VYPR

Add On Builder

by Splunk

CVEs (3)

  • CVE-2023-46230HigJan 30, 2024
    risk 0.53cvss 8.2epss 0.00

    In Splunk Add-on Builder versions below 4.1.4, the app writes sensitive information to internal log files.

  • CVE-2023-46231MedJan 30, 2024
    risk 0.44cvss 6.8epss 0.00

    In Splunk Add-on Builder versions below 4.1.4, the application writes user session tokens to its internal log files when you visit the Splunk Add-on Builder or when you build or edit a custom app or add-on.

  • CVE-2023-22943MedFeb 14, 2023
    risk 0.31cvss 4.8epss 0.00

    In Splunk Add-on Builder (AoB) versions below 4.1.2 and the Splunk CloudConnect SDK versions below 3.1.3, requests to third-party APIs through the REST API Modular Input incorrectly revert to using HTTP to connect after a failure to connect over HTTPS occurs.