| CVE ID | Title | Vendor | Product | Severity | CVSS Score | Published At | AI Analysis |
|---|---|---|---|---|---|---|---|
| CVE-2026-22734 | Cloud Foundry UAA SAML 2.0 Signature Bypass | Cloud Foundry | UUA | High | 8.6 | 2026-04-16 23:33:44 | Deep Dive |
| CVE-2026-22727 | Cloud Foundry unprotected internal endpoints | Cloudfoundry | Cloud Foundry | High | 7.5 | 2026-03-17 22:45:09 | Deep Dive |
| CVE-2025-22246 | CVE-2025-22246 – UAA Private Key Exposure | Cloud Foundry | UAA | Low | 3.0 | 2025-05-13 05:14:41 | Deep Dive |
| CVE-2025-22216 | CVE-2025-22216 UAA Missing Zone Validation | Cloud Foundry | Cloud Foundry UAA | Medium | 5.4 | 2025-01-31 05:47:25 | Deep Dive |
| CVE-2024-38826 | CVE-2024-38826 Cloud Controller Denial of Service Attack | Cloud Foundry | Cloud Foundry | - | - | 2024-11-11 05:33:45 | Deep Dive |
| CVE-2024-37082 | Cloud Foundry 安全漏洞 | Cloud Foundry | haproxy-boshrelease | Critical | 9.1 | 2024-07-03 06:08:46 | Deep Dive |
| CVE-2024-22279 | GoRouter Denial of Service Attack | Cloud Foundry | Routing Release | Medium | 5.9 | 2024-06-10 19:47:44 | Deep Dive |
| CVE-2023-34061 | CVE-2023-34061 – Gorouter route pruning | Cloud Foundry | Routing Release | High | 7.5 | 2024-01-12 07:01:50 | Deep Dive |
| CVE-2023-34041 | CVE-2023-34041-Abuse of HTTP Hop-by-Hop Headers in Cloud Foundry Gorouter | Cloud Foundry | Routing | Medium | 5.3 | 2023-09-08 07:22:01 | Deep Dive |
| CVE-2023-20885 | CF workflows leak credentials in system audit logs | Cloud Foundry | Notifications | Medium | 6.5 | 2023-06-16 12:18:36 | Deep Dive |
| CVE-2023-20882 | Cloud Foundry 安全漏洞 | - | Cloud Foundry Routing release | 中危 | - | 2023-05-26 00:00:00 | Deep Dive |
| CVE-2023-20903 | Cloud Foundry UAA代码问题漏洞 | - | Cloud Foundry | 中危 | - | 2023-03-28 00:00:00 | Deep Dive |
| CVE-2022-31733 | IBM MQ Appliance 信任管理问题漏洞 | - | Cloud Foundry Diego and CF Deployment | 超危 | - | 2023-02-03 00:00:00 | Deep Dive |
| CVE-2021-22100 | cloud foundry 资源管理错误漏洞 | - | Cloud Controller (CAPI) by cloud foundry | 中危 | - | 2022-03-25 18:02:40 | Deep Dive |
| CVE-2021-22101 | Cloud Foundry Cloud Controller 资源管理错误漏洞 | - | Cloud Foundry Cloud Controller | 高危 | - | 2021-10-27 14:18:07 | Deep Dive |
| CVE-2021-22001 | UAA server 信息泄露漏洞 | - | Cloud Foundry UAA server | 高危 | - | 2021-07-22 13:17:35 | Deep Dive |
| CVE-2020-5423 | Cloud Controller is vulnerable to denial of service via YAML parsing | Cloud Foundry | CAPI | 高危 | - | 2020-12-02 01:55:12 | Deep Dive |
| CVE-2020-5422 | UAA password may appear in BOSH System Metrics Server process arguments | Cloud Foundry | BOSH System Metrics Server | 中危 | - | 2020-10-02 17:10:13 | Deep Dive |
| CVE-2020-5418 | Cloud Controller allows users with no roles to list droplets | Cloud Foundry | CAPI | 中危 | - | 2020-09-03 01:10:16 | Deep Dive |
| CVE-2020-5420 | Gorouter is vulnerable to DoS attack via invalid HTTP responses | Cloud Foundry | Routing | 高危 | - | 2020-09-03 01:10:16 | Deep Dive |