88 vulnerabilidades · DevOps Orden: CVSS EPSS Año ID
CVE-2024-6222
Docker Desktop DevOps Web Windows
7.3
HIGH
EPSS
2.3%
2024 CWE-923 3 PoCs

In Docker Desktop before v4.29.0, an attacker who has gained access to the Docker Desktop VM through a container breakout can further escape to the host by passing extensions and dashboard related IPC messages. Docker Desktop v4.29.0 https://docs.docker.com/desktop/release-notes/#4290 fixes the issue on MacOS, Linux and Windows with Hyper-V backend. As exploitation requires "Allow only extensions distributed through the Docker Marketplace" to be disabled, Docker Desktop  v4.31.0 https://docs.docker.com/desktop/release-notes/#4310  additionally changes the default configuration to enable th

CVE-2024-40783
macOS DevOps
7.1
HIGH
EPSS
0.0%
2024 2 PoCs

The issue was addressed with improved restriction of data container access. This issue is fixed in macOS Monterey 12.7.6, macOS Sonoma 14.6, macOS Ventura 13.6.8. A malicious application may be able to bypass Privacy preferences.

CVE-2024-9145
Wiz Code Visual Studio Code extension DevOps
7.1
HIGH
EPSS
0.4%
2024 CWE-77 1 PoC

Wiz Code Visual Studio Code extension in versions 1.0.0 up to 1.5.3 and Wiz (legacy) Visual Studio Code extension in versions 0.13.0 up to 0.17.8 are vulnerable to local command injection if the user opens a maliciously crafted Dockerfile located in a path that has been marked as a "trusted folder" within Visual Studio Code, and initiates a manual scan of the file.

CVE-2024-2177
GitLab DevOps
6.8
MEDIUM
EPSS
0.1%
2024 CWE-1021 1 PoC

A Cross Window Forgery vulnerability exists within GitLab CE/EE affecting all versions from 16.3 prior to 16.11.5, 17.0 prior to 17.0.3, and 17.1 prior to 17.1.1. This condition allows for an attacker to abuse the OAuth authentication flow via a crafted payload.

CVE-2024-5430
GitLab DevOps
6.8
MEDIUM
EPSS
0.0%
2024 CWE-284 1 PoC

An issue was discovered in GitLab CE/EE affecting all versions starting from 16.10 prior to 16.11.5, starting from 17.0 prior to 17.0.3, and starting from 17.1 prior to 17.1.1, which allows a project maintainer can delete the merge request approval policy via graphQL.

CVE-2024-7404
GitLab DevOps Web
6.8
MEDIUM
EPSS
0.4%
2024 CWE-1021 1 PoC

An issue was discovered in GitLab CE/EE affecting all versions starting from 17.2 prior to 17.3.7, starting from 17.4 prior to 17.4.4 and starting from 17.5 prior to 17.5.2, which could have allowed an attacker gaining full API access as the victim via the Device OAuth flow.

CVE-2024-41958
mailcow-dockerized DevOps
6.6
MEDIUM
EPSS
30.3%
2024 CWE-697 1 PoC

mailcow: dockerized is an open source groupware/email suite based on docker. A vulnerability has been discovered in the two-factor authentication (2FA) mechanism. This flaw allows an authenticated attacker to bypass the 2FA protection, enabling unauthorized access to other accounts that are otherwise secured with 2FA. To exploit this vulnerability, the attacker must first have access to an account within the system and possess the credentials of the target account that has 2FA enabled. By leveraging these credentials, the attacker can circumvent the 2FA process and gain access to the protected

CVE-2024-10219
GitLab DevOps Web
6.5
MEDIUM
EPSS
0.0%
2024 CWE-863 1 PoC

An issue has been discovered in GitLab CE/EE affecting all versions from 15.6 before 18.0.6, 18.1 before 18.1.4, and 18.2 before 18.2.2 that under certain conditions could have allowed authenticated users to bypass access controls and download private artifacts by accessing specific API endpoints.

CVE-2024-55963
Software Genérico DevOps Web
6.5
MEDIUM
EPSS
37.2%
2024 1 PoC

An issue was discovered in Appsmith before 1.51. A user on Appsmith that doesn't have admin permissions can trigger the restart API on Appsmith, causing a server restart. This is still within the Appsmith container, and the impact is limited to Appsmith's own server only, but there is a denial of service because it can be continually restarted. This is due to incorrect access control checks, which should check for super user permissions on the incoming request.

CVE-2024-12379
GitLab DevOps
6.5
MEDIUM
EPSS
0.1%
2024 CWE-770 1 PoC

A denial of service vulnerability in GitLab CE/EE affecting all versions from 14.1 prior to 17.6.5, 17.7 prior to 17.7.4, and 17.8 prior to 17.8.2 allows an attacker to impact the availability of GitLab via unbounded symbol creation via the scopes parameter in a Personal Access Token.

CVE-2024-42364
homepage DevOps Web
6.5
MEDIUM
EPSS
0.1%
2024 CWE-350 1 PoC

Homepage is a highly customizable homepage with Docker and service API integrations. The default setup of homepage 0.9.1 is vulnerable to DNS rebinding. Homepage is setup without certificate and authentication by default, leaving it to vulnerable to DNS rebinding. In this attack, an attacker will ask a user to visit his/her website. The attacker website will then change the DNS records of their domain from their IP address to the internal IP address of the homepage instance. To tell which IP addresses are valid, we can rebind a subdomain to each IP address we want to check, and see if there is

CVE-2024-41454
Software Genérico DevOps Web
6.5
MEDIUM
EPSS
0.6%
2024 2 PoCs

An arbitrary file upload vulnerability in the UI login page logo upload function of Process Maker pm4core-docker 4.1.21-RC7 allows attackers to execute arbitrary code via uploading a crafted PHP or HTML file.

CVE-2024-4210
GitLab DevOps
6.5
MEDIUM
EPSS
0.1%
2024 CWE-400 1 PoC

A Denial of Service (DoS) condition has been discovered in GitLab CE/EE affecting all versions starting with 12.6 before 17.0.6, 17.1 prior to 17.1.4, and 17.2 prior to 17.2.2. It is possible for an attacker to cause a denial of service using crafted adoc files.

CVE-2024-3959
GitLab DevOps
6.5
MEDIUM
EPSS
0.0%
2024 CWE-285 1 PoC

An issue was discovered in GitLab CE/EE affecting all versions starting from 16.7 prior to 16.11.5, starting from 17.0 prior to 17.0.3, and starting from 17.1 prior to 17.1.1, which allows private job artifacts can be accessed by any user.

CVE-2024-1963
GitLab DevOps
6.5
MEDIUM
EPSS
0.2%
2024 CWE-1333 1 PoC

An issue has been discovered in GitLab CE/EE affecting all versions starting from 8.4 prior to 16.10.7, starting from 16.11 prior to 16.11.4, and starting from 17.0 prior to 17.0.2. A vulnerability in GitLab's Asana integration allowed an attacker to potentially cause a regular expression denial of service by sending specially crafted requests.

CVE-2024-9387
GitLab DevOps Web
6.4
MEDIUM
EPSS
0.1%
2024 CWE-601 1 PoC

An issue was discovered in GitLab CE/EE affecting all versions from 11.8 before 17.4.6, 17.5 before 17.5.4, and 17.6 before 17.6.2. An attacker could potentially perform an open redirect against a given releases API endpoint.

CVE-2024-25027
Security Verify Access Docker DevOps
6.2
MEDIUM
EPSS
0.0%
2024 CWE-311 1 PoC

IBM Security Verify Access 10.0.6 could disclose sensitive snapshot information due to missing encryption. IBM X-Force ID: 281607.

CVE-2024-35139
Security Verify Access Docker DevOps
6.2
MEDIUM
EPSS
0.0%
2024 CWE-276 2 PoCs

IBM Security Access Manager Docker 10.0.0.0 through 10.0.7.1 could allow a local user to obtain sensitive information from the container due to incorrect default permissions. IBM X-Force ID: 292415.

CVE-2024-35137
Security Verify Access Docker DevOps
6.2
MEDIUM
EPSS
0.0%
2024 CWE-258 2 PoCs

IBM Security Access Manager Docker 10.0.0.0 through 10.0.7.1 could allow a local user to possibly elevate their privileges due to sensitive configuration information being exposed. IBM X-Force ID: 292413.

CVE-2024-30270
mailcow-dockerized DevOps
6.2
MEDIUM
EPSS
48.8%
2024 CWE-22 2 PoCs

mailcow: dockerized is an open source groupware/email suite based on docker. A security vulnerability has been identified in mailcow affecting versions prior to 2024-04. This vulnerability is a combination of path traversal and arbitrary code execution, specifically targeting the `rspamd_maps()` function. It allows authenticated admin users to overwrite any file writable by the www-data user by exploiting improper path validation. The exploit chain can lead to the execution of arbitrary commands on the server. Version 2024-04 contains a patch for the issue.