Security
Headlines
HeadlinesLatestCVEs

Headline

CVE-2022-36130: HCSEC-2022017 - Boundary Allowed Access To Host Sets And Credential Sources For Authorized Users Of Another Scope

HashiCorp Boundary up to 0.10.1 did not properly perform data integrity checks to ensure the resources were associated with the correct scopes, allowing potential privilege escalation for authorized users of another scope. Fixed in Boundary 0.10.2.

CVE
#perl#auth

Loading

CVE: Latest News

CVE-2023-50976: Transactions API Authorization by oleiman · Pull Request #14969 · redpanda-data/redpanda
CVE-2023-6905
CVE-2023-6903
CVE-2023-6904
CVE-2023-3907