openpolicyagent kayıtları
openpolicyagent üreticisine ait 6 yayımlanmış kayıt.
Araştırmacı profili
- KEV’e giren
- 0 · %0
- Silahlaştırılmış
- 0 · %0
- Pre-auth RCE
- 0
- Düzeltme kaydı olan
- %83,3
- Yayından KEV’e ortanca
- KEV’e giren kayıt yok
Tekrar eden sınıflar
- CWE-20 Improper Input Validation1
- CWE-294 Authentication Bypass by Capture-replay1
- CWE-670 Always-Incorrect Control Flow Implementation1
- CWE-682 Incorrect Calculation1
Bu üreticide en sık görülen zafiyet sınıfları: nereye bakmalı.
CWETüm kayıtlar
6 kayıt| Aksiyon | CVE | Zafiyet | Ciddiyet | KEV | EPSS | Yayın |
|---|---|---|---|---|---|---|
39İzleyin | CVE-2022-36085İstismar yok | OPA Compiler: Bypass of WithUnsafeBuiltins using `with` keyword to mock functionsopenpolicyagent · open policy agent · CWE-20 | Kritik9,8 | — | %1,6 | 8 Eyl 2022 |
31İzleyin | CVE-2022-33082Kavram kanıtı | An issue in the AST parser (ast/compile.go) of Open Policy Agent v0.10.2 allows attackers to cause a Denial of Service (DoS) via a crafted iopenpolicyagent · open policy agent | Yüksek7,5 | — | %1,7 | 30 Haz 2022 |
30İzleyin | CVE-2022-28946İstismar yok | An issue in the component ast/parser.go of Open Policy Agent v0.39.0 causes the application to incorrectly interpret every expression, causiopenpolicyagent · open policy agent | Yüksek7,5 | — | %1,0 | 19 May 2022 |
29İzleyin | CVE-2024-8260İstismar yok | OPA SMB Force-Authenticationopenpolicyagent · open policy agent · CWE-294 | Yüksek7,3 | — | %0,3 | 30 Ağu 2024 |
21İzleyin | CVE-2021-43979İstismar yok | Styra Open Policy Agent (OPA) Gatekeeper through 3.7.0 mishandles concurrency, sometimes resulting in incorrect access control.openpolicyagent · gatekeeper · CWE-670 | Orta5,3 | — | %1,1 | 17 Kas 2021 |
21İzleyin | CVE-2022-23628İstismar yok | Array literal misordering in github.com/open-policy-agent/opaopenpolicyagent · open policy agent · CWE-682 | Orta5,3 | — | %1,0 | 9 Şub 2022 |
- CVE-2022-3608539İzleyin
OPA Compiler: Bypass of WithUnsafeBuiltins using `with` keyword to mock functions
KritikCVSS 9,8İstismar yokEPSS %2openpolicyagent · open policy agent8 Eyl 2022
- CVE-2022-3308231İzleyin
An issue in the AST parser (ast/compile.go) of Open Policy Agent v0.10.2 allows attackers to cause a Denial of Service (DoS) via a crafted i
YüksekCVSS 7,5Kavram kanıtıEPSS %2openpolicyagent · open policy agent30 Haz 2022
- CVE-2022-2894630İzleyin
An issue in the component ast/parser.go of Open Policy Agent v0.39.0 causes the application to incorrectly interpret every expression, causi
YüksekCVSS 7,5İstismar yokEPSS %1openpolicyagent · open policy agent19 May 2022
- CVE-2024-826029İzleyin
OPA SMB Force-Authentication
YüksekCVSS 7,3İstismar yokEPSS %0openpolicyagent · open policy agent30 Ağu 2024
- CVE-2021-4397921İzleyin
Styra Open Policy Agent (OPA) Gatekeeper through 3.7.0 mishandles concurrency, sometimes resulting in incorrect access control.
OrtaCVSS 5,3İstismar yokEPSS %1openpolicyagent · gatekeeper17 Kas 2021
- CVE-2022-2362821İzleyin
Array literal misordering in github.com/open-policy-agent/opa
OrtaCVSS 5,3İstismar yokEPSS %1openpolicyagent · open policy agent9 Şub 2022