VYPR

Emissary Ingress

by Getambassador

CVEs (1)

  • CVE-2021-36371LowJul 9, 2021
    risk 0.24cvss 3.7epss 0.01

    Emissary-Ingress (formerly Ambassador API Gateway) through 1.13.9 allows attackers to bypass client certificate requirements (i.e., mTLS cert_required) on backend upstreams when more than one TLSContext is defined and at least one configuration exists that does not require…