Vulnerabilidades en suse

228 resultados
Análisis Vexday

A SUSE apresenta footprint mínimo na base Vexday com apenas 1 CVE registrado, sem incidentes de exploração ativa (KEV) ou vulnerabilidades críticas documentadas. O risco atual é baixo, sem novos registros nos últimos 90 dias, embora a fraqueza CWE-61 (improper link resolution) mereça atenção em futuros desenvolvimentos.

CVE-2026-44942MEDIUMlibzypp .repo files can have an optional path which can lead to path traversal attacksEPSS 0.4%CVE-2026-59679CRITICALfs_read_glyphs() heap OOB read/write via encoding array index mismatch in libXfont2EPSS 0.4%CVE-2020-8023HIGHLocal privilege escalation from ldap to root when using OPENLDAP_CONFIG_BACKEND=ldap in openldap2EPSS 0.4%CVE-2022-43754LOWSUMA/UYUNI reflected cross site scripting in /rhn/audit/scap/Search.doEPSS 0.4%CVE-2020-8028CRITICALsalt-api is accessible to every user on SUSE Manager ServerEPSS 0.4%CVE-2018-19638LOWUser can overwrite arbitrary log files in support tarEPSS 0.4%CVE-2026-44949HIGHUnauthenticated namespace creation and RBAC injection via rancher-webhook FleetWorkspace mutating webhookEPSS 0.4%CVE-2026-41050CRITICALHelm impersonation bypass of `RESTClientGetter` retains `cluster-admin` during template renderingEPSS 0.4%CVE-2022-21951MEDIUMRancher: Weave CNI password is not set if RKE template is used with CNI value overriddenEPSS 0.4%CVE-2026-44947MEDIUMStale PSA ClusterRoleBinding Persists After RoleTemplate Downgrade in RancherEPSS 0.4%CVE-2026-44946CRITICALSAML Authentication Replay in RancherEPSS 0.4%CVE-2019-18897HIGHLocal privilege escalation from user salt to rootEPSS 0.4%CVE-2019-18901MEDIUMmysql-systemd-helper allows setting 640 permissions of arbitrary filesEPSS 0.4%CVE-2021-25314HIGHhawk: Insecure file permissionsEPSS 0.4%CVE-2024-22032HIGHRancher's RKE1 Encryption Config kept in plain-text within cluster AppliedSpecEPSS 0.4%CVE-2026-44945CRITICALCross-Cluster Impersonation Confused-Deputy Privilege EscalationEPSS 0.4%CVE-2018-17957LOWyast2-rmt leaks database passwords in process listEPSS 0.4%CVE-2026-25705HIGHRancher Extensions have arbitrary file access via path traversalEPSS 0.4%CVE-2025-66001HIGHNeuVector OpenID Connect is vulnerable to man-in-the-middle (MITM)EPSS 0.4%CVE-2019-3693HIGHLocal privilege escalation from user wwwrun to root in the packaging of mailmanEPSS 0.4%