VYPR

apk package

chainguard/mc-fips

pkg:apk/chainguard/mc-fips

Vulnerabilities (102)

  • CVE-2023-45289MedMar 5, 2024
    affected < 0.20240131.085940-r1fixed 0.20240131.085940-r1

    When following an HTTP redirect to a domain which is not a subdomain match or exact match of the initial domain, an http.Client does not forward sensitive headers such as "Authorization" or "Cookie". For example, a redirect from foo.com to www.foo.com will forward the Authorizati

  • CVE-2019-3826MedMar 26, 2019
    affected < 0fixed 0

    A stored, DOM based, cross-site scripting (XSS) flaw was found in Prometheus before version 2.7.1. An attacker could exploit this by convincing an authenticated user to visit a crafted URL on a Prometheus server, allowing for the execution and persistent storage of arbitrary scri

Page 6 of 6