Vulnerabilities > Linuxfoundation

DATE CVE VULNERABILITY TITLE RISK
2022-03-25 CVE-2022-24778 Incorrect Authorization vulnerability in multiple products
The imgcrypt library provides API exensions for containerd to support encrypted container images and implements the ctd-decoder command line tool for use by containerd to decrypt encrypted container images.
network
low complexity
linuxfoundation fedoraproject CWE-863
7.5
2022-03-25 CVE-2022-24777 Reachable Assertion vulnerability in Linuxfoundation Grpc Swift
grpc-swift is the Swift language implementation of gRPC, a remote procedure call (RPC) framework.
network
low complexity
linuxfoundation CWE-617
7.5
2022-03-24 CVE-2022-24769 Incorrect Permission Assignment for Critical Resource vulnerability in multiple products
Moby is an open-source project created by Docker to enable and accelerate software containerization.
5.9
2022-03-03 CVE-2022-23648 containerd is a container runtime available as a daemon for Linux and Windows.
network
low complexity
linuxfoundation debian fedoraproject
7.5
2022-01-05 CVE-2021-43816 Improper Preservation of Permissions vulnerability in multiple products
containerd is an open source container runtime.
network
low complexity
linuxfoundation fedoraproject CWE-281
critical
9.1
2022-01-04 CVE-2021-43832 Missing Authentication for Critical Function vulnerability in Linuxfoundation Spinnaker
Spinnaker is an open source, multi-cloud continuous delivery platform.
network
low complexity
linuxfoundation CWE-306
critical
9.8
2022-01-04 CVE-2021-39143 Path Traversal vulnerability in Linuxfoundation Spinnaker
Spinnaker is an open source, multi-cloud continuous delivery platform.
local
low complexity
linuxfoundation CWE-22
7.1
2021-12-27 CVE-2021-45701 Use After Free vulnerability in Linuxfoundation Tremor-Script
An issue was discovered in the tremor-script crate before 0.11.6 for Rust.
network
low complexity
linuxfoundation CWE-416
critical
9.8
2021-12-27 CVE-2021-45702 Use After Free vulnerability in Linuxfoundation Tremor-Script
An issue was discovered in the tremor-script crate before 0.11.6 for Rust.
network
low complexity
linuxfoundation CWE-416
7.5
2021-12-17 CVE-2021-23450 All versions of package dojo are vulnerable to Prototype Pollution via the setObject function.
network
low complexity
linuxfoundation oracle debian
critical
9.8