VYPR

Kroxylicious

by Red Hat

CVEs (1)

  • CVE-2024-8285MedAug 30, 2024
    risk 0.31cvss 5.9epss 0.00

    A flaw was found in Kroxylicious. When establishing the connection with the upstream Kafka server using a TLS secured connection, Kroxylicious fails to properly verify the server's hostname, resulting in an insecure connection. For a successful attack to be performed, the…