ZeroHour

CVE-2024-36535

CVSS 3.1
9.8 critical
EPSS
<1%p40
Published
()
Modified
Description

Insecure permissions in meshery v0.7.51 allows attackers to access sensitive data and escalate privileges by obtaining the service account's token.

Vendors
layer5
Products
meshery
Weakness
CWE-284
Vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H

In the news

No ingested article mentions this CVE yet.