Vulnerabilities > Palantir > Critical

DATE CVE VULNERABILITY TITLE RISK
2023-06-26 CVE-2023-30945 Path Traversal vulnerability in Palantir products
Multiple Services such as VHS(Video History Server) and VCD(Video Clip Distributor) and Clips2 were discovered to be vulnerable to an unauthenticated arbitrary file read/write vulnerability due to missing input validation on filenames.
network
low complexity
palantir CWE-22
critical
9.8
2022-06-14 CVE-2022-27889 Improper Control of Dynamically-Managed Code Resources vulnerability in Palantir Foundry Multipass
The Multipass service was found to have code paths that could be abused to cause a denial of service for authentication or authorization operations.
network
low complexity
palantir CWE-913
critical
9.1