Lucene search

K

Skipper Security Vulnerabilities

cve
cve

CVE-2022-34296

In Zalando Skipper before 0.13.218, a query predicate could be bypassed via a prepared request.

7.5CVSS

7.4AI Score

0.001EPSS

2022-06-23 05:15 PM
60
4
cve
cve

CVE-2022-38580

Zalando Skipper v0.13.236 is vulnerable to Server-Side Request Forgery (SSRF).

9.8CVSS

9.3AI Score

0.033EPSS

2022-10-25 05:15 PM
60
6