Opendaylight Linux Foundation Opendaylight

Do you want an email whenever new security vulnerabilities are reported in Linux Foundation Opendaylight?

By the Year

In 2024 there have been 0 vulnerabilities in Linux Foundation Opendaylight . Opendaylight did not have any published security vulnerabilities last year.

Year Vulnerabilities Average Score
2024 0 0.00
2023 0 0.00
2022 3 7.50
2021 0 0.00
2020 0 0.00
2019 0 0.00
2018 1 5.30

It may take a day or so for new Opendaylight vulnerabilities to show up in the stats or in the list of recent security vulnerabilties. Additionally vulnerabilities may be tagged under a different product or component name.

Recent Linux Foundation Opendaylight Security Vulnerabilities

A SQL injection issue was discovered in AAA in OpenDaylight (ODL) before 0.16.5

CVE-2022-45932 7.5 - High - November 27, 2022

A SQL injection issue was discovered in AAA in OpenDaylight (ODL) before 0.16.5. The aaa-idm-store-h2/src/main/java/org/opendaylight/aaa/datastore/h2/RoleStore.java deleteRole function is affected when the API interface /auth/v1/roles/ is used.

SQL Injection

A SQL injection issue was discovered in AAA in OpenDaylight (ODL) before 0.16.5

CVE-2022-45931 7.5 - High - November 27, 2022

A SQL injection issue was discovered in AAA in OpenDaylight (ODL) before 0.16.5. The aaa-idm-store-h2/src/main/java/org/opendaylight/aaa/datastore/h2/UserStore.java deleteUser function is affected when the API interface /auth/v1/users/ is used.

SQL Injection

A SQL injection issue was discovered in AAA in OpenDaylight (ODL) before 0.16.5

CVE-2022-45930 7.5 - High - November 27, 2022

A SQL injection issue was discovered in AAA in OpenDaylight (ODL) before 0.16.5. The aaa-idm-store-h2/src/main/java/org/opendaylight/aaa/datastore/h2/DomainStore.java deleteDomain function is affected for the /auth/v1/domains/ API interface.

SQL Injection

The odl-mdsal-apidocs feature in OpenDaylight Helium

CVE-2015-1857 5.3 - Medium - April 27, 2018

The odl-mdsal-apidocs feature in OpenDaylight Helium allow remote attackers to obtain sensitive information by leveraging missing AAA restrictions.

Information Disclosure

Stay on top of Security Vulnerabilities

Want an email whenever new vulnerabilities are published for Linux Foundation Opendaylight or by Linux Foundation? Click the Watch button to subscribe.

subscribe