Skip to content
Noroxi

chef records

6 published records for vendor chef.

Researcher profile

Entered KEV
0 · 0%
Weaponized
0 · 0%
Pre-auth RCE
1
With a fix record
50%
Median publish → KEV
No record has entered KEV

All records

6 records
  • Chef Automate compliance service SQL Injection Vulnerability

    HighCVSS 8.8Proof of conceptEPSS 24%

    chef · automateSep 29, 2025

  • The Chef Manage (formerly opscode-manage) add-on before 1.12.0 for Chef allows remote attackers to execute arbitrary code via crafted serial

    CriticalCVSS 9.8No exploitEPSS 4%

    chef · chef manageJun 9, 2016

  • Automate Vulnerable to Malicious Content Uploaded Through Embedded Compliance Application

    HighCVSS 8.8No exploitEPSS 1%

    chef · automateOct 31, 2023

  • CVE-2025-6724
    35Monitor

    Chef Automate SQL Injection Vulnerability

    HighCVSS 8.8No exploitEPSS 0%

    chef · automateSep 29, 2025

  • CVE-2015-8559
    31Monitor

    The knife bootstrap command in chef Infra client before version 15.4.45 leaks the validator.pem private RSA key to /var/log/messages.

    HighCVSS 7.5No exploitEPSS 2%

    chef · chefSep 21, 2017

  • InSpec Archive Command Vulnerable to Maliciously Crafted Profile

    HighCVSS 7.8No exploitEPSS 0%

    chef · inspecOct 31, 2023