Vulnerabilities > Istio > Istio > 1.3.6

DATE CVE VULNERABILITY TITLE RISK
2020-04-15 CVE-2020-11767 Information Exposure vulnerability in multiple products
Istio through 1.5.1 and Envoy through 1.14.1 have a data-leak issue.
network
high complexity
envoyproxy istio CWE-200
2.6
2020-02-14 CVE-2020-8843 Improper Input Validation vulnerability in Istio
An issue was discovered in Istio 1.3 through 1.3.6.
network
istio CWE-20
5.8
2020-02-12 CVE-2020-8595 Improper Authentication vulnerability in multiple products
Istio versions 1.2.10 (End of Life) and prior, 1.3 through 1.3.7, and 1.4 through 1.4.3 allows authentication bypass.
network
low complexity
istio redhat CWE-287
7.5