Vulnerability index

Browse CVEs

14 matching
Filters 2 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness Command InjectionCWE-77 × clear
HIGH 8.8 CVE-2026-42271 KEVEPSS 83% LiteLLM is a proxy server (AI Gateway) to call LLM APIs in OpenAI (or native) format. From version 1.74.2 to before version 1.83.7, two endpoints use… Openshift Ai 1.83.7 / 2.25.8+ Fix from $1,9502026-05-08 HIGH 7.8 CVE-2023-2491 A flaw was found in the Emacs text editor. Processing a specially crafted org-mode code with the "org-babel-execute:latex" function in ob-latex.el ca… Enterprise Linux Mitigation only Fix from $1,9502023-05-17 HIGH 8.8 CVE-2021-3621 A flaw was found in SSSD, where the sssctl command was vulnerable to shell command injection via the logs-fetch and cache-expire subcommands. This fl… Virtualization Patch available Fix from $1,9502021-12-23 HIGH 7.8 CVE-2016-10729 An issue was discovered in Amanda 3.3.1. A user with backup privileges can trivially compromise a client installation. The "runtar" setuid root binar… Enterprise Linux No fix yet Fix from $1,9502018-10-24 CRITICAL 9.8 CVE-2018-14649EPSS 12% It was found that ceph-isci-cli package as shipped by Red Hat Ceph Storage 2 and 3 is using python-werkzeug in debug shell mode. This is done by sett… Enterprise Linux Desktop Patch available Fix from $2,3002018-10-09 CRITICAL 9.1 CVE-2016-8628 Ansible before version 2.2.0 fails to properly sanitize fact variables sent from the Ansible controller. An attacker with the ability to create speci… Ansible 2.2.0+ Fix from $2,3002018-07-31 HIGH 7.0 CVE-2016-4444 The allow_execmod plugin for setroubleshoot before 3.2.23 allows local users to execute arbitrary commands by triggering an execmod SELinux denial wi… Enterprise Linux Desktop after 3.2.22 Fix from $1,9502017-04-11 HIGH 7.0 CVE-2016-4445 The fix_lookup_id function in sealert in setroubleshoot before 3.2.23 allows local users to execute arbitrary commands as root by triggering an SELin… Enterprise Linux Desktop after 3.2.22 Fix from $1,9502017-04-11 HIGH 7.0 CVE-2016-4446 The allow_execstack plugin for setroubleshoot allows local users to execute arbitrary commands by triggering an execstack SELinux denial with a craft… Enterprise Linux Desktop Patch available Fix from $1,9502017-04-11 HIGH 7.0 CVE-2016-4989 setroubleshoot allows local users to bypass an intended container protection mechanism and execute arbitrary commands by (1) triggering an SELinux de… Enterprise Linux Desktop Patch available Fix from $1,9502017-04-11 CRITICAL 9.8 CVE-2008-7313 The _httpsrequest function in Snoopy allows remote attackers to execute arbitrary commands. NOTE: this issue exists dues to an incomplete fix for CV… Openstack after 4.2.3 Fix from $2,3002017-03-31 CRITICAL 9.8 CVE-2014-5008 Snoopy allows remote attackers to execute arbitrary commands. Openstack Patch available Fix from $2,3002017-03-31 CRITICAL 9.8 CVE-2014-5009 Snoopy allows remote attackers to execute arbitrary commands. NOTE: this vulnerability exists due to an incomplete fix for CVE-2014-5008. Openstack after 4.2.3 Fix from $2,3002017-03-31 MEDIUM 6.5 CVE-2015-5274 rubygem-openshift-origin-console in Red Hat OpenShift 2.2 allows remote authenticated users to execute arbitrary commands via a crafted request to th… Openshift Mitigation only Fix from $1,6002015-09-18