Skip to main content

Vendor/product archive

kyma-project / kyma CVEs

Beta · best-effort

2 CVEs tagged to kyma-project / kyma0 Critical, 2 High, 0 Medium, 0 Low, 0 Unrated.

CVE-2021-38182

Published Dec 14, 2021

Due to insufficient input validation of Kyma, authenticated users can pass a Header of their choice and escalate privileges which can completely compromise the cluster.

CVSS 8.8 · High
Vendor/product tagsBeta · best-effort

CVE-2021-33708

Published Aug 10, 2021

Due to insufficient input validation in Kyma, authenticated users can pass a Header of their choice and escalate privileges.

CVSS 8.8 · High
Vendor/product tagsBeta · best-effort
Showing 1-2 of 2 CVEsPage 1 of 1