Vulnerabilidades em suse

228 resultados
Análise Vexday

A SUSE apresenta footprint mínimo na base Vexday com apenas 1 CVE registrado, sem incidentes de exploração ativa (KEV) ou vulnerabilidades críticas documentadas. O risco atual é baixo, sem novos registros nos últimos 90 dias, embora a fraqueza CWE-61 (improper link resolution) mereça atenção em futuros desenvolvimentos.

CVE-2025-54467MEDIUMNeuVector process with sensitive arguments lead to leakageEPSS 0.2%CVE-2025-54471MEDIUMNeuVector is shipping cryptographic material into its binaryEPSS 0.2%CVE-2021-46705MEDIUMgrub2-once uses fixed file name in /var/tmpEPSS 0.2%CVE-2025-46809MEDIUMMulti Linux Manager epxoses the plain text HTTP Proxy user:password in logsEPSS 0.2%CVE-2022-31256HIGHsendmail: mail to root privilege escalation via sm-client.pre scriptEPSS 0.2%CVE-2024-58267HIGHRancher CLI SAML authentication is vulnerable to phishing attacksEPSS 0.2%CVE-2025-46802MEDIUMTemporary chown() of users' TTY to mode 0666 allows PTY hijacking in screenEPSS 0.2%CVE-2024-52284HIGHRancher Fleet Helm Values are stored inside BundleDeployment in plain textEPSS 0.2%CVE-2026-25703HIGHPotential information leakage from manager /network/graph API in NeuVectorEPSS 0.2%CVE-2022-45153HIGHsaphanabootstrap-formula: Escalation to root for arbitrary users in hana/ha_cluster.slsEPSS 0.2%CVE-2026-44933HIGHPath Traversal in Plugin Loading in libzyppEPSS 0.2%CVE-2026-75036MEDIUMFleet: DNS exfiltration via Sprig getHostByName in fleet.yaml Helm template preprocessingEPSS 0.2%CVE-2022-31251MEDIUMslurm: %post for slurm-testsuite operates as root in user owned directoryEPSS 0.2%CVE-2024-22038MEDIUMDoS attacks, information leaks etc. with crafted Git repositories in obs-scm-bridgeEPSS 0.2%CVE-2024-22034MEDIUMCrafted projects can overwrite special files in the .osc config directoryEPSS 0.2%CVE-2025-71261HIGHHarvester's SUSE Virtualization Registration Client Vulnerable to MITM and DOSEPSS 0.2%CVE-2022-45155MEDIUMobs-service-go_modules: arbitrary directory deleteEPSS 0.2%CVE-2023-32199MEDIUMRancher user retains access to clusters despite Global Role removalEPSS 0.2%CVE-2026-55998MEDIUMCluster Existence Oracle via Unauthenticated Import EndpointEPSS 0.2%CVE-2026-75033HIGHRancher: Cross-Cluster Secret Leakage via Namespace projectId Annotation SpoofingEPSS 0.2%