Known vulnerabilities in openSUSE Leap - page 32

Vendor: SUSE
Software: openSUSE Leap
Software CPE: cpe:2.3:o:suse:opensuse_leap:*:*:*:*:*:*:*:*
Total vulnerabilities: 12331
Public exploits: 252
Known exploited (KEV): 60
Highest CVSSv4 Score: 9.4

Breakdown by Severity Chart

Severity distribution of vulnerabilities affecting openSUSE Leap openSUSE Leap is affected by 12331 known vulnerabilities: 38 critical, 1037 high, 2248 medium, 9006 low Critical High Medium Low

Vulnerabilities (12331)

Vulnerability CWE-ID CSH Severity Public Exploit KEV First fixed release Published Bulletins
#VU131464 - Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection')
CVE-2026-6638
CWE-89 Low
No
No
- 14.05.2026 SB20260514106
SB20260514108
SB2026051852
and 12 more
#VU131139 - Out-of-bounds write
CVE-2026-2291
CWE-787 Medium
No
No
- 12.05.2026 SB2026051245
SB20260513103
SB20260513104
and 14 more
#VU130763 - Resource Management Errors
CVE-2026-43284
CWE-399 High
Available
Exploited
- 08.05.2026 SB20260508111
SB20260508120
SB20260508121
and 72 more
#VU130759 - Resource Management Errors
CVE-2026-43500
CWE-399 High
Available
Exploited
- 08.05.2026 SB20260508108
SB20260508120
SB20260508121
and 32 more
#VU130191 - Session Fixation
CVE-2026-35192
CWE-384 Medium
No
No
- 05.05.2026 SB20260505111
SB2026050601
SB20260507300
and 10 more
#VU128474 - Improper Access Control
CVE-2026-35414
CWE-284 Low
No
No
- 29.04.2026 SB2026042988
SB2026042990
SB2026042992
and 24 more
#VU128475 - Improper Privilege Management
CVE-2026-35385
CWE-269 Low
No
No
- 29.04.2026 SB2026042988
SB2026042990
SB2026042992
and 30 more
#VU128398 - Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal')
CVE-2026-41205
CWE-22 Medium
No
No
- 28.04.2026 SB20260428216
SB2026050603
SB2026051399
and 2 more
#VU125895 - Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection')
CVE-2026-40176
CWE-78 High
No
No
- 14.04.2026 SB2026041445
SB2026041481
SB2026041482
and 8 more
#VU125894 - Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection')
CVE-2026-40261
CWE-78 High
No
No
- 14.04.2026 SB2026041445
SB2026041481
SB2026041482
and 8 more
#VU125093 - Improper input validation
CVE-2026-3902
CWE-20 Medium
No
No
- 07.04.2026 SB20260407104
SB20260407113
SB20260409114
and 11 more
#VU125094 - Improper Access Control
CVE-2026-4277
CWE-284 Low
No
No
- 07.04.2026 SB20260407104
SB20260407113
SB20260409114
and 12 more
#VU125095 - Improper Access Control
CVE-2026-4292
CWE-284 Low
No
No
- 07.04.2026 SB20260407104
SB20260407113
SB20260409114
and 12 more
#VU125096 - Resource exhaustion
CVE-2026-33033
CWE-400 Medium
No
No
- 07.04.2026 SB20260407104
SB20260407113
SB20260409114
and 12 more
#VU125097 - Improper input validation
CVE-2026-33034
CWE-20 Medium
No
No
- 07.04.2026 SB20260407104
SB20260407113
SB20260409114
and 11 more
#VU124482 - Improper Neutralization of CRLF Sequences ('CRLF Injection')
CVE-2026-28753
CWE-93 Medium
No
No
- 25.03.2026 SB2026032585
SB20260325200
SB2026041117
and 4 more
#VU124480 - Integer overflow
CVE-2026-27784
CWE-190 High
No
No
- 25.03.2026 SB2026032585
SB20260325200
SB2026040801
and 17 more
#VU124478 - Heap-based Buffer Overflow
CVE-2026-27654
CWE-122 Medium
Available
No
- 25.03.2026 SB2026032585
SB20260325200
SB2026033174
and 17 more
#VU123607 - Creation of Temporary File in Directory with Insecure Permissions
CVE-2025-71176
CWE-379 Low
No
No
- 06.03.2026 SB2026030623
SB2026030633
SB20260507304
and 2 more
#VU122335 - Acceptance of Extraneous Untrusted Data With Trusted Data
CVE-2026-1642
CWE-349 Medium
No
No
- 05.02.2026 SB2026020501
SB2026020505
SB2026020511
and 22 more


Showing elements 621 - 640 out of 12331