Known vulnerabilities in SUSE Package Hub 15 - page 8
Vendor:
SUSE
Software:
SUSE Package Hub 15
Software CPE:
cpe:2.3:o:suse:suse_package_hub_15:*:*:*:*:*:*:*:*
Website:
https://www.suse.com/
Total vulnerabilities:
1438
Public exploits:
50
Known exploited (KEV):
6
Highest CVSSv4 Score:
9.4
Breakdown by Severity Chart
Vulnerabilities (1438)
| Vulnerability | CWE-ID | CSH Severity | Public Exploit | KEV | First fixed release | Published | Bulletins |
|---|---|---|---|---|---|---|---|
| #VU131848 - Improper Privilege Management CVE-2026-8970 |
CWE-269 | Medium | - | 19.05.2026 | - | ||
| #VU131849 - Memory corruption CVE-2026-8974 |
CWE-119 | High | - | 19.05.2026 | - | ||
| #VU131836 - Memory corruption CVE-2026-8975 |
CWE-119 | High | - | 19.05.2026 | - | ||
| #VU130909 - Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') CVE-2026-6735 |
CWE-79 | Medium | - | 10.05.2026 | - | ||
| #VU130913 - Use After Free CVE-2026-6722 |
CWE-416 | Medium | - | 10.05.2026 | - | ||
| #VU129540 - Out-of-bounds read CVE-2026-34059 |
CWE-125 | Medium | - | 04.05.2026 | - | ||
| #VU129541 - Out-of-bounds read CVE-2026-34032 |
CWE-125 | Medium | - | 04.05.2026 | - | ||
| #VU129542 - Out-of-bounds read CVE-2026-33857 |
CWE-125 | Medium | - | 04.05.2026 | - | ||
| #VU129543 - Improper Neutralization of CRLF Sequences in HTTP Headers ('HTTP Response Splitting') CVE-2026-33523 |
CWE-113 | Medium | - | 04.05.2026 | - | ||
| #VU129544 - NULL Pointer Dereference CVE-2026-33007 |
CWE-476 | Medium | - | 04.05.2026 | - | ||
| #VU129545 - Information Exposure Through Timing Discrepancy CVE-2026-33006 |
CWE-208 | High | - | 04.05.2026 | - | ||
| #VU129546 - NULL Pointer Dereference CVE-2026-29169 |
CWE-476 | Medium | - | 04.05.2026 | - | ||
| #VU129547 - Allocation of Resources Without Limits or Throttling CVE-2026-29168 |
CWE-770 | Medium | - | 04.05.2026 | - | ||
| #VU129548 - Heap-based Buffer Overflow CVE-2026-28780 |
CWE-122 | High | - | 04.05.2026 | - | ||
| #VU129549 - Improper Access Control CVE-2026-24072 |
CWE-284 | Low | - | 04.05.2026 | - | ||
| #VU129550 - Double Free CVE-2026-23918 |
CWE-415 | High | - | 04.05.2026 | - | ||
| #VU128730 - Improper Authorization CVE-2026-33186 |
CWE-285 | High | - | 01.05.2026 | - | ||
| #VU128368 - Uncontrolled Memory Allocation CVE-2026-42154 |
CWE-789 | Medium | - | 28.04.2026 | - | ||
| #VU128367 - Exposure of sensitive information to an unauthorized actor CVE-2026-42151 |
CWE-200 | Medium | - | 28.04.2026 | - | ||
| #VU125920 - Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') CVE-2026-40179 |
CWE-79 | Low | - | 14.04.2026 | - |
Showing elements 141 - 160 out of 1438