Skip to content
Noroxi

Cloud Foundry records

9 published records for vendor cloud foundry.

All records

9 records
  • CF networking internal policy server SQL injection

    HighCVSS 8.8No exploitEPSS 1%

    cloud foundry · cf-networkingOct 12, 2018

  • CVE-2017-4961
    35Monitor

    An issue was discovered in Cloud Foundry Foundation BOSH Release 261.x versions prior to 261.3 and all 260.x versions.

    HighCVSS 8.8No exploitEPSS 0%

    cloud foundry · boshJun 13, 2017

  • Bosh accepts refresh tokens in place of an access token

    HighCVSS 8.1No exploitEPSS 1%

    cloud foundry · boshOct 5, 2018

  • Bosh Deployment logs leak sensitive information

    HighCVSS 7.8No exploitEPSS 0%

    cloud foundry · boshJun 18, 2019

  • CVE-2016-3091
    30Monitor

    Cloud Foundry Diego 0.1468.0 through 0.1470.0 allows remote attackers to cause a denial of service.

    HighCVSS 7.5No exploitEPSS 1%

    cloud foundry · diegoJun 8, 2017

  • Timing attack allows extraction of signing key in Bits Service

    MediumCVSS 6.8No exploitEPSS 1%

    cloud foundry · bits serviceDec 10, 2018

  • Compromised VM can make arbitrary blobstore deletes

    MediumCVSS 6.8No exploitEPSS 0%

    cloud foundry · boshMay 27, 2026

  • CVE-2020-5422
    26Monitor

    UAA password may appear in BOSH System Metrics Server process arguments

    MediumCVSS 6.5No exploitEPSS 1%

    cloud foundry · bosh system metrics serverOct 2, 2020

  • Local Blobstore may allow arbitrary reads/deletes

    MediumCVSS 4.3No exploitEPSS 0%

    cloud foundry · boshMay 27, 2026