Vulnerabilities > Sonarsource > Sonarqube Docker Image > 7.0

DATE CVE VULNERABILITY TITLE RISK
2020-12-16 CVE-2020-35193 Missing Authentication for Critical Function vulnerability in Sonarsource Sonarqube Docker Image
The official sonarqube docker images before alpine (Alpine specific) contain a blank password for a root user.
network
low complexity
sonarsource CWE-306
critical
10.0