krakend CVE Vulnerabilities & CVE List (1)

Products (CPE): — CVEs: 1

krakend vulnerability overview

This page aggregates publicly disclosed CVE and security risk information related to krakend, with CVSS, EPSS, publication dates, and vulnerability intelligence data to help assess potential risk and remediation priority.

Vulnerability distribution trend (last 24 months)

Showing 11 of 1 CVEs
«« First « Prev Page 1 / 1 Next »
CVE Summary Source Max CVSS EPSS % Published Updated
CVE-2022-1561 Lura and KrakenD-CE versions older than v2.0.2 and KrakenD-EE versions older than v2.0.0 do not sanitize URL parameters correctly, allowing a malicious user to alter the backend URL defined for a pipe when remote users send crafty URL requests. The vulnerability does not affect KrakenD itself, but the consumed backend might be vulnerable. [email protected] 4.0 0.18% 2022-08-01 2024-11-21
«« First « Prev Page 1 / 1 Next »
cvelogic Threat Intelligence