VYPR

apk package

chainguard/modsecurity-config

pkg:apk/chainguard/modsecurity-config

Vulnerabilities (2)

  • CVE-2023-38285Jul 26, 2023
    affected < 3.0.10-r0fixed 3.0.10-r0

    Trustwave ModSecurity 3.x before 3.0.10 has Inefficient Algorithmic Complexity.

  • CVE-2023-28882Apr 28, 2023
    affected < 3.0.9-r0fixed 3.0.9-r0

    Trustwave ModSecurity 3.0.5 through 3.0.8 before 3.0.9 allows a denial of service (worker crash and unresponsiveness) because some inputs cause a segfault in the Transaction class for some configurations.