MicrocksCVEs & Vulnerabilities
2 CVEs affecting Microcks products, tracked from the National Vulnerability Database, with CVSS/EPSS scores and exploitation status.
2 CVEs→ All vendors
Most Affected Products
microcks 2
CVE-2024-44076CRITICAL
In Microcks before 1.10.0, the POST /api/import and POST /api/export endpoints allow non-administrator access.
19 Aug 2024
9.8
CVSS
CVE-2023-48910CRITICAL
Microcks up to 1.17.1 was discovered to contain a Server-Side Request Forgery (SSRF) via the component /jobs and /artifact/download. This vulnerability allows attackers to access network resources and sensitive information via a crafted GET request.
4 Dec 2023
9.8
CVSS
← PrevPage 1 / 1Next →