Dex
Dexidp · 3 CVEs
CVE-2024-23656
HIGH
Dex 2.37.0 is discarding TLSconfig and always serves deprecated TLS 1.0/1.1 and insecure ciphers
Jan 25, 2024
CVE-2022-39222
CRITICAL
OAuth authorization code exposure in Dex
Oct 6, 2022
CVE-2020-26290
CRITICAL
Critical security issues in XML encoding in Dex
Dec 28, 2020
| CVE ID | Description | Severity | EPSS | Published |
|---|---|---|---|---|
| CVE-2024-23656 | Dex 2.37.0 is discarding TLSconfig and always serves deprecated TLS 1.0/1.1 and insecure ciphers | HIGH | 0.43% | Jan 25, 2024 |
| CVE-2022-39222 | OAuth authorization code exposure in Dex | CRITICAL | 1.58% | Oct 6, 2022 |
| CVE-2020-26290 | Critical security issues in XML encoding in Dex | CRITICAL | 0.99% | Dec 28, 2020 |
Showing 1 to 3 of 3 CVEs