Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-vh55-q5m4-8wr6

Опубликовано: 16 сент. 2026
Источник: github
Github: Не прошло ревью
CVSS3: 9.8

Описание

Sentry Seer is vulnerable to a multi-stage trust-boundary violation that allows unauthenticated attacker-controlled telemetry to become code that is executed by an agent in a privileged automation environment. An external attacker can submit fabricated Sentry events without having access to the victim’s Sentry account, source repository, or infrastructure.

Sentry Seer is vulnerable to a multi-stage trust-boundary violation that allows unauthenticated attacker-controlled telemetry to become code that is executed by an agent in a privileged automation environment. An external attacker can submit fabricated Sentry events without having access to the victim’s Sentry account, source repository, or infrastructure.

EPSS

Процентиль: 13%
0.00218
Низкий

9.8 Critical

CVSS3

Дефекты

CWE-20

Связанные уязвимости

nvd
4 дня назад

Sentry Seer is vulnerable to a multi-stage trust-boundary violation that allows unauthenticated attacker-controlled telemetry to become code that is executed by an agent in a privileged automation environment. An external attacker can submit fabricated Sentry events without having access to the victim’s Sentry account, source repository, or infrastructure.

EPSS

Процентиль: 13%
0.00218
Низкий

9.8 Critical

CVSS3

Дефекты

CWE-20