Vulnerabilities > Envoyproxy

DATE CVE VULNERABILITY TITLE RISK
2022-02-22 CVE-2022-21657 Improper Certificate Validation vulnerability in Envoyproxy Envoy
Envoy is an open source edge and service proxy, designed for cloud-native applications.
network
low complexity
envoyproxy CWE-295
6.5
2022-02-22 CVE-2022-23606 Uncontrolled Recursion vulnerability in Envoyproxy Envoy 1.20.0/1.20.1/1.21.0
Envoy is an open source edge and service proxy, designed for cloud-native applications.
network
low complexity
envoyproxy CWE-674
6.5
2021-09-09 CVE-2021-39206 Incorrect Authorization vulnerability in multiple products
Pomerium is an open source identity-aware access proxy.
network
low complexity
envoyproxy pomerium CWE-863
8.6
2021-09-09 CVE-2021-39162 Improper Check for Unusual or Exceptional Conditions vulnerability in multiple products
Pomerium is an open source identity-aware access proxy.
network
low complexity
envoyproxy pomerium CWE-754
8.6
2021-09-09 CVE-2021-39204 Excessive Iteration vulnerability in multiple products
Pomerium is an open source identity-aware access proxy.
network
low complexity
envoyproxy pomerium CWE-834
7.5
2021-08-24 CVE-2021-32777 Incorrect Authorization vulnerability in Envoyproxy Envoy
Envoy is an open source L7 proxy and communication bus designed for large modern service oriented architectures.
network
low complexity
envoyproxy CWE-863
8.3
2021-08-24 CVE-2021-32778 Excessive Iteration vulnerability in Envoyproxy Envoy
Envoy is an open source L7 proxy and communication bus designed for large modern service oriented architectures.
network
low complexity
envoyproxy CWE-834
7.5
2021-08-24 CVE-2021-32779 Incorrect Comparison vulnerability in Envoyproxy Envoy
Envoy is an open source L7 proxy and communication bus designed for large modern service oriented architectures.
network
low complexity
envoyproxy CWE-697
8.3
2021-08-24 CVE-2021-32780 Improper Check for Unusual or Exceptional Conditions vulnerability in Envoyproxy Envoy
Envoy is an open source L7 proxy and communication bus designed for large modern service oriented architectures.
network
low complexity
envoyproxy CWE-754
7.5
2021-08-24 CVE-2021-32781 Classic Buffer Overflow vulnerability in Envoyproxy Envoy
Envoy is an open source L7 proxy and communication bus designed for large modern service oriented architectures.
network
low complexity
envoyproxy CWE-120
7.5