rhvm vulnerabilities

Direct Vulnerabilities

Known vulnerabilities in the rhvm package. This does not include vulnerabilities belonging to this package’s dependencies.

How to fix?

Automatically find and fix vulnerabilities affecting your projects. Snyk scans for vulnerabilities and provides fixes for free.

Fix for free
VulnerabilityVulnerable Version
  • M
Cleartext Storage of Sensitive Information

*
  • H
CVE-2024-0822

<0:4.5.3.10-1.el8ev
  • M
Resource Exhaustion

<0:4.5.0.7-0.9.el8ev
  • M
Cleartext Storage of Sensitive Information

<0:4.5.3.2-1.el8ev
  • M
Exposure of Private Information ('Privacy Violation')

<0:4.5.3.2-1.el8ev
  • H
Information Exposure

<0:4.5.2.4-0.1.el8ev
  • H
CVE-2021-22096

<0:4.5.2.4-0.1.el8ev
  • M
Improperly Controlled Modification of Dynamically-Determined Object Attributes

<0:4.4.5.9-0.1.el8ev
  • M
Improper Access Control

<0:4.4.4.7-0.2.el8ev
  • M
Cross-site Scripting (XSS)

<0:4.4.2.3-0.6.el8ev
  • M
Improper Input Validation

<0:4.4.2.3-0.6.el8ev
  • L
Improper Input Validation

<0:4.4.3.8-0.1.el8ev
  • L
Resource Exhaustion

<0:4.4.3.8-0.1.el8ev
  • H
User Interface (UI) Misrepresentation of Critical Information

<0:4.4.1.8-0.7.el8ev
  • H
Cross-site Scripting (XSS)

<0:4.4.1.8-0.7.el8ev
  • H
XML External Entity (XXE) Injection

<0:4.4.1.8-0.7.el8ev
  • H
Cross-site Scripting (XSS)

<0:4.4.1.8-0.7.el8ev
  • M
Cross-site Scripting (XSS)

<0:4.4.5.9-0.1.el8ev
  • M
Resource Exhaustion

<0:4.4.5.9-0.1.el8ev
  • H
Resource Exhaustion

<0:4.5.2.4-0.1.el8ev
  • L
Deserialization of Untrusted Data

<0:4.4.10.6-0.1.el8ev
  • L
SQL Injection

<0:4.4.10.6-0.1.el8ev
  • L
Deserialization of Untrusted Data

<0:4.4.10.6-0.1.el8ev
  • M
Improper Input Validation

<0:4.4.10.6-0.1.el8ev
  • M
Cross-site Scripting (XSS)

<0:4.5.0.7-0.9.el8ev
  • M
Cross-site Scripting (XSS)

<0:4.5.0.7-0.9.el8ev
  • M
Cross-site Scripting (XSS)

<0:4.5.0.7-0.9.el8ev
  • M
Resource Exhaustion

<0:4.5.0.7-0.9.el8ev
  • H
Cross-site Scripting (XSS)

<0:4.4.1.8-0.7.el8ev
  • H
Improper Input Validation

<0:4.4.1.8-0.7.el8ev
  • H
Cross-site Scripting (XSS)

<0:4.4.1.8-0.7.el8ev
  • H
Cross-site Scripting (XSS)

<0:4.4.1.8-0.7.el8ev
  • M
Information Exposure

<0:4.4.5.9-0.1.el8ev
  • M
Resource Exhaustion

<0:4.5.0.7-0.9.el8ev
  • H
Arbitrary Code Injection

<0:4.5.2.4-0.1.el8ev
  • L
XML External Entity (XXE) Injection

<0:4.4.4.5-0.10.el8ev
  • H
Deserialization of Untrusted Data

<0:4.4.1.8-0.7.el8ev