Known Vulnerabilities for Envoy by Cncf
Listed below are 3 of the newest known vulnerabilities associated with "Envoy" by "Cncf".
These CVEs are retrieved based on exact matches on listed software, hardware, and vendor information (CPE data) as well as a keyword search to ensure the newest vulnerabilities with no officially listed software information are still displayed.
Data on known vulnerable versions is also displayed based on information from known CPEs
Known Vulnerabilities
| CVE | Shortened Description | Severity | Publish Date | Last Modified |
|---|---|---|---|---|
| CVE-2026-88021 json | Consul and Consul Enterprise are vulnerable to an authorization bypass in the Connect service mesh that may allow a service t... | Not Provided | 2026-09-10 | 2026-09-10 |
| CVE-2026-86043 json | Skipper is an HTTP router and reverse proxy for service composition. Prior to version 0.27.37, the opaAuthorizeRequestWithBod... | Not Provided | 2026-09-16 | 2026-09-16 |
| CVE-2026-73553 json | Envoy is an open source edge and service proxy designed for cloud-native applications. Prior to 1.36.10, 1.37.6, 1.38.4, and ... | Not Provided | 2026-09-21 | 2026-09-22 |
| CVE-2026-73552 json | Envoy is an open source edge and service proxy designed for cloud-native applications. Prior to 1.36.10, 1.37.6, 1.38.4, and ... | Not Provided | 2026-09-21 | 2026-09-22 |
| CVE-2026-73551 json | Envoy is an open source edge and service proxy designed for cloud-native applications. Prior to 1.36.10, 1.37.6, 1.38.4, and ... | Not Provided | 2026-09-21 | 2026-09-28 |
| CVE-2026-73550 json | Envoy is an open source edge and service proxy designed for cloud-native applications. Prior to 1.36.10, 1.37.6, 1.38.4, and ... | Not Provided | 2026-09-21 | 2026-09-28 |
| CVE-2026-73549 json | Envoy is an open source edge and service proxy designed for cloud-native applications. Prior to 1.36.10, 1.37.6, 1.38.4, and ... | Not Provided | 2026-09-21 | 2026-09-22 |
| CVE-2026-73548 json | Envoy is an open source edge and service proxy designed for cloud-native applications. Prior to 1.36.10, 1.37.6, 1.38.4, and ... | Not Provided | 2026-09-21 | 2026-09-24 |
| CVE-2026-73547 json | Envoy is an open source edge and service proxy designed for cloud-native applications. Prior to 1.36.10, 1.37.6, 1.38.4, and ... | Not Provided | 2026-09-21 | 2026-09-22 |
| CVE-2026-73546 json | Envoy is an open source edge and service proxy designed for cloud-native applications. Prior to 1.36.10, 1.37.6, 1.38.4, and ... | Not Provided | 2026-09-21 | 2026-09-21 |
Known Affected Configurations (CPE V2.3)
| Type | Vendor | Product | Version | Update | Edition | Language |
|---|---|---|---|---|---|---|
| Application | Cncf | Envoy | 1.13.0 |