Vulnerabilities > Linuxfoundation

DATE CVE VULNERABILITY TITLE RISK
2024-01-31 CVE-2024-21626 Exposure of Resource to Wrong Sphere vulnerability in multiple products
runc is a CLI tool for spawning and running containers on Linux according to the OCI specification.
local
low complexity
linuxfoundation fedoraproject CWE-668
8.6
2024-01-25 CVE-2024-23656 Inadequate Encryption Strength vulnerability in Linuxfoundation DEX 2.37.0
Dex is an identity service that uses OpenID Connect to drive authentication for other apps.
network
low complexity
linuxfoundation CWE-326
7.5
2024-01-19 CVE-2024-22424 Cross-Site Request Forgery (CSRF) vulnerability in Linuxfoundation Argo-Cd
Argo CD is a declarative, GitOps continuous delivery tool for Kubernetes.
network
high complexity
linuxfoundation CWE-352
8.3
2024-01-04 CVE-2023-6944 Information Exposure Through an Error Message vulnerability in multiple products
A flaw was found in the Red Hat Developer Hub (RHDH).
network
low complexity
redhat linuxfoundation CWE-209
5.7
2024-01-03 CVE-2023-46739 Information Exposure Through Discrepancy vulnerability in Linuxfoundation Cubefs
CubeFS is an open-source cloud-native file storage system.
network
high complexity
linuxfoundation CWE-203
5.9
2024-01-03 CVE-2023-46740 Use of Insufficiently Random Values vulnerability in Linuxfoundation Cubefs
CubeFS is an open-source cloud-native file storage system.
network
low complexity
linuxfoundation CWE-330
critical
9.8
2024-01-03 CVE-2023-46741 Unspecified vulnerability in Linuxfoundation Cubefs
CubeFS is an open-source cloud-native file storage system.
network
low complexity
linuxfoundation
critical
9.8
2024-01-03 CVE-2023-46742 Information Exposure Through Log Files vulnerability in Linuxfoundation Cubefs
CubeFS is an open-source cloud-native file storage system.
network
low complexity
linuxfoundation CWE-532
6.5
2024-01-03 CVE-2023-46738 Allocation of Resources Without Limits or Throttling vulnerability in Linuxfoundation Cubefs
CubeFS is an open-source cloud-native file storage system.
network
low complexity
linuxfoundation CWE-770
6.5
2023-12-04 CVE-2023-32855 Missing Authorization vulnerability in multiple products
In aee, there is a possible escalation of privilege due to a missing permission check.
6.7