Known vulnerabilities in openSUSE Leap - page 70

Vendor: SUSE
Software: openSUSE Leap
Software CPE: cpe:2.3:o:suse:opensuse_leap:*:*:*:*:*:*:*:*
Total vulnerabilities: 12987
Public exploits: 262
Known exploited (KEV): 65
Highest CVSSv4 Score: 9.4

Breakdown by Severity Chart

Severity distribution of vulnerabilities affecting openSUSE Leap openSUSE Leap is affected by 12987 known vulnerabilities: 38 critical, 1147 high, 2543 medium, 9257 low Critical High Medium Low

Vulnerabilities (12987)

Vulnerability CWE-ID CSH Severity Public Exploit KEV First fixed release Published Bulletins
#VU131464 - Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection')
CVE-2026-6638
CWE-89 Low
No
No
- 14.05.2026 SB20260514106
SB20260514108
SB2026051852
and 12 more
#VU128479 - Allocation of Resources Without Limits or Throttling
CVE-2026-42561
CWE-770 Medium
No
No
- 30.04.2026 SB2026043006
SB2026051876
SB2026092416
#VU128460 - Authentication Bypass by Primary Weakness
CVE-2026-5545
CWE-305 Medium
No
No
- 29.04.2026 SB2026042955
SB2026050481
SB2026050706
and 11 more
#VU128456 - Exposure of sensitive information to an unauthorized actor
CVE-2026-6429
CWE-200 Medium
No
No
- 29.04.2026 SB2026042955
SB2026050481
SB2026050706
and 10 more
#VU128455 - Origin Validation Error
CVE-2026-6276
CWE-346 Medium
No
No
- 29.04.2026 SB2026042955
SB2026050481
SB2026050706
and 10 more
#VU128454 - Insufficiently Protected Credentials
CVE-2026-6253
CWE-522 Medium
No
No
- 29.04.2026 SB2026042955
SB2026050481
SB2026050706
and 10 more
#VU128445 - Cleartext Transmission of Sensitive Information
CVE-2026-4873
CWE-319 Medium
No
No
- 29.04.2026 SB2026042955
SB2026050481
SB2026050706
and 10 more
#VU128414 - Allocation of Resources Without Limits or Throttling
CVE-2026-42198
CWE-770 Medium
No
No
- 28.04.2026 SB20260428236
SB2026052067
SB2026052092
and 25 more
#VU125777 - Incorrect Authorization
CVE-2026-28808
CWE-863 High
No
No
- 10.04.2026 SB2026041031
SB2026041046
SB2026041047
and 6 more
#VU125775 - Inconsistent Interpretation of HTTP Requests ('HTTP Request Smuggling')
CVE-2026-23941
CWE-444 High
No
No
- 10.04.2026 SB2026041022
SB2026041027
SB2026041028
and 7 more
#VU125774 - Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal')
CVE-2026-23942
CWE-22 Low
No
No
- 10.04.2026 SB2026041022
SB2026041027
SB2026041028
and 6 more
#VU125773 - Improper Handling of Highly Compressed Data (Data Amplification)
CVE-2026-23943
CWE-409 Medium
No
No
- 10.04.2026 SB2026041022
SB2026041027
SB2026041028
and 5 more
#VU125772 - Relative Path Traversal
CVE-2026-21620
CWE-23 Low
No
No
- 10.04.2026 SB2026041021
SB2026041023
SB2026041024
and 6 more
#VU125101 - Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection')
CVE-2026-39881
CWE-78 Medium
No
No
- 08.04.2026 SB2026040828
SB2026041567
SB2026042494
and 9 more
#VU124277 - Loop with Unreachable Exit Condition ('Infinite Loop')
CVE-2026-32777
CWE-835 Medium
No
No
- 24.03.2026 SB2026032435
SB2026032436
SB2026032437
and 26 more
#VU124274 - NULL Pointer Dereference
CVE-2026-32776
CWE-476 Medium
No
No
- 24.03.2026 SB2026032435
SB2026032765
SB2026033028
and 23 more
#VU123890 - Heap-based Buffer Overflow
CVE-2026-31853
CWE-122 Medium
No
No
- 11.03.2026 SB2026031159
SB20260415161
SB20260415162
and 11 more
#VU123888 - Authentication Bypass by Primary Weakness
CVE-2026-1965
CWE-305 Medium
No
No
- 11.03.2026 SB2026031143
SB2026031238
SB2026031262
and 15 more
#VU112884 - Insufficient Verification of Data Authenticity
CVE-2024-6174
CWE-345 High
No
No
- 14.07.2025 SB2025071434
SB2025071437
SB2025071438
and 18 more
#VU112883 - Incorrect Default Permissions
CVE-2024-11584
CWE-276 Low
No
No
- 14.07.2025 SB2025071434
SB2025071437
SB2025071438
and 10 more


Showing elements 1381 - 1400 out of 12987