Known Vulnerabilities for Quay by Redhat
Listed below are 10 of the newest known vulnerabilities associated with "Quay" by "Redhat".
These CVEs are retrieved based on exact matches on listed software, hardware, and vendor information (CPE data) as well as a keyword search to ensure the newest vulnerabilities with no officially listed software information are still displayed.
Data on known vulnerable versions is also displayed based on information from known CPEs
Known Vulnerabilities
| CVE | Shortened Description | Severity | Publish Date | Last Modified |
|---|---|---|---|---|
| CVE-2021-3762 | A directory traversal vulnerability was found in the ClairCore engine of Clair. An attacker can exploit this by supplying a c... | 9.8 - CRITICAL | 2022-03-03 | 2023-01-30 |
| CVE-2020-27832 | A flaw was found in Red Hat Quay, where it has a persistent Cross-site Scripting (XSS) vulnerability when displaying a reposi... | 9 - CRITICAL | 2021-05-27 | 2021-06-08 |
| CVE-2020-27831 | A flaw was found in Red Hat Quay, where it does not properly protect the authorization token when authorizing email addresses... | 4.3 - MEDIUM | 2021-05-27 | 2022-10-21 |
| CVE-2020-14313 | An information disclosure vulnerability was found in Red Hat Quay in versions before 3.3.1. This flaw allows an attacker who ... | 4.3 - MEDIUM | 2020-08-11 | 2021-07-21 |
| CVE-2020-10735 | A flaw was found in python. In algorithms with quadratic time complexity using non-binary bases, when using int("text"), a sy... | 7.5 - HIGH | 2022-09-09 | 2023-06-30 |
| CVE-2019-9513 | Some HTTP/2 implementations are vulnerable to resource loops, potentially leading to a denial of service. The attacker create... | 7.5 - HIGH | 2019-08-13 | 2023-11-07 |
| CVE-2019-9511 | Some HTTP/2 implementations are vulnerable to window size manipulation and stream prioritization manipulation, potentially le... | 7.5 - HIGH | 2019-08-13 | 2023-11-07 |
| CVE-2019-3867 | A vulnerability was found in the Quay web application. Sessions in the Quay web application never expire. An attacker, able t... | 4.1 - MEDIUM | 2021-03-18 | 2021-03-25 |
| CVE-2019-3865 | A vulnerability was found in quay-2, where a stored XSS vulnerability has been found in the super user function of quay. Atta... | 6.1 - MEDIUM | 2020-06-22 | 2022-10-07 |
| CVE-2019-3864 | A vulnerability was discovered in all quay-2 versions before quay-3.0.0, in the Quay web GUI where POST requests include a sp... | 8.8 - HIGH | 2020-01-21 | 2020-02-05 |