Tigera kayıtları
tigera üreticisine ait 8 yayımlanmış kayıt.
Araştırmacı profili
- KEV’e giren
- 0 · %0
- Silahlaştırılmış
- 0 · %0
- Pre-auth RCE
- 0
- Düzeltme kaydı olan
- %100
- Yayından KEV’e ortanca
- KEV’e giren kayıt yok
Tekrar eden sınıflar
- CWE-200 Exposure of Sensitive Information to an Unauthorized Actor2
- CWE-532 Insertion of Sensitive Information into Log File2
- CWE-22 Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal')1
- CWE-269 Improper Privilege Management1
- CWE-285 Improper Authorization1
- CWE-400 Uncontrolled Resource Consumption1
Bu üreticide en sık görülen zafiyet sınıfları: nereye bakmalı.
CWETüm kayıtlar
8 kayıt| Aksiyon | CVE | Zafiyet | Ciddiyet | KEV | EPSS | Yayın |
|---|---|---|---|---|---|---|
31İzleyin | CVE-2026-6540İstismar yok | L7 policy bypass via unnormalized HTTP path matchingtigera · calico · CWE-22 | Yüksek7,9 | — | %0,5 | 30 Tem 2026 |
30İzleyin | CVE-2023-41378İstismar yok | Calico Typha hangs during unclean TLS handshaketigera · calico cloud · CWE-400 | Yüksek7,5 | — | %0,7 | 6 Kas 2023 |
26İzleyin | CVE-2024-33522İstismar yok | Privilege escalation in Calico CNI install binarytigera · calico · CWE-269 | Orta6,7 | — | %0,2 | 29 Nis 2024 |
24İzleyin | CVE-2026-41186İstismar yok | Unauthenticated Go pprof exposure in Calico debug servertigera · calico · CWE-200 | Orta6,0 | — | %0,7 | 30 Tem 2026 |
24İzleyin | CVE-2026-41184İstismar yok | ServiceAccount token disclosure via install-cni container logstigera · calico · CWE-532 | Orta6,0 | — | %0,5 | 28 May 2026 |
24İzleyin | CVE-2026-41187İstismar yok | Calico Tier Authorization Bypass via DeleteCollectiontigera · calico · CWE-285 | Orta6,2 | — | %0,4 | 30 Tem 2026 |
24İzleyin | CVE-2026-41185İstismar yok | ServiceAccount token disclosure via Azure IPAM CNI plugin logstigera · calico · CWE-532 | Orta6,0 | — | %0,3 | 28 May 2026 |
22İzleyin | CVE-2022-28224İstismar yok | Calico and Calico Enterprise may be vulnerable to route hijacking with the floating IP featuretigera · calico · CWE-200 | Orta5,5 | — | %0,6 | 6 Haz 2022 |
- CVE-2026-654031İzleyin
L7 policy bypass via unnormalized HTTP path matching
YüksekCVSS 7,9İstismar yokEPSS %1tigera · calico30 Tem 2026
- CVE-2023-4137830İzleyin
Calico Typha hangs during unclean TLS handshake
YüksekCVSS 7,5İstismar yokEPSS %1tigera · calico cloud6 Kas 2023
- CVE-2024-3352226İzleyin
Privilege escalation in Calico CNI install binary
OrtaCVSS 6,7İstismar yokEPSS %0tigera · calico29 Nis 2024
- CVE-2026-4118624İzleyin
Unauthenticated Go pprof exposure in Calico debug server
OrtaCVSS 6,0İstismar yokEPSS %1tigera · calico30 Tem 2026
- CVE-2026-4118424İzleyin
ServiceAccount token disclosure via install-cni container logs
OrtaCVSS 6,0İstismar yokEPSS %1tigera · calico28 May 2026
- CVE-2026-4118724İzleyin
Calico Tier Authorization Bypass via DeleteCollection
OrtaCVSS 6,2İstismar yokEPSS %0tigera · calico30 Tem 2026
- CVE-2026-4118524İzleyin
ServiceAccount token disclosure via Azure IPAM CNI plugin logs
OrtaCVSS 6,0İstismar yokEPSS %0tigera · calico28 May 2026
- CVE-2022-2822422İzleyin
Calico and Calico Enterprise may be vulnerable to route hijacking with the floating IP feature
OrtaCVSS 5,5İstismar yokEPSS %1tigera · calico6 Haz 2022