Vulnerabilities > CVE-2020-13794 - Missing Authorization vulnerability in Linuxfoundation Harbor
Attack vector
NETWORK Attack complexity
LOW Privileges required
LOW Confidentiality impact
LOW Integrity impact
NONE Availability impact
NONE Summary
Harbor 1.9.* 1.10.* and 2.0.* allows Exposure of Sensitive Information to an Unauthorized Actor.
Vulnerable Configurations
Common Weakness Enumeration (CWE)
References
- https://github.com/goharbor/harbor/releases
- https://github.com/goharbor/harbor/security/advisories/GHSA-q9p8-33wc-h432
- https://www.cybereagle.io/blog/cve-2020-13794/
- https://github.com/goharbor/harbor/releases
- https://www.cybereagle.io/blog/cve-2020-13794/
- https://github.com/goharbor/harbor/security/advisories/GHSA-q9p8-33wc-h432