VYPR

Puppet Foreman

by Theforeman

Source repositories

CVEs (1)

  • CVE-2024-7012Sep 4, 2024
    risk 0.00cvss epss 0.01

    An authentication bypass vulnerability has been identified in Foreman when deployed with External Authentication, due to the puppet-foreman configuration. This issue arises from Apache's mod_proxy not properly unsetting headers because of restrictions on underscores in HTTP…