Vulnerabilities > Kubeflow

DATE CVE VULNERABILITY TITLE RISK
2024-06-06 CVE-2024-5552 Unspecified vulnerability in Kubeflow 1.7.0
kubeflow/kubeflow is vulnerable to a Regular Expression Denial of Service (ReDoS) attack due to inefficient regular expression complexity in its email validation mechanism.
network
low complexity
kubeflow
7.5
2023-12-14 CVE-2023-6570 Unspecified vulnerability in Kubeflow 1.7.0
Server-Side Request Forgery (SSRF) in kubeflow/kubeflow
network
low complexity
kubeflow
6.5
2023-12-14 CVE-2023-6571 Unspecified vulnerability in Kubeflow 1.7.0
Cross-site Scripting (XSS) - Reflected in kubeflow/kubeflow
network
low complexity
kubeflow
6.1