Vulnerabilities > Weave > Critical

DATE CVE VULNERABILITY TITLE RISK
2022-08-18 CVE-2022-35976 Unspecified vulnerability in Weave Gitops Tools
The GitOps Tools Extension for VSCode relies on kubeconfigs in order to communicate with Kubernetes clusters.
network
low complexity
weave
critical
9.8
2022-08-18 CVE-2022-35975 Unspecified vulnerability in Weave Gitops Tools
The GitOps Tools Extension for VSCode can make it easier to manage Flux objects.
network
low complexity
weave
critical
9.8
2020-12-15 CVE-2020-35464 Missing Authentication for Critical Function vulnerability in Weave Cloud Agent 1.3.0
Version 1.3.0 of the Weave Cloud Agent Docker image contains a blank password for the root user.
network
low complexity
weave CWE-306
critical
9.8