All 3 CVE vulnerabilities found in Chef Automate, with AI-generated Chinese analysis, references, and POCs.
Vendor: Progress Software Corporation
| CVE ID | Title | CVSS | Severity | Paused |
|---|---|---|---|---|
| CVE-2025-8868 | Chef Automate compliance service SQL Injection Vulnerability CWE-200 | 9.8 | Critical | 2025-09-29 |
| CVE-2025-6724 | Chef Automate SQL Injection Vulnerability CWE-89 | 8.8 | High | 2025-09-29 |
| CVE-2023-40050 | Automate Vulnerable to Malicious Content Uploaded Through Embedded Compliance Application CWE-94 | 9.9 | Critical | 2023-10-31 |
All 3 known CVE vulnerabilities affecting Chef Automate with full Chinese analysis, references, and POCs where available.