aiven kayıtları
aiven üreticisine ait 8 yayımlanmış kayıt.
Araştırmacı profili
- KEV’e giren
- 0 · %0
- Silahlaştırılmış
- 0 · %0
- Pre-auth RCE
- 0
- Düzeltme kaydı olan
- %62,5
- Yayından KEV’e ortanca
- KEV’e giren kayıt yok
Tekrar eden sınıflar
- CWE-22 Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal')2
- CWE-215 Insertion of Sensitive Information Into Debugging Code1
- CWE-20 Improper Input Validation1
- CWE-285 Improper Authorization1
- CWE-402 Transmission of Private Resources into a New Sphere ('Resource Leak')1
- CWE-77 Improper Neutralization of Special Elements used in a Command ('Command Injection')1
Bu üreticide en sık görülen zafiyet sınıfları: nereye bakmalı.
CWETüm kayıtlar
8 kayıt| Aksiyon | CVE | Zafiyet | Ciddiyet | KEV | EPSS | Yayın |
|---|---|---|---|---|---|---|
35İzleyin | CVE-2023-32305İstismar yok | aiven-extras PostgreSQL Privilege Escalation Through Overloaded Search Pathaiven · aiven · CWE-20 | Yüksek8,8 | — | %0,7 | 12 May 2023 |
30İzleyin | CVE-2023-51390İstismar yok | Information Disclosure Vulnerability in Journalpumpaiven · journalpump · CWE-215 | Yüksek7,5 | — | %0,3 | 20 Ara 2023 |
30İzleyin | CVE-2025-67745İstismar yok | Myhoard logs backup encryption key in plain textaiven · myhoard · CWE-402 | Yüksek7,5 | — | %0,2 | 18 Ara 2025 |
28İzleyin | CVE-2025-55282İstismar yok | aiven-db-migrate allows Privilege Escalation via unrestricted search_path during migrationaiven · aiven-db-migrate · CWE-22 | Yüksek7,2 | — | %0,7 | 18 Ağu 2025 |
28İzleyin | CVE-2025-55283İstismar yok | aiven-db-migrate allows Privilege Escalation through use of psql during migrationaiven · aiven-db-migrate · CWE-77 | Yüksek7,2 | — | %0,6 | 18 Ağu 2025 |
21İzleyin | CVE-2026-29190İstismar yok | Karapace: Path Traversal in Backup Readeraiven · karapace · CWE-22 | Orta5,3 | — | %0,4 | 7 Mar 2026 |
19İzleyin | CVE-2026-39961İstismar yok | Aiven Operator has cross-namespace secret exfiltration via ClickhouseUser connInfoSecretSourceaiven · aiven operator · CWE-269 | Orta4,9 | — | %0,5 | 9 Nis 2026 |
17İzleyin | CVE-2026-25999İstismar yok | Klaw has an improper authorisation check on /resetMemoryCacheaiven · klaw · CWE-285 | Orta4,3 | — | %0,4 | 11 Şub 2026 |
- CVE-2023-3230535İzleyin
aiven-extras PostgreSQL Privilege Escalation Through Overloaded Search Path
YüksekCVSS 8,8İstismar yokEPSS %1aiven · aiven12 May 2023
- CVE-2023-5139030İzleyin
Information Disclosure Vulnerability in Journalpump
YüksekCVSS 7,5İstismar yokEPSS %0aiven · journalpump20 Ara 2023
- CVE-2025-6774530İzleyin
Myhoard logs backup encryption key in plain text
YüksekCVSS 7,5İstismar yokEPSS %0aiven · myhoard18 Ara 2025
- CVE-2025-5528228İzleyin
aiven-db-migrate allows Privilege Escalation via unrestricted search_path during migration
YüksekCVSS 7,2İstismar yokEPSS %1aiven · aiven-db-migrate18 Ağu 2025
- CVE-2025-5528328İzleyin
aiven-db-migrate allows Privilege Escalation through use of psql during migration
YüksekCVSS 7,2İstismar yokEPSS %1aiven · aiven-db-migrate18 Ağu 2025
- CVE-2026-2919021İzleyin
Karapace: Path Traversal in Backup Reader
OrtaCVSS 5,3İstismar yokEPSS %0aiven · karapace7 Mar 2026
- CVE-2026-3996119İzleyin
Aiven Operator has cross-namespace secret exfiltration via ClickhouseUser connInfoSecretSource
OrtaCVSS 4,9İstismar yokEPSS %0aiven · aiven operator9 Nis 2026
- CVE-2026-2599917İzleyin
Klaw has an improper authorisation check on /resetMemoryCache
OrtaCVSS 4,3İstismar yokEPSS %0aiven · klaw11 Şub 2026