Vulnerabilities > Envoyproxy > Envoy > 1.16.0

DATE CVE VULNERABILITY TITLE RISK
2021-08-24 CVE-2021-32778 Excessive Iteration vulnerability in Envoyproxy Envoy
Envoy is an open source L7 proxy and communication bus designed for large modern service oriented architectures.
network
low complexity
envoyproxy CWE-834
5.0
2021-08-24 CVE-2021-32779 Incorrect Comparison vulnerability in Envoyproxy Envoy
Envoy is an open source L7 proxy and communication bus designed for large modern service oriented architectures.
network
low complexity
envoyproxy CWE-697
8.3
2021-08-24 CVE-2021-32781 Classic Buffer Overflow vulnerability in Envoyproxy Envoy
Envoy is an open source L7 proxy and communication bus designed for large modern service oriented architectures.
network
low complexity
envoyproxy CWE-120
5.0
2021-05-28 CVE-2021-29492 Path Traversal vulnerability in Envoyproxy Envoy
Envoy is a cloud-native edge/middle/service proxy.
network
low complexity
envoyproxy CWE-22
7.5
2020-12-15 CVE-2020-35471 Unspecified vulnerability in Envoyproxy Envoy
Envoy before 1.16.1 mishandles dropped and truncated datagrams, as demonstrated by a segmentation fault for a UDP packet size larger than 1500.
network
low complexity
envoyproxy
5.0
2020-12-15 CVE-2020-35470 Unspecified vulnerability in Envoyproxy Envoy
Envoy before 1.16.1 logs an incorrect downstream address because it considers only the directly connected peer, not the information in the proxy protocol header.
low complexity
envoyproxy
5.8