Known Vulnerabilities for products from Immuta
Listed below are 4 of the newest known vulnerabilities associated with the vendor "Immuta".
These CVEs are retrieved based on exact matches on listed vendor information (CPE data) as well as a keyword search to ensure the newest vulnerabilities with no officially listed vendor information are still displayed.
Data on known vulnerable products is also displayed based on information from known CPEs, each product links to its respective vulnerability page.
Known Vulnerabilities
| CVE | Shortened Description | Severity | Publish Date | Last Modified |
|---|---|---|---|---|
| CVE-2020-15952 json | Immuta v2.8.2 is affected by stored XSS that allows a low-privileged user to escalate privileges to administrative permission... | 9 - CRITICAL | 2020-11-05 | 2020-11-12 |
| CVE-2020-15951 json | Immuta v2.8.2 accepts user-supplied project names without properly sanitizing the input, allowing attackers to inject arbitra... | 6.1 - MEDIUM | 2020-11-05 | 2021-07-21 |
| CVE-2020-15950 json | Immuta v2.8.2 is affected by improper session management: user sessions are not revoked upon logout. | 8.8 - HIGH | 2020-11-05 | 2020-11-12 |
| CVE-2020-15949 json | Immuta v2.8.2 is affected by one instance of insecure permissions that can lead to user account takeover. | 7.5 - HIGH | 2020-11-05 | 2021-07-21 |
Known software with vulnerabilities from Immuta
| Type | Vendor | Product | Version |
|---|---|---|---|
| Application | Immuta | Immuta | 2.2 |