Логотип exploitDog
bind:CVE-2022-39383
Консоль
Логотип exploitDog

exploitDog

bind:CVE-2022-39383

Количество 2

Количество 2

nvd логотип

CVE-2022-39383

около 3 лет назад

KubeVela is an open source application delivery platform. Users using the VelaUX APIServer could be affected by this vulnerability. When using Helm Chart as the component delivery method, the request address of the warehouse is not restricted, and there is a blind SSRF vulnerability. Users who're using v1.6, please update the v1.6.1. Users who're using v1.5, please update the v1.5.8. There are no known workarounds for this issue.

CVSS3: 4.9
EPSS: Низкий
github логотип

GHSA-m5xf-x7q6-3rm7

около 3 лет назад

KubeVela VelaUX APIserver has SSRF vulnerability

CVSS3: 4.9
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
nvd логотип
CVE-2022-39383

KubeVela is an open source application delivery platform. Users using the VelaUX APIServer could be affected by this vulnerability. When using Helm Chart as the component delivery method, the request address of the warehouse is not restricted, and there is a blind SSRF vulnerability. Users who're using v1.6, please update the v1.6.1. Users who're using v1.5, please update the v1.5.8. There are no known workarounds for this issue.

CVSS3: 4.9
0%
Низкий
около 3 лет назад
github логотип
GHSA-m5xf-x7q6-3rm7

KubeVela VelaUX APIserver has SSRF vulnerability

CVSS3: 4.9
0%
Низкий
около 3 лет назад

Уязвимостей на страницу