Known Vulnerabilities for Director by Bluecoat
Listed below are 1 of the newest known vulnerabilities associated with "Director" by "Bluecoat".
These CVEs are retrieved based on exact matches on listed software, hardware, and vendor information (CPE data) as well as a keyword search to ensure the newest vulnerabilities with no officially listed software information are still displayed.
Data on known vulnerable versions is also displayed based on information from known CPEs
Known Vulnerabilities
| CVE | Shortened Description | Severity | Publish Date | Last Modified |
|---|---|---|---|---|
| CVE-2026-47829 json | Argument Injection in bosh-cli allows a compromised BOSH Director to inject arbitrary OpenSSH options into the locally-spawne... | Not Provided | 2026-07-09 | 2026-07-09 |
| CVE-2026-47828 json | During bosh create-env and bosh delete-env, the CLI uploads compiled CPI packages and rendered job templates to the new VM's ... | Not Provided | 2026-07-09 | 2026-07-09 |
| CVE-2026-41860 json | CWE-326 in BOSH allows a local attacker to steal Basic-auth credentials or redirect UAA token requests via MITM. HttpRequestH... | Not Provided | 2026-06-04 | 2026-06-04 |
| CVE-2026-41859 json | A network man-in-the-middle between nats-sync and the BOSH director can steal the director credentials (Basic auth header or ... | Not Provided | 2026-06-04 | 2026-06-04 |
| CVE-2026-41857 json | A compromised or malicious BOSH Director can execute arbitrary shell commands on the operator's workstation when the operator... | Not Provided | 2026-07-09 | 2026-07-09 |
| CVE-2026-41704 json | AgentClient#handle_method (lines 264-303) processes every NATS reply. It calls inject_compile_log (line 273) on every respons... | Not Provided | 2026-05-27 | 2026-05-27 |
| CVE-2026-41010 json | ReleaseJob#unpack builds job_dir = File.join(@release_dir, 'jobs', name) and job_tgz = File.join(@release_dir, 'jobs', "#{nam... | Not Provided | 2026-06-04 | 2026-06-04 |
| CVE-2026-41009 json | When the director sends a long-running request (e.g. compile_package), the agent's reply JSON is consumed by AgentClient. inj... | Not Provided | 2026-05-27 | 2026-05-27 |
| CVE-2022-29333 json | A vulnerability in CyberLink Power Director v14 allows attackers to escalate privileges via a crafted .exe file. | Not Provided | 2022-05-24 | 2026-07-09 |
| CVE-2018-25415 json | AiOPMSD Final 1.0.0 contains an SQL injection vulnerability that allows unauthenticated attackers to execute arbitrary SQL qu... | Not Provided | 2026-05-30 | 2026-06-01 |