Vulnerabilities > Apache > Cloudstack > 4.9.2.0

DATE CVE VULNERABILITY TITLE RISK
2022-03-15 CVE-2022-26779 Use of Cryptographically Weak Pseudo-Random Number Generator (PRNG) vulnerability in Apache Cloudstack
Apache CloudStack prior to 4.16.1.0 used insecure random number generation for project invitation tokens.
network
high complexity
apache CWE-338
4.6
2020-05-14 CVE-2019-17562 Improper Input Validation vulnerability in Apache Cloudstack
A buffer overflow vulnerability has been found in the baremetal component of Apache CloudStack.
network
low complexity
apache CWE-20
7.5