Vulnerabilities > Couchbase

DATE CVE VULNERABILITY TITLE RISK
2023-04-14 CVE-2023-2033 Type Confusion vulnerability in multiple products
Type confusion in V8 in Google Chrome prior to 112.0.5615.121 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page.
network
low complexity
google debian fedoraproject couchbase CWE-843
8.8
2023-03-23 CVE-2023-28470 Missing Authentication for Critical Function vulnerability in Couchbase Server
In Couchbase Server 5 through 7 before 7.1.4, the nsstats endpoint is accessible without authentication.
network
low complexity
couchbase CWE-306
5.3
2023-02-06 CVE-2022-42950 Unspecified vulnerability in Couchbase Server
An issue was discovered in Couchbase Server 7.x before 7.0.5 and 7.1.x before 7.1.2.
network
low complexity
couchbase
4.9
2023-02-06 CVE-2022-42951 Race Condition vulnerability in Couchbase Server
An issue was discovered in Couchbase Server 6.5.x and 6.6.x before 6.6.6, 7.x before 7.0.5, and 7.1.x before 7.1.2.
network
high complexity
couchbase CWE-362
8.1
2023-02-06 CVE-2023-25016 Cleartext Transmission of Sensitive Information vulnerability in Couchbase Server
Couchbase Server before 6.6.6, 7.x before 7.0.5, and 7.1.x before 7.1.2 exposes Sensitive Information to an Unauthorized Actor.
network
low complexity
couchbase CWE-319
7.5
2022-07-21 CVE-2022-32556 Information Exposure Through Log Files vulnerability in Couchbase Server
An issue was discovered in Couchbase Server before 7.0.4.
network
low complexity
couchbase CWE-532
7.5
2022-07-15 CVE-2022-34826 Information Exposure Through Log Files vulnerability in Couchbase Server 7.1.0
In Couchbase Server 7.1.x before 7.1.1, an encrypted Private Key passphrase may be leaked in the logs.
network
high complexity
couchbase CWE-532
5.9
2022-07-12 CVE-2022-33173 Unspecified vulnerability in Couchbase Server
An algorithm-downgrade issue was discovered in Couchbase Server before 7.0.4.
network
low complexity
couchbase
7.5
2022-07-12 CVE-2022-33911 Information Exposure Through Log Files vulnerability in Couchbase Server
An issue was discovered in Couchbase Server 7.x before 7.0.4.
network
low complexity
couchbase CWE-532
5.3
2022-06-14 CVE-2022-32557 Missing Authentication for Critical Function vulnerability in Couchbase Server
An issue was discovered in Couchbase Server before 7.0.4.
network
low complexity
couchbase CWE-306
7.5