Vulnerabilities > Linuxfoundation

DATE CVE VULNERABILITY TITLE RISK
2020-03-13 CVE-2020-1887 Improper Certificate Validation vulnerability in Linuxfoundation Osquery
Incorrect validation of the TLS SNI hostname in osquery versions after 2.9.0 and before 4.2.0 could allow an attacker to MITM osquery traffic in the absence of a configured root chain of trust.
5.8
2020-03-10 CVE-2020-5259 Injection vulnerability in Linuxfoundation Dojox
In affected versions of dojox (NPM package), the jqMix method is vulnerable to Prototype Pollution.
network
low complexity
linuxfoundation CWE-74
5.0
2020-03-10 CVE-2020-5258 Code Injection vulnerability in multiple products
In affected versions of dojo (NPM package), the deepCopy method is vulnerable to Prototype Pollution.
network
high complexity
linuxfoundation debian oracle CWE-94
7.7
2020-02-20 CVE-2019-16302 Improper Handling of Exceptional Conditions vulnerability in Linuxfoundation Open Network Operating System 1.14.0
An issue was discovered in Open Network Operating System (ONOS) 1.14.
network
low complexity
linuxfoundation CWE-755
5.0
2020-02-20 CVE-2019-16301 Improper Handling of Exceptional Conditions vulnerability in Linuxfoundation Open Network Operating System 1.14.0
An issue was discovered in Open Network Operating System (ONOS) 1.14.
network
low complexity
linuxfoundation CWE-755
5.0
2020-02-20 CVE-2019-16300 Improper Handling of Exceptional Conditions vulnerability in Linuxfoundation Open Network Operating System 1.14.0
An issue was discovered in Open Network Operating System (ONOS) 1.14.
network
low complexity
linuxfoundation CWE-755
5.0
2020-02-20 CVE-2019-16299 Improper Handling of Exceptional Conditions vulnerability in Linuxfoundation Open Network Operating System 1.14.0
An issue was discovered in Open Network Operating System (ONOS) 1.14.
network
low complexity
linuxfoundation CWE-755
5.0
2020-02-20 CVE-2019-16298 Improper Handling of Exceptional Conditions vulnerability in Linuxfoundation Open Network Operating System 1.14.0
An issue was discovered in Open Network Operating System (ONOS) 1.14.
network
low complexity
linuxfoundation CWE-755
5.0
2020-02-20 CVE-2019-16297 Improper Handling of Exceptional Conditions vulnerability in Linuxfoundation Open Network Operating System 1.14.0
An issue was discovered in Open Network Operating System (ONOS) 1.14.
network
low complexity
linuxfoundation CWE-755
5.0
2020-02-13 CVE-2019-10785 Cross-site Scripting vulnerability in multiple products
dojox is vulnerable to Cross-site Scripting in all versions before version 1.16.1, 1.15.2, 1.14.5, 1.13.6, 1.12.7 and 1.11.9.
network
low complexity
linuxfoundation debian CWE-79
6.1