Vulnerabilities > Cloudfoundry > Container Runtime

DATE CVE VULNERABILITY TITLE RISK
2019-03-08 CVE-2019-3780 Insufficiently Protected Credentials vulnerability in Cloudfoundry Container Runtime
Cloud Foundry Container Runtime, versions prior to 0.28.0, deploys K8s worker nodes that contains a configuration file with IAAS credentials.
network
low complexity
cloudfoundry CWE-522
6.5
2019-03-08 CVE-2019-3779 Permissions, Privileges, and Access Controls vulnerability in Cloudfoundry Container Runtime
Cloud Foundry Container Runtime, versions prior to 0.29.0, deploys Kubernetes clusters utilize the same CA (Certificate Authority) to sign and trust certs for ETCD as used by the Kubernetes API.
network
low complexity
cloudfoundry CWE-264
4.0