Vulnerabilities > Netflix > Critical

DATE CVE VULNERABILITY TITLE RISK
2022-04-01 CVE-2022-27177 Use of Externally-Controlled Format String vulnerability in Netflix Consoleme
A Python format string issue leading to information disclosure and potentially remote code execution in ConsoleMe for all versions prior to 1.2.2
network
low complexity
netflix CWE-134
critical
9.8
2020-07-14 CVE-2020-9297 Expression Language Injection vulnerability in Netflix Titus
Netflix Titus, all versions prior to version v0.1.1-rc.274, uses Java Bean Validation (JSR 380) custom constraint validators.
network
low complexity
netflix CWE-917
critical
9.8
2020-06-16 CVE-2020-9296 Expression Language Injection vulnerability in Netflix Conductor
Netflix Titus uses Java Bean Validation (JSR 380) custom constraint validators.
network
low complexity
netflix CWE-917
critical
9.8