Vulnerabilities > Linuxfoundation > Low

DATE CVE VULNERABILITY TITLE RISK
2023-05-30 CVE-2023-32684 Files or Directories Accessible to External Parties vulnerability in Linuxfoundation Lima
Lima launches Linux virtual machines, typically on macOS, for running containerd.
local
high complexity
linuxfoundation CWE-552
2.5
2023-05-15 CVE-2023-20726 Missing Authorization vulnerability in multiple products
In mnld, there is a possible leak of GPS location due to a missing permission check.
3.3
2023-04-14 CVE-2023-29194 Unspecified vulnerability in Linuxfoundation Vitess
Vitess is a database clustering system for horizontal scaling of MySQL.
network
low complexity
linuxfoundation
2.7
2022-06-27 CVE-2022-31077 NULL Pointer Dereference vulnerability in Linuxfoundation Kubeedge
KubeEdge is built upon Kubernetes and extends native containerized application orchestration and device management to hosts at the Edge.
3.5
2022-06-27 CVE-2022-31076 NULL Pointer Dereference vulnerability in Linuxfoundation Kubeedge
KubeEdge is built upon Kubernetes and extends native containerized application orchestration and device management to hosts at the Edge.
low complexity
linuxfoundation CWE-476
2.7
2022-01-04 CVE-2021-39143 Path Traversal vulnerability in Linuxfoundation Spinnaker
Spinnaker is an open source, multi-cloud continuous delivery platform.
local
low complexity
linuxfoundation CWE-22
3.6
2021-06-03 CVE-2021-32662 Path Traversal vulnerability in Linuxfoundation Backstage
Backstage is an open platform for building developer portals, and techdocs-common contains common functionalities for Backstage's TechDocs.
3.5
2021-04-06 CVE-2021-29136 Improper Input Validation vulnerability in multiple products
Open Container Initiative umoci before 0.4.7 allows attackers to overwrite arbitrary host paths via a crafted image that causes symlink traversal when "umoci unpack" or "umoci raw unpack" is used.
local
low complexity
linuxfoundation sylabs CWE-20
2.1
2020-12-16 CVE-2020-26273 Command Injection vulnerability in Linuxfoundation Osquery
osquery is a SQL powered operating system instrumentation, monitoring, and analytics framework.
local
low complexity
linuxfoundation CWE-77
3.6
2020-10-16 CVE-2020-15157 Insufficiently Protected Credentials vulnerability in multiple products
In containerd (an industry-standard container runtime) before version 1.2.14 there is a credential leaking vulnerability.
network
high complexity
linuxfoundation canonical debian CWE-522
2.6