Lucene search

K
redhatcveRedhat.comRH:CVE-2020-1762
HistoryMar 25, 2020 - 10:01 p.m.

CVE-2020-1762

2020-03-2522:01:34
redhat.com
access.redhat.com
10

EPSS

0.003

Percentile

67.9%

An insufficient JWT validation vulnerability was found in Kiali, versions 0.4.0 to 1.15.0. A remote attacker could abuse this flaw by stealing a valid JWT cookie and using that to spoof a user session, possibly gaining privileges to view and alter the Istio configuration.

EPSS

0.003

Percentile

67.9%