Vulnerabilities > Envoyproxy > Critical

DATE CVE VULNERABILITY TITLE RISK
2023-07-25 CVE-2023-35941 Improper Encoding or Escaping of Output vulnerability in Envoyproxy Envoy
Envoy is an open source edge and service proxy designed for cloud-native applications.
network
low complexity
envoyproxy CWE-116
critical
9.8
2023-04-04 CVE-2023-27488 Unspecified vulnerability in Envoyproxy Envoy
Envoy is an open source edge and service proxy designed for cloud-native applications.
network
low complexity
envoyproxy
critical
9.8
2019-12-13 CVE-2019-18802 Unspecified vulnerability in Envoyproxy Envoy
An issue was discovered in Envoy 1.12.0.
network
low complexity
envoyproxy
critical
9.8
2019-12-13 CVE-2019-18801 Out-of-bounds Write vulnerability in Envoyproxy Envoy
An issue was discovered in Envoy 1.12.0.
network
low complexity
envoyproxy CWE-787
critical
9.8
2019-04-25 CVE-2019-9901 Use of Incorrectly-Resolved Name or Reference vulnerability in Envoyproxy Envoy
Envoy 1.9.0 and before does not normalize HTTP URL paths.
network
low complexity
envoyproxy CWE-706
critical
10.0