Vulnerabilities > Weave > Cloud Agent

DATE CVE VULNERABILITY TITLE RISK
2020-12-15 CVE-2020-35464 Missing Authentication for Critical Function vulnerability in Weave Cloud Agent 1.3.0
Version 1.3.0 of the Weave Cloud Agent Docker image contains a blank password for the root user.
network
low complexity
weave CWE-306
critical
9.8