CVE Tools

The-centos-project

88 CVEs tracked since 2008. Since Aug 2008, none of them reached CISA KEV.

The-centos-project CVEs per month

Aug 2008 to Sep 2019. Point at a month, or focus the strip and use the arrow keys.
The-centos-project CVEs per month, with the share now in CISA KEV
MonthCVEsIn CISA KEV
2008-0820
2008-09null or fewer
2008-1030
2008-11null or fewer
2008-12null or fewer
2009-01null or fewer
2009-02null or fewer
2009-03null or fewer
2009-0430
2009-0520
2009-06null or fewer
2009-07null or fewer
2009-08null or fewer
2009-09null or fewer
2009-1010
2009-1110
2009-1220
2010-0110
2010-0210
2010-03null or fewer
2010-04null or fewer
2010-05null or fewer
2010-06null or fewer
2010-07null or fewer
2010-0810
2010-0910
2010-10null or fewer
2010-1110
2010-1250
2011-01null or fewer
2011-0210
2011-0310
2011-04null or fewer
2011-0510
2011-06null or fewer
2011-07null or fewer
2011-0820
2011-09null or fewer
2011-10null or fewer
2011-11null or fewer
2011-1210
2012-0110
2012-02null or fewer
2012-03null or fewer
2012-0420
2012-05null or fewer
2012-0620
2012-0740
2012-0820
2012-09null or fewer
2012-10null or fewer
2012-1110
2012-1220
2013-0130
2013-02null or fewer
2013-0350
2013-04null or fewer
2013-0510
2013-0610
2013-0710
2013-08null or fewer
2013-0910
2013-1050
2013-1110
2013-1240
2014-0120
2014-0220
2014-03null or fewer
2014-04null or fewer
2014-05null or fewer
2014-06null or fewer
2014-07null or fewer
2014-0830
2014-09null or fewer
2014-10null or fewer
2014-1110
2014-12null or fewer
2015-01null or fewer
2015-02null or fewer
2015-03null or fewer
2015-04null or fewer
2015-05null or fewer
2015-06null or fewer
2015-07null or fewer
2015-08null or fewer
2015-09null or fewer
2015-10null or fewer
2015-11null or fewer
2015-12null or fewer
2016-01null or fewer
2016-02null or fewer
2016-03null or fewer
2016-0410
2016-05null or fewer
2016-06null or fewer
2016-07null or fewer
2016-08null or fewer
2016-09null or fewer
2016-10null or fewer
2016-11null or fewer
2016-12null or fewer
2017-01null or fewer
2017-02null or fewer
2017-03null or fewer
2017-04null or fewer
2017-05null or fewer
2017-06null or fewer
2017-07null or fewer
2017-08null or fewer
2017-09null or fewer
2017-10null or fewer
2017-11null or fewer
2017-12null or fewer
2018-01null or fewer
2018-02null or fewer
2018-03null or fewer
2018-04null or fewer
2018-05null or fewer
2018-06null or fewer
2018-07null or fewer
2018-08null or fewer
2018-09null or fewer
2018-10null or fewer
2018-11null or fewer
2018-12null or fewer
2019-01null or fewer
2019-02null or fewer
2019-03null or fewer
2019-04null or fewer
2019-05null or fewer
2019-06null or fewer
2019-0740
2019-0830
2019-0960

Products

The products that kept showing up in The-centos-project's monthly top three, with their CVEs summed over those months.

  1. Centos7539 months
  2. Centos Web Panel133 months

Latest CVEs

The 15 most recently published vulnerabilities affecting The-centos-project.

  1. CVE-2026-46243smb: client: reject userspace cifs.spnego descriptions7.1
  2. CVE-2026-43284xfrm: esp: avoid in-place decrypt on shared skb frags8.8
  3. CVE-2025-48703CWP (aka Control Web Panel or CentOS Web Panel) before 0.9.8.1205 allows unauthenticated remote code execution via shell metacharacters in the t_total parameter in a filemanager changePerm request....9.0
  4. CVE-2024-1722Keycloak-core: dos via account lockout3.7
  5. CVE-2022-44877login/index.php in CWP (aka Control Web Panel or CentOS Web Panel) 7 before 0.9.8.1147 allows remote attackers to execute arbitrary OS commands via shell metacharacters in the login parameter.9.8
  6. CVE-2021-45466In CWP (aka Control Web Panel or CentOS Web Panel) before 0.9.8.1107, attackers can make a crafted request to api/?api=add_server&DHCP= to add an authorized_keys text file in the /resources/ folder.9.8
  7. CVE-2021-45467In CWP (aka Control Web Panel or CentOS Web Panel) before 0.9.8.1107, an unauthenticated attacker can use %00 bytes to cause /user/loader.php to register an arbitrary API key, as demonstrated by a ...9.8
  8. CVE-2022-38473A cross-origin iframe referencing an XSLT document would inherit the parent domain's permissions (such as microphone or camera access). This vulnerability affects Thunderbird < 102.2, Thunderbird <...8.8
  9. CVE-2022-2526A use-after-free vulnerability was found in systemd. This issue occurs due to the on_stream_io() function and dns_stream_complete() function in 'resolved-dns-stream.c' not incrementing the referenc...9.8
  10. CVE-2022-2639An integer coercion error was found in the openvswitch kernel module. Given a sufficiently large number of actions, while copying and reserving memory for a new action of a new flow, the reserve_sf...7.8
  11. CVE-2021-4218A flaw was found in the Linux kernel’s implementation of reading the SVC RDMA counters. Reading the counter sysctl panics the system. This flaw allows a local attacker with local access to cause ...5.5
  12. CVE-2022-29154An issue was discovered in rsync before 3.2.5 that allows malicious remote servers to write arbitrary files inside the directories of connecting peers. The server chooses which files/directories ar...7.4
  13. CVE-2021-4034A local privilege escalation vulnerability was found on polkit's pkexec utility. The pkexec application is a setuid tool designed to allow unprivileged users to run commands as privileged users acc...7.8
  14. CVE-2021-23992Thunderbird did not check if the user ID associated with an OpenPGP key has a valid self signature. An attacker may create a crafted version of an OpenPGP key, by either replacing the original user...4.3
  15. CVE-2020-15422This vulnerability allows remote attackers to execute arbitrary code on affected installations of CentOS Web Panel cwp-e17.0.9.8.923. Authentication is not required to exploit this vulnerability. T...9.8

The record

Peak rank
#21 in Dec 2010
Busiest month shown
Sep 2019, 6 CVEs
Months with a KEV entry
0 since Aug 2008
Monthly snapshots
42 since 2008
The-centos-project's full record, month by month

We use analytics cookies to see which pages and articles actually help people. Decline and none of them run — the site works the same. What we store