Vulnerability Monitor

The vendors, products, and vulnerabilities you care about

CVE-2023-35941


Envoy is an open source edge and service proxy designed for cloud-native applications. Prior to versions 1.27.0, 1.26.4, 1.25.9, 1.24.10, and 1.23.12, a malicious client is able to construct credentials with permanent validity in some specific scenarios. This is caused by the some rare scenarios in which HMAC payload can be always valid in OAuth2 filter's check. Versions 1.27.0, 1.26.4, 1.25.9, 1.24.10, and 1.23.12 have a fix for this issue. As a workaround, avoid wildcards/prefix domain wildcards in the host's domain configuration.


Published

2023-07-25T18:15:10.993

Last Modified

2024-11-21T08:09:01.300

Status

Modified

Source

[email protected]

Severity

CVSSv3.1: 8.6 (HIGH)

Weaknesses
  • Type: Primary
    CWE-116

Affected Vendors & Products
Type Vendor Product Version/Range Vulnerable?
Application envoyproxy envoy < 1.23.12 Yes
Application envoyproxy envoy < 1.24.10 Yes
Application envoyproxy envoy < 1.25.9 Yes
Application envoyproxy envoy < 1.26.4 Yes

References