Known vulnerabilities in venv-salt-minion - page 2

Vendor: SUSE
Software CPE: cpe:2.3:o:suse:venv-salt-minion:*:*:*:*:*:suse_linux:*:*
Total vulnerabilities: 54
Public exploits: 4
Known exploited (KEV): 0
Highest CVSSv4 Score: 9.3

Breakdown by Severity Chart

Severity distribution of vulnerabilities affecting venv-salt-minion venv-salt-minion is affected by 54 known vulnerabilities: 5 high, 25 medium, 24 low Critical High Medium Low

Vulnerabilities (54)

Vulnerability CWE-ID CSH Severity Public Exploit KEV First fixed release Published Bulletins
#VU111859 - Improper input validation
CVE-2025-22242
CWE-20 Low
No
No
3006.0-3.6.2, 3006.0-3.6.3, 3006.0-3.8.4 23.06.2025 SB2025062336
SB2025062338
SB2025062340
and 8 more
#VU111858 - Permissions, Privileges, and Access Controls
CVE-2025-22241
CWE-264 Low
No
No
3006.0-3.6.2, 3006.0-3.6.3, 3006.0-3.8.4 23.06.2025 SB2025062336
SB2025062338
SB2025062340
and 8 more
#VU111857 - Permissions, Privileges, and Access Controls
CVE-2025-22240
CWE-264 Low
No
No
3006.0-3.6.2, 3006.0-3.6.3, 3006.0-3.8.4 23.06.2025 SB2025062336
SB2025062338
SB2025062340
and 8 more
#VU111856 - Insufficient Verification of Data Authenticity
CVE-2025-22239
CWE-345 Low
No
No
3006.0-3.6.2, 3006.0-3.6.3, 3006.0-3.8.4 23.06.2025 SB2025062336
SB2025062338
SB2025062340
and 8 more
#VU111855 - Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal')
CVE-2025-22238
CWE-22 Low
No
No
3006.0-3.6.2, 3006.0-3.6.3, 3006.0-3.8.4 23.06.2025 SB2025062336
SB2025062338
SB2025062343
and 8 more
#VU111854 - Improper Authorization
CVE-2025-22237
CWE-285 Low
No
No
3006.0-3.6.2, 3006.0-3.6.3, 3006.0-3.8.4 23.06.2025 SB2025062336
SB2025062338
SB2025062342
and 7 more
#VU111853 - Improper Authorization
CVE-2025-22236
CWE-285 Low
No
No
3006.0-3.6.2, 3006.0-3.6.3, 3006.0-3.8.4 23.06.2025 SB2025062336
SB2025062338
SB2025062340
and 8 more
#VU111851 - Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal')
CVE-2024-38824
CWE-22 Medium
No
No
3006.0-3.6.2, 3006.0-3.6.3, 3006.0-3.8.4 23.06.2025 SB2025062336
SB2025062338
SB2025062340
and 8 more
#VU111850 - Insufficient Verification of Data Authenticity
CVE-2024-38823
CWE-345 Low
No
No
3006.0-3.6.2, 3006.0-3.6.3, 3006.0-3.8.4 23.06.2025 SB2025062336
SB2025062338
SB2025062342
and 7 more
#VU111849 - Improper Authentication
CVE-2024-38822
CWE-287 Low
No
No
3006.0-3.6.2, 3006.0-3.6.3, 3006.0-3.8.4 23.06.2025 SB2025062336
SB2025062338
SB2025062342
and 7 more
#VU96945 - Resource exhaustion
CVE-2024-7592
CWE-400 Medium
No
No
3006.0-1.47.1, 3006.0-2.23.1, 3006.0-2.54.3, 3006.0-2.61.1, 3006.0-2.63.3, 3006.0-3.65.1, 3006.0-150000.3.67.1 09.09.2024 SB2024090916
SB2024090917
SB2024090918
and 72 more
#VU96596 - Loop with Unreachable Exit Condition ('Infinite Loop')
CVE-2024-8088
CWE-835 Medium
No
No
3006.0-1.47.1, 3006.0-2.23.1, 3006.0-2.54.3, 3006.0-2.61.1, 3006.0-2.63.3, 3006.0-3.65.1, 3006.0-150000.3.67.1 28.08.2024 SB2024082860
SB2024082861
SB2024082862
and 82 more
#VU95571 - Command injection
CVE-2024-6923
CWE-77 Medium
No
No
3006.0-1.47.1, 3006.0-2.23.1, 3006.0-2.54.3, 3006.0-2.61.1, 3006.0-2.63.3, 3006.0-3.65.1, 3006.0-150000.3.67.1 08.08.2024 SB2024080861
SB2024080862
SB2024080863
and 144 more
#VU95339 - Improper Control of Generation of Code ('Code Injection')
CVE-2024-6345
CWE-94 High
No
No
3006.0-1.47.1, 3006.0-2.23.1, 3006.0-2.54.3, 3006.0-2.61.1, 3006.0-2.63.3, 3006.0-3.65.1, 3006.0-150000.3.67.1 05.08.2024 SB2024080590
SB2024080593
SB2024080594
and 160 more
#VU95157 - Incorrect Provision of Specified Functionality
CVE-2024-4032
CWE-684 Medium
No
No
3006.0-1.47.1, 3006.0-2.23.1, 3006.0-2.54.3, 3006.0-2.61.1, 3006.0-2.63.3, 3006.0-3.65.1, 3006.0-150000.3.67.1 02.08.2024 SB2024080203
SB2024080207
SB2024080209
and 101 more
#VU94792 - Loop with Unreachable Exit Condition ('Infinite Loop')
CVE-2024-5569
CWE-835 Medium
No
No
3006.0-1.47.1, 3006.0-2.23.1, 3006.0-2.54.3, 3006.0-2.61.1, 3006.0-2.63.3, 3006.0-3.65.1, 3006.0-150000.3.67.1 26.07.2024 SB2024072688
SB2024072690
SB2024072692
and 59 more
#VU94533 - Improper input validation
CVE-2024-0397
CWE-20 Low
No
No
3006.0-1.47.1, 3006.0-2.23.1, 3006.0-2.54.3, 3006.0-2.61.1, 3006.0-2.63.3, 3006.0-3.65.1, 3006.0-150000.3.67.1 18.07.2024 SB2024071850
SB2024080209
SB2024080211
and 33 more
#VU92262 - Exposure of sensitive information to an unauthorized actor
CVE-2024-37891
CWE-200 Low
No
No
3006.0-1.47.1, 3006.0-2.23.1, 3006.0-2.54.3, 3006.0-2.61.1, 3006.0-2.63.3, 3006.0-3.65.1, 3006.0-150000.3.67.1 19.06.2024 SB2024061955
SB20240625146
SB2024062605
and 194 more
#VU88828 - Resource exhaustion
CVE-2024-3651
CWE-400 Medium
No
No
3006.0-1.47.1, 3006.0-2.23.1, 3006.0-2.54.3, 3006.0-2.61.1, 3006.0-2.63.3, 3006.0-3.65.1, 3006.0-150000.3.67.1 19.04.2024 SB2024041905
SB2024041906
SB2024041907
and 112 more
#VU86612 - Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal')
CVE-2024-22232
CWE-22 Medium
No
No
3006.0-1.36.3, 3006.0-2.12.3, 3006.0-2.43.3, 3006.0-2.50.4, 3006.0-2.52.3, 3006.0-3.52.3, 3006.0-150000.3.54.3 20.02.2024 SB2024022022
SB2024022023
SB2024022024
and 14 more


Showing elements 21 - 40 out of 54