Support Us — Your donation helps us keep running

Goal: 1000 CNY,Raised: 1000 CNY

100.0%
Associated Vulnerability
Found 8 results
CVE IDTitleVendorProductSeverityCVSS ScorePublished AtAI Analysis
CVE-2023-34236 Information Disclosure Vulnerability in Weave GitOps Terraform Controller weaveworkstf-controller High 8.5 2023-07-14 21:09:46 Deep Dive
CVE-2022-23509 Weave Gitops Run vulnerable to insecure communication weaveworksweave-gitops High 7.3 2023-01-09 13:01:08 Deep Dive
CVE-2022-23508 GitOps Run allows for Kubernetes workload injection weaveworksweave-gitops High 8.8 2023-01-09 12:56:01 Deep Dive
CVE-2022-35976 Improper KubeConfig handling allows arbitrary code execution weaveworksvscode-gitops-tools Medium 5.2 2022-08-18 18:50:08 Deep Dive
CVE-2022-35975 Improper object validation allows for arbitrary code execution in GitOps Tools Extension for VSCode weaveworksvscode-gitops-tools Critical 9.0 2022-08-18 17:55:08 Deep Dive
CVE-2022-31098 Weave GitOps leaked cluster credentials into logs on connection errors weaveworksweave-gitops Critical 9.0 2022-06-27 22:05:11 Deep Dive
CVE-2020-26278 Weave Net Pods running in host PID namespace can be used to escalate other Kubernetes vulnerabilities weaveworksweave Medium 5.8 2021-01-20 22:10:18 Deep Dive
CVE-2020-11091 Weave Net clusters susceptible to MitM attacks via IPv6 rogue router advertisements weaveworksWeave Medium 5.8 2020-06-03 22:55:13 Deep Dive