cbcvebase.

Redhat Process Automation vulnerabilities

24 known vulnerabilities affecting redhat/process_automation.

Total CVEs
24
CISA KEV
1
actively exploited
Public exploits
2
Exploited in wild
2
Severity breakdown
CRITICAL5HIGH14MEDIUM5

Vulnerabilities

Page 2 of 2
CVE-2021-3642P4MEDIUMCVSS 5.3v7.02021-08-05
CVE-2021-3642 [MEDIUM] CWE-203 CVE-2021-3642: A flaw was found in Wildfly Elytron in versions prior to 1.10.14.Final, prior to 1.15.5.Final and pr A flaw was found in Wildfly Elytron in versions prior to 1.10.14.Final, prior to 1.15.5.Final and prior to 1.16.1.Final where ScramServer may be susceptible to Timing Attack if enabled. The highest threat of this vulnerability is confidentiality.
nvd
CVE-2019-14862P4MEDIUMCVSS 6.1v7.02020-01-02
CVE-2019-14862 [MEDIUM] CWE-79 CVE-2019-14862: There is a vulnerability in knockout before version 3.5.0-beta, where after escaping the context of There is a vulnerability in knockout before version 3.5.0-beta, where after escaping the context of the web application, the web application delivers data to its users along with other trusted dynamic content, without validating it.
nvd
CVE-2019-14863P4MEDIUMCVSS 6.1v7.02020-01-02
CVE-2019-14863 [MEDIUM] CWE-79 CVE-2019-14863: There is a vulnerability in all angular versions before 1.5.0-beta.0, where after escaping the conte There is a vulnerability in all angular versions before 1.5.0-beta.0, where after escaping the context of the web application, the web application delivers data to its users along with other trusted dynamic content, without validating it.
nvd
CVE-2021-20306P4MEDIUMCVSS 4.3v7.02021-06-01
CVE-2021-20306 [MEDIUM] CWE-863 CVE-2021-20306: A flaw was found in the BPMN editor in version jBPM 7.51.0.Final. Any authenticated user from any pr A flaw was found in the BPMN editor in version jBPM 7.51.0.Final. Any authenticated user from any project can see the name of Ruleflow Groups from other projects, despite the user not having access to those projects. The highest threat from this vulnerability is to confidentiality.
nvd
Redhat Process Automation vulnerabilities | cvebase