Vulnerability index

Browse CVEs

14 matching
Filters 2 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness Command InjectionCWE-77 × clear
Openshift Ai HIGH 8.8
CVE-2026-42271 KEVEPSS 83%

LiteLLM is a proxy server (AI Gateway) to call LLM APIs in OpenAI (or native) format. From version 1.74.2 to before version 1.83.7, two endpoints use…

Fix: 1.83.7 / 2.25.8+
Fix from $1,950 2026-05-08
Enterprise Linux HIGH 7.8
CVE-2023-2491

A flaw was found in the Emacs text editor. Processing a specially crafted org-mode code with the "org-babel-execute:latex" function in ob-latex.el ca…

Mitigation only
Fix from $1,950 2023-05-17
Virtualization HIGH 8.8
CVE-2021-3621

A flaw was found in SSSD, where the sssctl command was vulnerable to shell command injection via the logs-fetch and cache-expire subcommands. This fl…

Patch available
Fix from $1,950 2021-12-23
Enterprise Linux HIGH 7.8
CVE-2016-10729

An issue was discovered in Amanda 3.3.1. A user with backup privileges can trivially compromise a client installation. The "runtar" setuid root binar…

No fix yet
Fix from $1,950 2018-10-24
Enterprise Linux Desktop CRITICAL 9.8
CVE-2018-14649EPSS 12%

It was found that ceph-isci-cli package as shipped by Red Hat Ceph Storage 2 and 3 is using python-werkzeug in debug shell mode. This is done by sett…

Patch available
Fix from $2,300 2018-10-09
Ansible CRITICAL 9.1
CVE-2016-8628

Ansible before version 2.2.0 fails to properly sanitize fact variables sent from the Ansible controller. An attacker with the ability to create speci…

Fix: 2.2.0+
Fix from $2,300 2018-07-31
Enterprise Linux Desktop HIGH 7.0
CVE-2016-4444

The allow_execmod plugin for setroubleshoot before 3.2.23 allows local users to execute arbitrary commands by triggering an execmod SELinux denial wi…

Fix: after 3.2.22
Fix from $1,950 2017-04-11
Enterprise Linux Desktop HIGH 7.0
CVE-2016-4445

The fix_lookup_id function in sealert in setroubleshoot before 3.2.23 allows local users to execute arbitrary commands as root by triggering an SELin…

Fix: after 3.2.22
Fix from $1,950 2017-04-11
Enterprise Linux Desktop HIGH 7.0
CVE-2016-4446

The allow_execstack plugin for setroubleshoot allows local users to execute arbitrary commands by triggering an execstack SELinux denial with a craft…

Patch available
Fix from $1,950 2017-04-11
Enterprise Linux Desktop HIGH 7.0
CVE-2016-4989

setroubleshoot allows local users to bypass an intended container protection mechanism and execute arbitrary commands by (1) triggering an SELinux de…

Patch available
Fix from $1,950 2017-04-11
Openstack CRITICAL 9.8
CVE-2008-7313

The _httpsrequest function in Snoopy allows remote attackers to execute arbitrary commands. NOTE: this issue exists dues to an incomplete fix for CV…

Fix: after 4.2.3
Fix from $2,300 2017-03-31
Openstack CRITICAL 9.8
CVE-2014-5008

Snoopy allows remote attackers to execute arbitrary commands.

Patch available
Fix from $2,300 2017-03-31
Openstack CRITICAL 9.8
CVE-2014-5009

Snoopy allows remote attackers to execute arbitrary commands. NOTE: this vulnerability exists due to an incomplete fix for CVE-2014-5008.

Fix: after 4.2.3
Fix from $2,300 2017-03-31
Openshift MEDIUM 6.5
CVE-2015-5274

rubygem-openshift-origin-console in Red Hat OpenShift 2.2 allows remote authenticated users to execute arbitrary commands via a crafted request to th…

Mitigation only
Fix from $1,600 2015-09-18