Vulnerabilities > Linuxfoundation > Harbor > 1.10.5

DATE CVE VULNERABILITY TITLE RISK
2023-11-09 CVE-2023-20902 Race Condition vulnerability in Linuxfoundation Harbor
A timing condition in Harbor 2.6.x and below, Harbor 2.7.2 and below,  Harbor 2.8.2 and below, and Harbor 1.10.17 and below allows an attacker with network access to create jobs/stop job tasks and retrieve job task information.
network
high complexity
linuxfoundation CWE-362
6.5
2023-01-13 CVE-2022-46463 Missing Authentication for Critical Function vulnerability in Linuxfoundation Harbor
An access control issue in Harbor v1.X.X to v2.5.3 allows attackers to access public and private image repositories without authentication.
network
low complexity
linuxfoundation CWE-306
7.5
2020-09-30 CVE-2020-13794 Information Exposure vulnerability in Linuxfoundation Harbor
Harbor 1.9.* 1.10.* and 2.0.* allows Exposure of Sensitive Information to an Unauthorized Actor.
network
low complexity
linuxfoundation CWE-200
4.0