Known vulnerabilities in Basesystem Module

Vendor: SUSE
Software CPE: cpe:2.3:o:suse:basesystem_module:*:*:*:*:*:*:*:*
Total vulnerabilities: 8428
Public exploits: 130
Known exploited (KEV): 42
Highest CVSSv4 Score: 9.4

Breakdown by Severity Chart

Severity distribution of vulnerabilities affecting Basesystem Module Basesystem Module is affected by 8428 known vulnerabilities: 28 critical, 341 high, 1006 medium, 7052 low Critical High Medium Low

Vulnerabilities (8428)

Vulnerability CWE-ID CSH Severity Public Exploit KEV First fixed release Published Bulletins
#VU144731 - Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal')
CVE-2026-26032
CWE-22 Low
No
No
- 24.08.2026 SB20260824105
SB20260824106
SB20260824119
and 1 more
#VU142296 - Improper Link Resolution Before File Access ('Link Following')
CVE-2026-53783
CWE-59 Medium
No
No
- 13.08.2026 SB2026081362
SB2026081821
SB2026082074
and 2 more
#VU142295 - Improper Link Resolution Before File Access ('Link Following')
CVE-2026-53784
CWE-59 Low
No
No
- 13.08.2026 SB2026081362
SB2026081821
SB2026082074
and 2 more
#VU142294 - Improper Link Resolution Before File Access ('Link Following')
CVE-2026-53785
CWE-59 Low
No
No
- 13.08.2026 SB2026081362
SB2026081821
SB2026082074
and 2 more
#VU142293 - Improper Access Control
CVE-2026-53786
CWE-284 Medium
No
No
- 13.08.2026 SB2026081362
SB2026081821
SB2026082074
and 2 more
#VU142291 - Improper Neutralization of Special Elements in Output Used by a Downstream Component ('Injection')
CVE-2026-53788
CWE-74 Medium
No
No
- 13.08.2026 SB2026081362
SB2026081821
SB2026082074
and 2 more
#VU142290 - Improper input validation
CVE-2026-53789
CWE-20 Medium
No
No
- 13.08.2026 SB2026081362
SB2026081821
SB2026082074
and 2 more
#VU142289 - Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection')
CVE-2026-53790
CWE-78 High
No
No
- 13.08.2026 SB2026081362
SB2026081821
SB2026082074
and 2 more
#VU142288 - Authentication Bypass by Spoofing
CVE-2026-53791
CWE-290 High
No
No
- 13.08.2026 SB2026081362
SB2026081821
SB2026082074
and 2 more
#VU142287 - Improper Validation of Array Index
CVE-2026-53792
CWE-129 Medium
No
No
- 13.08.2026 SB2026081362
SB2026081821
SB2026082074
and 2 more
#VU142286 - Improper Link Resolution Before File Access ('Link Following')
CVE-2026-53793
CWE-59 Medium
No
No
- 13.08.2026 SB2026081362
SB2026081821
SB2026082074
and 2 more
#VU142285 - Improper input validation
CVE-2026-53794
CWE-20 Medium
No
No
- 13.08.2026 SB2026081362
SB2026081821
SB2026082074
and 2 more
#VU139392 - Improper Control of Generation of Code ('Code Injection')
CVE-2026-73076
CWE-94 High
No
No
- 27.07.2026 SB2026072714
SB2026082207
SB2026082208
and 1 more
#VU139391 - Heap-based Buffer Overflow
CVE-2026-73072
CWE-122 Medium
No
No
- 27.07.2026 SB2026072713
SB2026082207
SB2026082208
and 1 more
#VU139389 - Use After Free
CVE-2026-73071
CWE-416 Low
No
No
- 27.07.2026 SB2026072711
SB2026082207
SB2026082208
and 1 more
#VU139262 - Command injection
CVE-2026-73078
CWE-77 High
No
No
- 24.07.2026 SB2026072423
SB2026082207
SB2026082208
and 1 more
#VU139260 - Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection')
CVE-2026-73077
CWE-78 Medium
No
No
- 24.07.2026 SB2026072422
SB2026082207
SB2026082208
and 1 more
#VU139259 - Heap-based Buffer Overflow
CVE-2026-73074
CWE-122 Low
No
No
- 24.07.2026 SB2026072421
SB2026082207
SB2026082208
and 1 more
#VU139258 - Stack-based buffer overflow
CVE-2026-73070
CWE-121 Low
No
No
- 24.07.2026 SB2026072420
SB2026082207
SB2026082208
and 1 more
#VU139257 - Buffer Underwrite ('Buffer Underflow')
CVE-2026-73075
CWE-124 Low
No
No
- 24.07.2026 SB2026072419
SB2026082207
SB2026082208
and 1 more


Showing elements 1 - 20 out of 8428