Vulnerabilities > Cloudfoundry > Diego > 2.56.0

DATE CVE VULNERABILITY TITLE RISK
2023-02-03 CVE-2022-31733 Improper Certificate Validation vulnerability in Cloudfoundry Cf-Deployment and Diego
Starting with diego-release 2.55.0 and up to 2.69.0, and starting with CF Deployment 17.1 and up to 23.2.0, apps are accessible via another port on diego cells, allowing application ingress without a client certificate.
network
low complexity
cloudfoundry CWE-295
critical
9.1