CVEs (743)
CVE VENDORS PRODUCTS UPDATED PUBLISHED CVSS |
|---|
2Netapp Oracle3Mysql Oncommand InsightOncommand Workflow AutomationNov 21, 2024 Oct 18, 2022 N/A· v4 7.2 HIGH· v3 N/A· v2 Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Optimizer). Supported versions that are affected are 8.0.27 and prior. Easily exploitable vulnerability allows high privileged attacker with n...Show more |
2Netapp Oracle3Mysql Oncommand InsightOncommand Workflow AutomationNov 21, 2024 Oct 18, 2022 N/A· v4 4.9 MEDIUM· v3 N/A· v2 Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Stored Procedure). Supported versions that are affected are 8.0.30 and prior. Easily exploitable vulnerability allows high privileged attacker...Show more |
3Mariadb NetappOracle4Mariadb MysqlOncommand Insight+1 moreNov 21, 2024 Oct 18, 2022 N/A· v4 4.4 MEDIUM· v3 N/A· v2 Vulnerability in the MySQL Server product of Oracle MySQL (component: C API). Supported versions that are affected are 5.7.36 and prior and 8.0.27 and prior. Difficult to exploit vulnerability allows high privileged atta...Show more |
2Netapp Oracle3Mysql Oncommand InsightOncommand Workflow AutomationNov 21, 2024 Oct 18, 2022 N/A· v4 4.9 MEDIUM· v3 N/A· v2 Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Optimizer). Supported versions that are affected are 8.0.30 and prior. Easily exploitable vulnerability allows high privileged attacker with n...Show more |
2Netapp Oracle3Mysql Oncommand InsightOncommand Workflow AutomationNov 21, 2024 Oct 18, 2022 N/A· v4 4.3 MEDIUM· v3 N/A· v2 Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Security: Encryption). Supported versions that are affected are 5.7.39 and prior and 8.0.29 and prior. Easily exploitable vulnerability allows...Show more |
2Netapp Oracle3Mysql Oncommand InsightOncommand Workflow AutomationNov 21, 2024 Oct 18, 2022 N/A· v4 4.3 MEDIUM· v3 N/A· v2 Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Security: Privileges). Supported versions that are affected are 5.7.39 and prior and 8.0.16 and prior. Easily exploitable vulnerability allows...Show more |
4Debian FasterxmlNetapp+1 more4Debian Linux Jackson DatabindOncommand Workflow Automation+1 moreNov 21, 2024 Oct 2, 2022 N/A· v4 7.5 HIGH· v3 N/A· v2 In FasterXML jackson-databind before 2.13.4, resource exhaustion can occur because of a lack of a check in BeanDeserializer._deserializeFromArray to prevent use of deeply nested arrays. An application is vulnerable only...Show more |
4Debian FasterxmlNetapp+1 more4Debian Linux Jackson DatabindOncommand Workflow Automation+1 moreNov 21, 2024 Oct 2, 2022 N/A· v4 7.5 HIGH· v3 N/A· v2 In FasterXML jackson-databind before versions 2.13.4.1 and 2.12.17.1, resource exhaustion can occur because of a lack of a check in primitive value deserializers to avoid deep wrapper array nesting, when the UNWRAP_SINGL...Show more |
2Netapp Redhat9Active Iq Unified Manager Cloud Secure AgentIntegration Camel K+6 moreNov 21, 2024 Sep 1, 2022 N/A· v4 4.9 MEDIUM· v3 N/A· v2 A flaw was found in Undertow. Denial of service can be achieved as Undertow server waits for the LAST_CHUNK forever for EJB invocations. |
2Netapp Redhat7Active Iq Unified Manager Cloud Secure AgentOncommand Insight+4 moreNov 21, 2024 Aug 31, 2022 N/A· v4 7.5 HIGH· v3 N/A· v2 A flaw was found in Undertow. For an AJP 400 response, EAP 7 is improperly sending two response packets, and those packets have the reuse flag set even though JBoss EAP closes the connection. A failure occurs when the co...Show more |
2Netapp Redhat10Active Iq Unified Manager Build Of QuarkusCloud Secure Agent+7 moreNov 21, 2024 Aug 31, 2022 N/A· v4 7.5 HIGH· v3 N/A· v2 A flaw was found in Undertow. A potential security issue in flow control handling by the browser over HTTP/2 may cause overhead or a denial of service in the server. This flaw exists because of an incomplete fix for CVE-...Show more |
2Jsoup Netapp4Jsoup Management Services For Element SoftwareManagement Services For Netapp Hci+1 moreNov 21, 2024 Aug 29, 2022 N/A· v4 6.1 MEDIUM· v3 N/A· v2 jsoup is a Java HTML parser, built for HTML editing, cleaning, scraping, and cross-site scripting (XSS) safety. jsoup may incorrectly sanitize HTML including `javascript:` URL expressions, which could allow XSS attacks w...Show more |
2Netapp Redhat6Cloud Secure Agent Jboss Enterprise Application PlatformOncommand Insight+3 moreNov 21, 2024 Aug 26, 2022 N/A· v4 7.5 HIGH· v3 N/A· v2 A flaw was found in Undertow that tripped the client-side invocation timeout with certain calls made over HTTP2. This flaw allows an attacker to carry out denial of service attacks. |
2Apache Netapp3Active Iq Unified Manager Activemq ArtemisOncommand Workflow AutomationNov 21, 2024 Aug 23, 2022 N/A· v4 6.1 MEDIUM· v3 N/A· v2 In Apache ActiveMQ Artemis prior to 2.24.0, an attacker could show malicious content and/or redirect users to a malicious URL in the web console by using HTML in the name of an address or queue. |
6Apple DebianFedoraproject+3 more18Active Iq Unified Manager Debian LinuxFedora+15 moreMay 30, 2025 Aug 5, 2022 N/A· v4 9.8 CRITICAL· v3 N/A· v2 zlib through 1.2.12 has a heap-based buffer over-read or buffer overflow in inflate in inflate.c via a large gzip header extra field. NOTE: only applications that call inflateGetHeader are affected. Some common applicati...Show more |
2Netapp Oracle5Active Iq Unified Manager Mysql ServerOncommand Insight+2 moreNov 21, 2024 Jul 19, 2022 N/A· v4 6.5 MEDIUM· v3 N/A· v2 Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Optimizer). Supported versions that are affected are 8.0.29 and prior. Easily exploitable vulnerability allows low privileged attacker with ne...Show more |
2Netapp Oracle5Active Iq Unified Manager Mysql ServerOncommand Insight+2 moreNov 21, 2024 Jul 19, 2022 N/A· v4 6.5 MEDIUM· v3 N/A· v2 Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Optimizer). Supported versions that are affected are 8.0.28 and prior. Easily exploitable vulnerability allows high privileged attacker with n...Show more |
2Netapp Oracle5Active Iq Unified Manager Mysql ServerOncommand Insight+2 moreNov 21, 2024 Jul 19, 2022 N/A· v4 4.9 MEDIUM· v3 N/A· v2 Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Optimizer). Supported versions that are affected are 8.0.29 and prior. Easily exploitable vulnerability allows high privileged attacker with n...Show more |
2Netapp Oracle5Active Iq Unified Manager Mysql ClusterOncommand Insight+2 moreNov 21, 2024 Jul 19, 2022 N/A· v4 6.3 MEDIUM· v3 N/A· v2 Vulnerability in the MySQL Cluster product of Oracle MySQL (component: Cluster: General). Supported versions that are affected are 7.4.36 and prior, 7.5.26 and prior, 7.6.22 and prior and and 8.0.29 and prior. Difficult...Show more |
2Netapp Oracle5Active Iq Unified Manager Mysql ServerOncommand Insight+2 moreNov 21, 2024 Jul 19, 2022 N/A· v4 4.9 MEDIUM· v3 N/A· v2 Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Federated). Supported versions that are affected are 8.0.29 and prior. Easily exploitable vulnerability allows high privileged attacker with n...Show more |