Vulnerabilities > Linuxfoundation > High

DATE CVE VULNERABILITY TITLE RISK
2022-01-04 CVE-2021-39143 Path Traversal vulnerability in Linuxfoundation Spinnaker
Spinnaker is an open source, multi-cloud continuous delivery platform.
local
low complexity
linuxfoundation CWE-22
7.1
2021-12-27 CVE-2021-45702 Use After Free vulnerability in Linuxfoundation Tremor-Script
An issue was discovered in the tremor-script crate before 0.11.6 for Rust.
network
low complexity
linuxfoundation CWE-416
7.5
2021-12-17 CVE-2021-36780 Unspecified vulnerability in Linuxfoundation Longhorn
A Missing Authentication for Critical Function vulnerability in longhorn of SUSE Longhorn allows attackers to connect to a longhorn-engine replica instance granting it the ability to read and write data to and from a replica that they should not have access to.
low complexity
linuxfoundation
8.1
2021-11-29 CVE-2021-43783 Path Traversal vulnerability in Linuxfoundation Backstage
@backstage/plugin-scaffolder-backend is the backend for the default Backstage software templates.
network
low complexity
linuxfoundation CWE-22
8.5
2021-11-18 CVE-2021-43667 NULL Pointer Dereference vulnerability in Linuxfoundation Fabric 1.4.0/2.0.0/2.1.0
A vulnerability has been detected in HyperLedger Fabric v1.4.0, v2.0.0, v2.1.0.
network
low complexity
linuxfoundation CWE-476
7.5
2021-11-18 CVE-2021-43669 HTTP Request Smuggling vulnerability in Linuxfoundation Fabric
A vulnerability has been detected in HyperLedger Fabric v1.4.0, v2.0.0, v2.0.1, v2.3.0.
network
low complexity
linuxfoundation CWE-444
7.5
2021-10-19 CVE-2021-41131 Unspecified vulnerability in Linuxfoundation the Update Framework
python-tuf is a Python reference implementation of The Update Framework (TUF).
network
high complexity
linuxfoundation
8.7
2021-10-04 CVE-2021-41103 containerd is an open source container runtime with an emphasis on simplicity, robustness and portability.
local
low complexity
linuxfoundation fedoraproject debian
7.8
2021-07-09 CVE-2021-36153 Unspecified vulnerability in Linuxfoundation Grpc Swift 1.1.0/1.1.1
Mismanaged state in GRPCWebToHTTP2ServerCodec.swift in gRPC Swift 1.1.0 and 1.1.1 allows remote attackers to deny service by sending malformed requests.
network
low complexity
linuxfoundation
7.5
2021-07-09 CVE-2021-36154 Uncontrolled Recursion vulnerability in Linuxfoundation Grpc Swift 1.0.0/1.1.0/1.1.1
HTTP2ToRawGRPCServerCodec in gRPC Swift 1.1.1 and earlier allows remote attackers to deny service via the delivery of many small messages within a single HTTP/2 frame, leading to Uncontrolled Recursion and stack consumption.
network
low complexity
linuxfoundation CWE-674
7.5