OpenStack / Barbican
5 CVEs
| CVE ID | Description | Severity | CVSS | Published |
|---|---|---|---|---|
| CVE-2023-1633 | Insecure barbican configuration file leaking credential | MEDIUM | 6.6 | Sep 24, 2023 |
| CVE-2023-1636 | Incomplete container isolation | MEDIUM | 6.0 | Sep 24, 2023 |
| CVE-2022-3100 | openstack-barbican: access policy bypass via query string injection | HIGH | 7.1 | Jan 18, 2023 |
| CVE-2022-23451 | openstack-barbican: Barbican allows authenticated users to add/modify/delete arbitrary metadata on any secret | HIGH | 8.1 | Sep 6, 2022 |
| CVE-2022-23452 | openstack-barbican: Barbican allows anyone with an admin role to add their secrets to a different project's containers | MEDIUM | 4.9 | Sep 1, 2022 |
Showing 1 to 5 of 5 CVEs