Sentinel
by Hashicorp
CVEs (2)
| CVE | Vendor / Product | Sev | Risk | CVSS | EPSS | KEV | Published | Description |
|---|---|---|---|---|---|---|---|---|
| CVE-2021-44139 | Hig | 0.49 | 7.5 | 0.06 | Mar 23, 2022 | Sentinel 1.8.2 is vulnerable to Server-side request forgery (SSRF). | ||
| CVE-2019-19879 | Hig | 0.49 | 7.5 | 0.01 | Feb 14, 2020 | HashiCorp Sentinel up to 0.10.1 incorrectly parsed negation in certain policy expressions. Fixed in 0.10.2. |
- risk 0.49cvss 7.5epss 0.06
Sentinel 1.8.2 is vulnerable to Server-side request forgery (SSRF).
- risk 0.49cvss 7.5epss 0.01
HashiCorp Sentinel up to 0.10.1 incorrectly parsed negation in certain policy expressions. Fixed in 0.10.2.