Cloud Foundry / CAPI
6 CVEs
| CVE ID | Description | Severity | CVSS | Published |
|---|---|---|---|---|
| CVE-2020-5423 | Cloud Controller is vulnerable to denial of service via YAML parsing | HIGH | 7.5 | Dec 2, 2020 |
| CVE-2020-5418 | Cloud Controller allows users with no roles to list droplets | MEDIUM | 4.3 | Sep 3, 2020 |
| CVE-2020-5417 | Cloud Controller may allow developers to claim sensitive routes | HIGH | 8.8 | Aug 21, 2020 |
| CVE-2020-5400 | Cloud Controller logs environment variables from app manifests | MEDIUM | 6.5 | Feb 27, 2020 |
| CVE-2019-11294 | CAPI leaks service broker URLs and GUIDs to space developers | MEDIUM | 4.3 | Dec 19, 2019 |
| CVE-2019-3785 | Cloud Controller provides signed URL with write authorization to read only user | HIGH | 8.1 | Mar 13, 2019 |
Showing 1 to 6 of 6 CVEs