Résumé
Traefik: Kubernetes Gateway crossProviderNamespaces bypass allows HTTPRoute outside the allowlist to expose internal Traefik services
Références
Vulnérabilités liées
Tout Supply chain →- HIGHGHSA-5CJ2-3JR2-5H77
OpenClaw: Shell positional parameters could weaken strict inline-eval checks
- HIGHGHSA-9R5X-WG6M-X2RC
Gitea: OAuth2 access token scope enforcement bypass via HTTP Basic authentication
- MEDIUMGHSA-4HPG-MP64-X7XQ
OpenClaw: Internal/webchat command auth could inherit ownerAllowFrom wildcard state
- HIGHGHSA-V2WW-5RH7-2H5V
OpenClaw: Linux and macOS exec allowlists skipped configured argument patterns
- LOWGHSA-8J37-5W68-WJ2G
OpenClaw: BlueBubbles sender policy could match mutable conversation identifiers
- MEDIUMGHSA-W5CV-PW74-4RXC
opentelemetry-collector-contrib: githubreceiver silently ignores configured required_headers authentication