Known vulnerabilities in SUSE Package Hub 15 - page 71

Vendor: SUSE
Software CPE: cpe:2.3:o:suse:suse_package_hub_15:*:*:*:*:*:*:*:*
Total vulnerabilities: 1438
Public exploits: 50
Known exploited (KEV): 6
Highest CVSSv4 Score: 9.4

Breakdown by Severity Chart

Severity distribution of vulnerabilities affecting SUSE Package Hub 15 SUSE Package Hub 15 is affected by 1438 known vulnerabilities: 7 critical, 446 high, 615 medium, 370 low Critical High Medium Low

Vulnerabilities (1438)

Vulnerability CWE-ID CSH Severity Public Exploit KEV First fixed release Published Bulletins
#VU74153 - Improperly Controlled Modification of Object Prototype Attributes (\'Prototype Pollution\')
CVE-2023-28427
CWE-1321 Medium
No
No
- 29.03.2023 SB2023032905
SB2023032908
SB2023033002
and 15 more
#VU74061 - Improper input validation
CVE-2023-24607
CWE-20 Medium
No
No
- 27.03.2023 SB2023032752
SB2023032757
SB2023072656
and 13 more
#VU73675 - Memory corruption
CVE-2023-28176
CWE-119 High
No
No
- 14.03.2023 SB2023031479
SB2023031501
SB2023031502
and 37 more
#VU73674 - Exposure of sensitive information to an unauthorized actor
CVE-2023-28163
CWE-200 Low
No
No
- 14.03.2023 SB2023031479
SB2023031501
SB2023031502
and 11 more
#VU73672 - Type conversion
CVE-2023-28162
CWE-704 High
No
No
- 14.03.2023 SB2023031479
SB2023031501
SB2023031502
and 38 more
#VU73671 - User Interface (UI) Misrepresentation of Critical Information (Clickjacking, spoofing)
CVE-2023-28164
CWE-451 Medium
No
No
- 14.03.2023 SB2023031479
SB2023031501
SB2023031502
and 38 more
#VU73214 - Out-of-bounds write
CVE-2021-37501
CWE-787 Medium
No
No
- 09.03.2023 SB2023030944
SB2023030948
SB2023031657
and 6 more
#VU73107 - Improper Neutralization of CRLF Sequences in HTTP Headers ('HTTP Response Splitting')
CVE-2023-25690
CWE-113 Medium
Available
No
- 07.03.2023 SB2023030731
SB2023030862
SB2023030942
and 54 more
#VU73106 - Improper Neutralization of CRLF Sequences in HTTP Headers ('HTTP Response Splitting')
CVE-2023-27522
CWE-113 Medium
No
No
- 07.03.2023 SB2023030731
SB2023030862
SB2023030942
and 33 more
#VU72686 - Resource exhaustion
CVE-2022-41723
CWE-400 Medium
No
No
- 01.03.2023 SB2023030130
SB2023030131
SB2023030946
and 190 more
#VU72618 - Improper input validation
CVE-2023-24329
CWE-20 Medium
No
No
- 28.02.2023 SB2023022819
SB2023022822
SB2023030832
and 158 more
#VU72339 - Resource exhaustion
CVE-2023-25577
CWE-400 Medium
No
No
- 16.02.2023 SB2023021673
SB2023022875
SB2023031332
and 49 more
#VU72088 - Out-of-bounds read
CVE-2022-41862
CWE-125 Medium
No
No
- 09.02.2023 SB2023020953
SB2023021334
SB2023021335
and 47 more
#VU72073 - Exposure of sensitive information to an unauthorized actor
CVE-2023-25165
CWE-200 Medium
No
No
- 08.02.2023 SB2023020875
SB2023032437
SB2023040464
and 7 more
#VU71567 - Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')
CVE-2022-23552
CWE-79 Low
No
No
- 26.01.2023 SB2023012632
SB2023032032
SB2023032033
and 10 more
#VU71566 - User Interface (UI) Misrepresentation of Critical Information (Clickjacking, spoofing)
CVE-2022-39324
CWE-451 Low
No
No
- 26.01.2023 SB2023012631
SB2023032032
SB2023032033
and 12 more
#VU71287 - Improper input validation
CVE-2023-21835
CWE-20 Medium
No
No
- 17.01.2023 SB2023011784
SB2023011785
SB2023011882
and 67 more
#VU71289 - Improper input validation
CVE-2023-21843
CWE-20 Low
No
No
- 17.01.2023 SB2023011784
SB2023011785
SB2023011882
and 146 more
#VU69691 - Use of Password Hash Instead of Password for Authentication
CVE-2022-46146
CWE-836 Low
No
No
- 29.11.2022 SB2022112926
SB2022113012
SB2023022044
and 33 more
#VU69392 - Resource exhaustion
CVE-2022-45061
CWE-400 Medium
No
No
- 16.11.2022 SB2022111650
SB2022112824
SB2022112856
and 125 more


Showing elements 1401 - 1420 out of 1438