Vulnerabilities > Linuxfoundation > Critical

DATE CVE VULNERABILITY TITLE RISK
2022-07-25 CVE-2022-0670 A flaw was found in Openstack manilla owning a Ceph File system "share", which enables the owner to read/write any manilla share or entire file system.
network
low complexity
linuxfoundation redhat fedoraproject
critical
9.1
2022-07-18 CVE-2022-34632 Use of a Broken or Risky Cryptographic Algorithm vulnerability in Linuxfoundation Rocket Chip Generator
Rocket-Chip commit 4f8114374d8824dfdec03f576a8cd68bebce4e56 was discovered to contain insufficient cryptography via the component /rocket/RocketCore.scala.
network
low complexity
linuxfoundation CWE-327
critical
9.1
2022-07-12 CVE-2022-31105 Improper Certificate Validation vulnerability in multiple products
Argo CD is a declarative, GitOps continuous delivery tool for Kubernetes.
network
low complexity
linuxfoundation argoproj CWE-295
critical
9.6
2022-01-05 CVE-2021-43816 containerd is an open source container runtime.
network
low complexity
linuxfoundation fedoraproject
critical
9.1
2022-01-04 CVE-2021-43832 Missing Authentication for Critical Function vulnerability in Linuxfoundation Spinnaker
Spinnaker is an open source, multi-cloud continuous delivery platform.
network
low complexity
linuxfoundation CWE-306
critical
9.8
2021-12-27 CVE-2021-45701 Use After Free vulnerability in Linuxfoundation Tremor-Script
An issue was discovered in the tremor-script crate before 0.11.6 for Rust.
network
low complexity
linuxfoundation CWE-416
critical
9.8
2021-12-17 CVE-2021-23450 All versions of package dojo are vulnerable to Prototype Pollution via the setObject function.
network
low complexity
linuxfoundation oracle debian
critical
9.8
2021-12-17 CVE-2021-36779 Unspecified vulnerability in Linuxfoundation Longhorn
A Missing Authentication for Critical Function vulnerability in SUSE Longhorn allows any workload in the cluster to execute any binary present in the image on the host without authentication.
low complexity
linuxfoundation
critical
9.6
2021-09-17 CVE-2021-39228 Use After Free vulnerability in Linuxfoundation Tremor
Tremor is an event processing system for unstructured data.
network
low complexity
linuxfoundation CWE-416
critical
9.8
2021-05-28 CVE-2020-27847 Unspecified vulnerability in Linuxfoundation DEX
A vulnerability exists in the SAML connector of the github.com/dexidp/dex library used to process SAML Signature Validation.
network
low complexity
linuxfoundation
critical
9.8