Vulnerabilities > CVE-2022-34296 - Unspecified vulnerability in Zalando Skipper

047910
CVSS 7.5 - HIGH
Attack vector
NETWORK
Attack complexity
LOW
Privileges required
NONE
Confidentiality impact
NONE
Integrity impact
HIGH
Availability impact
NONE
network
low complexity
zalando

Summary

In Zalando Skipper before 0.13.218, a query predicate could be bypassed via a prepared request.

Vulnerable Configurations

Part Description Count
Application
Zalando
949