Browse all 4 CVE security advisories affecting prowler-cloud. AI-powered Chinese analysis, POCs, and references for each vulnerability.
| CVE ID | Title | CVSS | Severity | Published |
|---|---|---|---|---|
| CVE-2026-73264 | Prowler: Server-Side Request Forgery (SSRF) in Lighthouse Provider — prowler CWE-918 | 7.6 | High | 2026-08-12 |
| CVE-2026-73263 | Prowler: RCE on Prowler App workers via kubeconfig auth-provider cmd-path — prowler CWE-78 | 9.9 | Critical | 2026-08-12 |
| CVE-2026-73262 | Prowler: Stored XSS in HTML reports through unescaped cloud resource tags — prowler CWE-79 | 5.4 | Medium | 2026-08-12 |
| CVE-2026-59151 | Prowler: SAML Domain Claiming Enables Cross-Tenant Account Takeover — prowler CWE-287 | 9.6 | Critical | 2026-07-10 |
This page lists every published CVE security advisory associated with prowler-cloud. Each entry links to a detailed page with CVSS scoring, CWE classification, affected products and references. AI-generated Chinese analysis is provided for fast triage.