Skip to content
Noroxi

immuta records

4 published records for vendor immuta.

Researcher profile

Entered KEV
0 · 0%
Weaponized
0 · 0%
Pre-auth RCE
0
With a fix record
0%
Median publish → KEV
No record has entered KEV

Records by year

  1. 20

Bar: total · dark part: CISA KEV.

All records

4 records
  • Immuta v2.8.2 is affected by stored XSS that allows a low-privileged user to escalate privileges to administrative permissions.

    CriticalCVSS 9.0No exploitEPSS 2%

    immuta · immutaNov 5, 2020

  • Immuta v2.8.2 is affected by improper session management: user sessions are not revoked upon logout.

    HighCVSS 8.8No exploitEPSS 1%

    immuta · immutaNov 5, 2020

  • Immuta v2.8.2 is affected by one instance of insecure permissions that can lead to user account takeover.

    HighCVSS 7.5No exploitEPSS 1%

    immuta · immutaNov 5, 2020

  • Immuta v2.8.2 accepts user-supplied project names without properly sanitizing the input, allowing attackers to inject arbitrary HTML content

    MediumCVSS 6.1No exploitEPSS 1%

    immuta · immutaNov 5, 2020