CVE Tools

Unknown

151 CVEs tracked since 2018. Since Jun 2018, none of them reached CISA KEV.

Unknown CVEs per month

Jun 2018 to Jun 2020. Point at a month, or focus the strip and use the arrow keys.
Unknown CVEs per month, with the share now in CISA KEV
MonthCVEsIn CISA KEV
2018-06200
2018-07540
2018-08180
2018-09100
2018-10110
2018-11null or fewer
2018-12100
2019-01null or fewer
2019-02null or fewer
2019-03null or fewer
2019-04null or fewer
2019-05null or fewer
2019-06null or fewer
2019-07null or fewer
2019-08null or fewer
2019-09null or fewer
2019-10null or fewer
2019-11100
2019-12null or fewer
2020-01null or fewer
2020-02null or fewer
2020-03130
2020-04null or fewer
2020-05null or fewer
2020-0650

Products

The products that kept showing up in Unknown's monthly top three, with their CVEs summed over those months.

  1. Kernel102 months
  2. Moodle72 months
  3. Ansible63 months
  4. 389-ds-base32 months
  5. Gnutls31 month
  6. Golang31 month
  7. Kernel:31 month
  8. Pki-core31 month
  9. Ovirt-engine21 month
  10. Python21 month

Latest CVEs

The 15 most recently published vulnerabilities affecting Unknown.

  1. CVE-2020-10773A stack information leak flaw was found in s390/s390x in the Linux kernel’s memory manager functionality, where it incorrectly writes to the /proc/sys/vm/cmm_timeout file. This flaw allows a loca...4.4
  2. CVE-2019-19338A flaw was found in the fix for CVE-2019-11135, in the Linux upstream kernel versions before 5.5 where, the way Intel CPUs handle speculative execution of instructions when a TSX Asynchronous Abort...5.5
  3. CVE-2019-14894A flaw was found in the CloudForms management engine version 5.10 and CloudForms management version 5.11, which triggered remote code execution through NFS schedule backup. An attacker logged into ...8.0
  4. CVE-2019-3865A vulnerability was found in quay-2, where a stored XSS vulnerability has been found in the super user function of quay. Attackers are able to use the name field of service key to inject scripts an...6.1
  5. CVE-2020-10736An authorization bypass vulnerability was found in Ceph versions 15.2.0 before 15.2.2, where the ceph-mon and ceph-mgr daemons do not properly restrict access, resulting in gaining access to unauth...8.0
  6. CVE-2020-1727A vulnerability was found in Keycloak before 9.0.2, where every Authorization URL that points to an IDP server lacks proper input validation as it allows a wide range of characters. This flaw allow...6.4
  7. CVE-2020-10740A vulnerability was found in Wildfly in versions before 20.0.0.Final, where a remote deserialization attack is possible in the Enterprise Application Beans(EJB) due to lack of validation/filtering ...6.6
  8. CVE-2020-10738A flaw was found in Moodle versions 3.8 before 3.8.3, 3.7 before 3.7.6, 3.6 before 3.6.10, 3.5 before 3.5.12 and earlier unsupported versions. It was possible to create a SCORM package in such a wa...7.5
  9. CVE-2020-10725A flaw was found in DPDK version 19.11 and above that allows a malicious guest to cause a segmentation fault of the vhost-user backend application running on the host, which could result in a loss ...7.7
  10. CVE-2020-10726A vulnerability was found in DPDK versions 19.11 and above. A malicious container that has direct access to the vhost-user socket can keep sending VHOST_USER_GET_INFLIGHT_FD messages, causing a res...6.0
  11. CVE-2020-10722A vulnerability was found in DPDK versions 18.05 and above. A missing check for an integer overflow in vhost_user_set_log_base() could result in a smaller memory map than requested, possibly allowi...5.1
  12. CVE-2020-10723A memory corruption issue was found in DPDK versions 17.05 and above. This flaw is caused by an integer truncation on the index of a payload. Under certain circumstances, the index (a UInt) is copi...5.1
  13. CVE-2020-10724A vulnerability was found in DPDK versions 18.11 and above. The vhost-crypto library code is missing validations for user-supplied values, potentially allowing an information leak through an out-of...5.1
  14. CVE-2020-10706A flaw was found in OpenShift Container Platform where OAuth tokens are not encrypted when the encryption of data at rest is enabled. This flaw allows an attacker with access to a backup to obtain ...6.3
  15. CVE-2019-10170A flaw was found in the Keycloak admin console, where the realm management interface permits a script to be set via the policy. This flaw allows an attacker with authenticated user and realm manage...6.6

The record

Peak rank
#13 in Jul 2018
Busiest month shown
Jul 2018, 54 CVEs
Months with a KEV entry
0 since Jun 2018
Monthly snapshots
9 since 2018
Unknown's full record, month by month

We use analytics cookies to see which pages and articles actually help people. Decline and none of them run — the site works the same. What we store