Continuous Delivery
Puppet · 4 CVEs
CVE-2021-27024
HIGH
A flaw was discovered in Continuous Delivery for Puppet Enterprise (CD4PE) that results in a user with lower privileges…
Nov 18, 2021
CVE-2020-7945
MEDIUM
puppet: local registry credentials included in CD4PE deployment definition leads to expose credentials to users who sho…
Sep 18, 2020
CVE-2020-7944
HIGH
In Continuous Delivery for Puppet Enterprise (CD4PE) before 3.4.0, changes to resources or classes containing Sensitive…
Mar 26, 2020
CVE-2019-10695
MEDIUM
When using the cd4pe::root_configuration task to configure a Continuous Delivery for PE installation, the root user’s u…
Dec 11, 2019
| CVE ID | Description | Severity | EPSS | Published |
|---|---|---|---|---|
| CVE-2021-27024 | A flaw was discovered in Continuous Delivery for Puppet Enterprise (CD4PE) that results in a user with lower privileges being able to access a Puppet Enterpris… | HIGH | 0.82% | Nov 18, 2021 |
| CVE-2020-7945 | puppet: local registry credentials included in CD4PE deployment definition leads to expose credentials to users who should not have access | MEDIUM | 0.31% | Sep 18, 2020 |
| CVE-2020-7944 | In Continuous Delivery for Puppet Enterprise (CD4PE) before 3.4.0, changes to resources or classes containing Sensitive parameters can result in the Sensitive… | HIGH | 0.86% | Mar 26, 2020 |
| CVE-2019-10695 | When using the cd4pe::root_configuration task to configure a Continuous Delivery for PE installation, the root user’s username and password were exposed in the… | MEDIUM | 0.88% | Dec 11, 2019 |
Showing 1 to 4 of 4 CVEs