Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-h2p8-37qr-qfr9

Опубликовано: 20 авг. 2025
Источник: github
Github: Не прошло ревью
CVSS3: 5.9

Описание

A vulnerability was found in the Cryostat HTTP API. Cryostat's HTTP API binds to all network interfaces, allowing possible external visibility and access to the API port if Network Policies are disabled, allowing an unauthenticated, malicious attacker to jeopardize the environment.

A vulnerability was found in the Cryostat HTTP API. Cryostat's HTTP API binds to all network interfaces, allowing possible external visibility and access to the API port if Network Policies are disabled, allowing an unauthenticated, malicious attacker to jeopardize the environment.

EPSS

Процентиль: 5%
0.00026
Низкий

5.9 Medium

CVSS3

Дефекты

CWE-289

Связанные уязвимости

CVSS3: 5.9
redhat
11 дней назад

A vulnerability was found in the Cryostat HTTP API. Cryostat's HTTP API binds to all network interfaces, allowing possible external visibility and access to the API port if Network Policies are disabled, allowing an unauthenticated, malicious attacker to jeopardize the environment.

CVSS3: 5.9
nvd
11 дней назад

A vulnerability was found in the Cryostat HTTP API. Cryostat's HTTP API binds to all network interfaces, allowing possible external visibility and access to the API port if Network Policies are disabled, allowing an unauthenticated, malicious attacker to jeopardize the environment.

EPSS

Процентиль: 5%
0.00026
Низкий

5.9 Medium

CVSS3

Дефекты

CWE-289