Vulnerabilities > Traefik > Traefik > 1.6.5

DATE CVE VULNERABILITY TITLE RISK
2020-07-30 CVE-2020-15129 Open Redirect vulnerability in Traefik 1.0
In Traefik before versions 1.7.26, 2.2.8, and 2.3.0-rc3, there exists a potential open redirect vulnerability in Traefik's handling of the "X-Forwarded-Prefix" header.
network
high complexity
traefik CWE-601
4.0
2018-08-21 CVE-2018-15598 Improper Authentication vulnerability in Traefik
Containous Traefik 1.6.x before 1.6.6, when --api is used, exposes the configuration and secret if authentication is missing and the API's port is publicly reachable.
network
low complexity
traefik CWE-287
5.0