Vulnerabilities > Linuxfoundation > High

DATE CVE VULNERABILITY TITLE RISK
2022-03-03 CVE-2022-23648 containerd is a container runtime available as a daemon for Linux and Windows.
network
low complexity
linuxfoundation debian fedoraproject
7.5
2022-01-04 CVE-2021-43832 Missing Authentication for Critical Function vulnerability in Linuxfoundation Spinnaker
Spinnaker is an open source, multi-cloud continuous delivery platform.
network
low complexity
linuxfoundation CWE-306
7.5
2021-12-27 CVE-2021-45701 Use After Free vulnerability in Linuxfoundation Tremor-Script
An issue was discovered in the tremor-script crate before 0.11.6 for Rust.
network
low complexity
linuxfoundation CWE-416
7.5
2021-12-17 CVE-2021-36780 Missing Authentication for Critical Function vulnerability in Linuxfoundation Longhorn
A Missing Authentication for Critical Function vulnerability in longhorn of SUSE Longhorn allows attackers to connect to a longhorn-engine replica instance granting it the ability to read and write data to and from a replica that they should not have access to.
low complexity
linuxfoundation CWE-306
8.1
2021-10-19 CVE-2021-41131 Path Traversal vulnerability in Linuxfoundation the Update Framework
python-tuf is a Python reference implementation of The Update Framework (TUF).
8.8
2021-10-04 CVE-2021-41103 Path Traversal vulnerability in multiple products
containerd is an open source container runtime with an emphasis on simplicity, robustness and portability.
7.8
2021-09-17 CVE-2021-39228 Use After Free vulnerability in Linuxfoundation Tremor
Tremor is an event processing system for unstructured data.
network
low complexity
linuxfoundation CWE-416
7.5
2021-05-27 CVE-2021-30465 Race Condition vulnerability in multiple products
runc before 1.0.0-rc95 allows a Container Filesystem Breakout via Directory Traversal.
network
high complexity
linuxfoundation fedoraproject CWE-362
8.5
2021-04-15 CVE-2021-20288 Improper Authentication vulnerability in multiple products
An authentication flaw was found in ceph in versions before 14.2.20.
7.2
2021-03-26 CVE-2021-20206 Path Traversal vulnerability in Linuxfoundation Container Network Interface
An improper limitation of path name flaw was found in containernetworking/cni in versions before 0.8.1.
network
low complexity
linuxfoundation CWE-22
7.2