Red Hat / Openshift Serverless
9 CVEs
| CVE ID | Description | Severity | CVSS | Published |
|---|---|---|---|---|
| CVE-2025-8556 | Github.com/cloudflare/circl: circl-fourq: missing and wrong validation can lead to incorrect results | LOW | 3.7 | Aug 6, 2025 |
| CVE-2024-11831 | Npm-serialize-javascript: cross-site scripting (xss) in serialize-javascript | MEDIUM | 5.4 | Feb 10, 2025 |
| CVE-2024-12401 | Cert-manager: potential dos when parsing specially crafted pem inputs | MEDIUM | 4.4 | Dec 12, 2024 |
| CVE-2024-9355 | Golang-fips: golang fips zeroed buffer | HIGH | 7.6 | Oct 1, 2024 |
| CVE-2024-3653 | Undertow: learningpushhandler can lead to remote memory dos attacks | MEDIUM | 6.3 | Jul 8, 2024 |
| CVE-2024-3727 | Containers/image: digest type does not guarantee valid type | HIGH | 8.3 | May 9, 2024 |
| CVE-2023-5675 | Quarkus: authorization flaw in quarkus resteasy reactive and classic when "quarkus.security.jaxrs.deny-unannotated-endpoints" or "quarkus.security.jaxrs.defaul… | MEDIUM | 6.9 | Apr 25, 2024 |
| CVE-2024-1394 | Golang-fips/openssl: memory leaks in code encrypting and decrypting rsa payloads | HIGH | 7.5 | Mar 21, 2024 |
| CVE-2023-48795 | ssh: Prefix truncation attack on Binary Packet Protocol (BPP) | MEDIUM | 5.9 | Dec 18, 2023 |
| CVE-2023-44487 KEV | HTTP/2: Multiple HTTP/2 enabled web servers are vulnerable to a DDoS attack (Rapid Reset Attack) | MEDIUM | 6.9 | Oct 10, 2023 |
| CVE-2023-4853 | Quarkus: http security policy bypass | HIGH | 8.1 | Sep 20, 2023 |
| CVE-2023-3089 | Ocp & fips mode | HIGH | 7.5 | Jul 5, 2023 |
| CVE-2021-3703 | serverless: incomplete fix for CVE-2021-27918 / CVE-2021-31525 / CVE-2021-33196 | HIGH | 7.5 | Aug 26, 2022 |
Showing 1 to 9 of 9 CVEs