Vulnerabilities > Cloudfoundry > CF Deployment > 27.4.0

DATE CVE VULNERABILITY TITLE RISK
2023-09-08 CVE-2023-34041 Unspecified vulnerability in Cloudfoundry Routing-Release
Cloud foundry routing release versions prior to 0.278.0 are vulnerable to abuse of HTTP Hop-by-Hop Headers.
network
low complexity
cloudfoundry
5.3
2023-05-26 CVE-2023-20882 Unspecified vulnerability in Cloudfoundry Cf-Deployment and Routing Release
In Cloud foundry routing release versions from 0.262.0 and prior to 0.266.0,a bug in the gorouter process can lead to a denial of service of applications hosted on Cloud Foundry.
network
high complexity
cloudfoundry
5.9
2023-05-19 CVE-2023-20881 Improper Certificate Validation vulnerability in Cloudfoundry Capi-Release, Cf-Deployment and Loggregator-Agent
Cloud foundry instances having CAPI version between 1.140 and 1.152.0 along with loggregator-agent v7+ may override other users syslog drain credentials if they're aware of the client certificate used for that syslog drain.
network
low complexity
cloudfoundry CWE-295
8.1