Vulnerabilities > Linuxfoundation > Harbor > 2.0.1

DATE CVE VULNERABILITY TITLE RISK
2023-01-13 CVE-2022-46463 Missing Authentication for Critical Function vulnerability in Linuxfoundation Harbor
An access control issue in Harbor v1.X.X to v2.5.3 allows attackers to access public and private image repositories without authentication.
network
low complexity
linuxfoundation CWE-306
7.5
2021-02-02 CVE-2020-29662 Cleartext Transmission of Sensitive Information vulnerability in Linuxfoundation Harbor
In Harbor 2.0 before 2.0.5 and 2.1.x before 2.1.2 the catalog’s registry API is exposed on an unauthenticated path.
network
low complexity
linuxfoundation CWE-319
5.0
2020-09-30 CVE-2020-13794 Information Exposure vulnerability in Linuxfoundation Harbor
Harbor 1.9.* 1.10.* and 2.0.* allows Exposure of Sensitive Information to an Unauthorized Actor.
network
low complexity
linuxfoundation CWE-200
4.0