Vulnerabilities (CVE)

Join the Common Vulnerabilities and Exposures (CVE) community and start to get notified about new vulnerabilities.

Filtered by vendor Mirantis Subscribe
Filtered by product Bored-agent
Total 1 CVE
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2022-0270 1 Mirantis 1 Bored-agent 2022-02-01 6.5 MEDIUM 8.8 HIGH
Prior to v0.6.1, bored-agent failed to sanitize incoming kubernetes impersonation headers allowing a user to override assigned user name and groups.