VUMETRIC
CYBER PORTAL
Dashboard
Security News
Latest Vulnerabilities
Browse Vulnerabilities
by Vendors
by Products
by Categories
Weekly Reports
Vulnerabilities
>
Linuxfoundation
> Critical
Exclude new CVEs:
DATE
CVE
VULNERABILITY TITLE
RISK
2022-09-24
CVE-2022-36025
Incorrect Conversion between Numeric Types vulnerability in Linuxfoundation Besu
Besu is a Java-based Ethereum client.
network
low complexity
linuxfoundation
CWE-681
critical
9.1
9.1
2022-08-12
CVE-2022-35942
Unspecified vulnerability in Linuxfoundation Loopback-Connector-Postgresql
Improper input validation on the `contains` LoopBack filter may allow for arbitrary SQL injection.
network
low complexity
linuxfoundation
critical
10.0
10
2022-07-25
CVE-2022-0670
A flaw was found in Openstack manilla owning a Ceph File system "share", which enables the owner to read/write any manilla share or entire file system.
network
low complexity
linuxfoundation
redhat
fedoraproject
critical
9.1
9.1
2022-07-18
CVE-2022-34632
Use of a Broken or Risky Cryptographic Algorithm vulnerability in Linuxfoundation Rocket Chip Generator
Rocket-Chip commit 4f8114374d8824dfdec03f576a8cd68bebce4e56 was discovered to contain insufficient cryptography via the component /rocket/RocketCore.scala.
network
low complexity
linuxfoundation
CWE-327
critical
9.1
9.1
2022-07-12
CVE-2022-31105
Improper Certificate Validation vulnerability in multiple products
Argo CD is a declarative, GitOps continuous delivery tool for Kubernetes.
network
low complexity
linuxfoundation
argoproj
CWE-295
critical
9.6
9.6
2022-01-05
CVE-2021-43816
containerd is an open source container runtime.
network
low complexity
linuxfoundation
fedoraproject
critical
9.1
9.1
2022-01-04
CVE-2021-43832
Missing Authentication for Critical Function vulnerability in Linuxfoundation Spinnaker
Spinnaker is an open source, multi-cloud continuous delivery platform.
network
low complexity
linuxfoundation
CWE-306
critical
9.8
9.8
2021-12-27
CVE-2021-45701
Use After Free vulnerability in Linuxfoundation Tremor-Script
An issue was discovered in the tremor-script crate before 0.11.6 for Rust.
network
low complexity
linuxfoundation
CWE-416
critical
9.8
9.8
2021-12-17
CVE-2021-23450
All versions of package dojo are vulnerable to Prototype Pollution via the setObject function.
network
low complexity
linuxfoundation
oracle
debian
critical
9.8
9.8
2021-12-17
CVE-2021-36779
Unspecified vulnerability in Linuxfoundation Longhorn
A Missing Authentication for Critical Function vulnerability in SUSE Longhorn allows any workload in the cluster to execute any binary present in the image on the host without authentication.
low complexity
linuxfoundation
critical
9.6
9.6
«
Previous
1
2
(current)
3
»
Next