Количество 8
Количество 8
GHSA-gjv7-4r9p-7hmx
When the internal webserver is enabled (default is disabled), an attacker might be able to trick an administrator logged to the dashboard into visiting a malicious website and extract information about the running configuration from the dashboard. The root cause of the issue is a misconfiguration of the Cross-Origin Resource Sharing (CORS) policy.
CVE-2026-0397
When the internal webserver is enabled (default is disabled), an attacker might be able to trick an administrator logged to the dashboard into visiting a malicious website and extract information about the running configuration from the dashboard. The root cause of the issue is a misconfiguration of the Cross-Origin Resource Sharing (CORS) policy.
CVE-2026-0397
When the internal webserver is enabled (default is disabled), an attacker might be able to trick an administrator logged to the dashboard into visiting a malicious website and extract information about the running configuration from the dashboard. The root cause of the issue is a misconfiguration of the Cross-Origin Resource Sharing (CORS) policy.
CVE-2026-0397
When the internal webserver is enabled (default is disabled), an attac ...
ROS-20260812-80-0021
Уязвимость dnsdist
ROS-20260812-73-0018
Уязвимость dnsdist
SUSE-SU-2026:1618-1
Security update for dnsdist
openSUSE-SU-2026:21015-1
Security update for dnsdist
Уязвимостей на страницу
Уязвимость | CVSS | EPSS | Опубликовано | |
|---|---|---|---|---|
GHSA-gjv7-4r9p-7hmx When the internal webserver is enabled (default is disabled), an attacker might be able to trick an administrator logged to the dashboard into visiting a malicious website and extract information about the running configuration from the dashboard. The root cause of the issue is a misconfiguration of the Cross-Origin Resource Sharing (CORS) policy. | CVSS3: 3.1 | 0% Низкий | 5 месяцев назад | |
CVE-2026-0397 When the internal webserver is enabled (default is disabled), an attacker might be able to trick an administrator logged to the dashboard into visiting a malicious website and extract information about the running configuration from the dashboard. The root cause of the issue is a misconfiguration of the Cross-Origin Resource Sharing (CORS) policy. | CVSS3: 3.1 | 0% Низкий | 5 месяцев назад | |
CVE-2026-0397 When the internal webserver is enabled (default is disabled), an attacker might be able to trick an administrator logged to the dashboard into visiting a malicious website and extract information about the running configuration from the dashboard. The root cause of the issue is a misconfiguration of the Cross-Origin Resource Sharing (CORS) policy. | CVSS3: 3.1 | 0% Низкий | 5 месяцев назад | |
CVE-2026-0397 When the internal webserver is enabled (default is disabled), an attac ... | CVSS3: 3.1 | 0% Низкий | 5 месяцев назад | |
ROS-20260812-80-0021 Уязвимость dnsdist | CVSS3: 4.3 | 0% Низкий | 19 дней назад | |
ROS-20260812-73-0018 Уязвимость dnsdist | CVSS3: 4.3 | 0% Низкий | 19 дней назад | |
SUSE-SU-2026:1618-1 Security update for dnsdist | 4 месяца назад | |||
openSUSE-SU-2026:21015-1 Security update for dnsdist | 2 месяца назад |
Уязвимостей на страницу