Vulnerabilities > Envoyproxy

DATE CVE VULNERABILITY TITLE RISK
2023-07-25 CVE-2023-35944 HTTP Request Smuggling vulnerability in Envoyproxy Envoy
Envoy is an open source edge and service proxy designed for cloud-native applications.
network
low complexity
envoyproxy CWE-444
5.3
2023-07-25 CVE-2023-35941 Improper Encoding or Escaping of Output vulnerability in Envoyproxy Envoy
Envoy is an open source edge and service proxy designed for cloud-native applications.
network
low complexity
envoyproxy CWE-116
critical
9.8
2023-07-13 CVE-2023-35945 Incomplete Cleanup vulnerability in multiple products
Envoy is a cloud-native high-performance edge/middle/service proxy.
network
low complexity
envoyproxy nghttp2 CWE-459
7.5
2023-04-04 CVE-2023-27493 HTTP Request Smuggling vulnerability in Envoyproxy Envoy
Envoy is an open source edge and service proxy designed for cloud-native applications.
network
low complexity
envoyproxy CWE-444
critical
9.1
2023-04-04 CVE-2023-27496 Unspecified vulnerability in Envoyproxy Envoy
Envoy is an open source edge and service proxy designed for cloud-native applications.
network
low complexity
envoyproxy
7.5
2023-04-04 CVE-2023-27491 HTTP Request Smuggling vulnerability in Envoyproxy Envoy
Envoy is an open source edge and service proxy designed for cloud-native applications.
network
low complexity
envoyproxy CWE-444
critical
9.1
2023-04-04 CVE-2023-27492 Allocation of Resources Without Limits or Throttling vulnerability in Envoyproxy Envoy
Envoy is an open source edge and service proxy designed for cloud-native applications.
network
low complexity
envoyproxy CWE-770
6.5
2023-04-04 CVE-2023-27488 Unspecified vulnerability in Envoyproxy Envoy
Envoy is an open source edge and service proxy designed for cloud-native applications.
network
low complexity
envoyproxy
critical
9.8
2023-04-04 CVE-2023-27487 Unspecified vulnerability in Envoyproxy Envoy
Envoy is an open source edge and service proxy designed for cloud-native applications.
network
low complexity
envoyproxy
critical
9.1
2022-06-09 CVE-2022-29225 Improper Handling of Highly Compressed Data (Data Amplification) vulnerability in Envoyproxy Envoy
Envoy is a cloud-native high-performance proxy.
network
low complexity
envoyproxy CWE-409
7.5