability CWE-ID CSH Severity Public Exploit KEV First fixed release Published Bulletins
#VU144224 - Improper Handling of Exceptional Conditions
CVE-2026-27448
CWE-755 Medium
No
No
- 18.08.2026 SB2026081870
SB2026081877
SB2026081878
and 21 more
#VU144104 - Buffer overflow
CVE-2026-27459
CWE-120 High
No
No
- 18.08.2026 SB2026081845
SB2026081847
SB2026081877
and 16 more
#VU142296 - Improper Link Resolution Before File Access ('Link Following')
CVE-2026-53783
CWE-59 Medium
No
No
- 13.08.2026 SB2026081362
SB2026081821
SB2026082074
and 2 more
#VU142295 - Improper Link Resolution Before File Access ('Link Following')
CVE-2026-53784
CWE-59 Low
No
No
- 13.08.2026 SB2026081362
SB2026081821
SB2026082074
and 2 more
#VU142294 - Improper Link Resolution Before File Access ('Link Following')
CVE-2026-53785
CWE-59 Low
No
No
- 13.08.2026 SB2026081362
SB2026081821
SB2026082074
and 2 more
#VU142293 - Improper Access Control
CVE-2026-53786
CWE-284 Medium
No
No
- 13.08.2026 SB2026081362
SB2026081821
SB2026082074
and 2 more
#VU142291 - Improper Neutralization of Special Elements in Output Used by a Downstream Component ('Injection')
CVE-2026-53788
CWE-74 Medium
No
No
- 13.08.2026 SB2026081362
SB2026081821
SB2026082074
and 2 more
#VU139401 - Use After Free
CVE-2026-64530
CWE-416 Medium
No
No
- 27.07.2026 SB2026072723
SB2026073001
SB20260731177
and 50 more
#VU139392 - Improper Control of Generation of Code ('Code Injection')
CVE-2026-73076
CWE-94 High
No
No
- 27.07.2026 SB2026072714
SB2026082207
SB2026082208
and 1 more
#VU139391 - Heap-based Buffer Overflow
CVE-2026-73072
CWE-122 Medium
No
No
- 27.07.2026 SB2026072713
SB2026082207
SB2026082208
and 1 more
#VU139389 - Use After Free
CVE-2026-73071
CWE-416 Low
No
No
- 27.07.2026 SB2026072711
SB2026082207
SB2026082208
and 1 more
#VU139262 - Command injection
CVE-2026-73078
CWE-77 High
No
No
- 24.07.2026 SB2026072423
SB2026082207
SB2026082208
and 1 more
#VU139260 - Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection')
CVE-2026-73077
CWE-78 Medium
No
No
- 24.07.2026 SB2026072422
SB2026082207
SB2026082208
and 1 more
#VU139259 - Heap-based Buffer Overflow
CVE-2026-73074
CWE-122 Low
No
No
- 24.07.2026 SB2026072421
SB2026082207
SB2026082208
and 1 more
#VU139258 - Stack-based buffer overflow
CVE-2026-73070
CWE-121 Low
No
No
- 24.07.2026 SB2026072420
SB2026082207
SB2026082208
and 1 more
#VU139257 - Buffer Underwrite ('Buffer Underflow')
CVE-2026-73075
CWE-124 Low
No
No
- 24.07.2026 SB2026072419
SB2026082207
SB2026082208
and 1 more
#VU139250 - Concurrent Execution using Shared Resource with Improper Synchronization ('Race Condition')
CVE-2026-64600
CWE-362 Low
Available
No
- 23.07.2026 SB2026072377
SB2026072425
SB20260727377
and 63 more
#VU135535 - Out-of-bounds read
CVE-2026-53224
CWE-125 Medium
No
No
- 26.06.2026 SB2026062699
SB20260721153
SB2026072258
and 73 more
#VU135508 - Out-of-bounds read
CVE-2026-53246
CWE-125 Medium
No
No
- 26.06.2026 SB2026062679
SB20260721153
SB2026072258
and 75 more
#VU118253 - Improper Link Resolution Before File Access ('Link Following')
CVE-2025-26625
CWE-59 High
No
No
- 11.11.2025 SB2025111128
SB2025111129
SB2025111130
and 20 more


Showing elements 1 - 20 out of 12331