OpenStack / Cinder
9 CVEs
| CVE ID | Description | Severity | CVSS | Published |
|---|---|---|---|---|
| CVE-2024-32498 | OpenStack: malicious qcow2/vmdk images | HIGH | 7.1 | Jul 5, 2024 |
| CVE-2022-47951 | openstack: Arbitrary file access through custom VMDK flat descriptor | HIGH | 7.7 | Jan 26, 2023 |
| CVE-2017-15139 | openstack-cinder: Data retained after deletion of a ScaleIO volume | HIGH | 7.5 | Aug 27, 2018 |
| CVE-2015-5162 | openstack-nova/glance/cinder: Malicious image may exhaust resources | HIGH | 7.5 | Oct 7, 2016 |
| CVE-2014-7231 | Trove: potential leak of passwords into log files | LOW | 2.1 | Oct 8, 2014 |
| CVE-2014-7230 | Trove: potential leak of passwords into log files | LOW | 2.1 | Oct 8, 2014 |
| CVE-2014-3641 | openstack-cinder: Cinder-volume host data leak to virtual machine instance | MEDIUM | 4.0 | Oct 8, 2014 |
| CVE-2013-4202 | OpenStack: Cinder Denial of Service using XML entities | MEDIUM | 4.3 | Sep 16, 2013 |
| CVE-2013-4183 | OpenStack: Cinder LVM volume driver does not support secure deletion | MEDIUM | 6.9 | Sep 16, 2013 |
Showing 1 to 9 of 9 CVEs