VYPR
Vendor

Chef

Products
7
CVEs
13
Across products
15
Status
Private

Products

7

Recent CVEs

13
  • CVE-2025-8868CriSep 29, 2025
    risk 0.66cvss 9.8epss 0.23

    In Progress Chef Automate, versions earlier than 4.13.295, on Linux x86 platform, an authenticated attacker can gain access to Chef Automate restricted functionality in the compliance service via improperly neutralized inputs used in an SQL command using a well-known token.

  • CVE-2023-40050CriOct 31, 2023
    risk 0.64cvss 9.9epss 0.01

    Upload profile either through API or user interface in Chef Automate prior to and including version 4.10.29 using InSpec check command with maliciously crafted profile allows remote code execution.

  • CVE-2017-7174CriMar 17, 2017
    risk 0.64cvss 9.8epss 0.02

    The user-account creation feature in Chef Manage 2.1.0 through 2.4.4 allows remote attackers to execute arbitrary code. This is fixed in 2.4.5.

  • CVE-2016-4326CriJun 10, 2016
    risk 0.64cvss 9.8epss 0.04

    The Chef Manage (formerly opscode-manage) add-on before 1.12.0 for Chef allows remote attackers to execute arbitrary code via crafted serialized data in a cookie.

  • CVE-2025-6724HigSep 29, 2025
    risk 0.57cvss 8.8epss 0.00

    In Progress Chef Automate, versions earlier than 4.13.295, on Linux x86 platform, an authenticated attacker can gain access to Chef Automate restricted functionality in multiple services via improperly neutralized inputs used in an SQL command.

  • CVE-2023-42658HigOct 31, 2023
    risk 0.57cvss 8.8epss 0.00

    Archive command in Chef InSpec prior to 4.56.58 and 5.22.29 allow local command execution via maliciously crafted profile.

  • CVE-2026-8100HigJun 18, 2026
    risk 0.56cvss epss 0.01

    Impact A security issue has been identified in Chef 360 that could allow unauthorized access to protected API endpoints under specific conditions. This issue is due to improper handling of URL-encoded paths during request processing. In certain scenarios, an authenticated…

  • CVE-2015-8559HigSep 21, 2017
    risk 0.42cvss 7.5epss 0.02

    The knife bootstrap command in chef Infra client before version 15.4.45 leaks the validator.pem private RSA key to /var/log/messages.

  • CVE-2025-6723MedJan 30, 2026
    risk 0.38cvss epss 0.00

    Chef InSpec versions up to 5.23 and before 7.0.107 creates named pipes with overly permissive default Windows access controls. A local attacker may interfere with the pipe connection process and exploit the insufficient access restrictions to assume the InSpec execution context,…

  • CVE-2024-9825MedOct 28, 2024
    risk 0.35cvss 5.4epss 0.00

    The Chef Habitat builder-api on-prem-builder package  with any version lower than habitat/builder-api/10315/20240913162802 is vulnerable to indirect object reference (IDOR) by un-authorized deletion of personal token.  Habitat builder consumes builder-api habitat package as a…

  • CVE-2011-5098Aug 8, 2012
    risk 0.00cvss epss 0.02

    chef-server-api/app/controllers/clients.rb in Chef Server in Chef before 0.9.20, and 0.10.x before 0.10.6, does not require administrative privileges for creating admin clients, which allows remote authenticated users to bypass intended access restrictions by leveraging read…

  • CVE-2011-5097Aug 8, 2012
    risk 0.00cvss epss 0.01

    chef-server-api/app/controllers/cookbooks.rb in Chef Server in Chef before 0.9.18, and 0.10.x before 0.10.2, does not require administrative privileges for the update and destroy methods, which allows remote authenticated users to (1) upload cookbooks via a knife cookbook upload…

  • CVE-2010-5142Aug 8, 2012
    risk 0.00cvss epss 0.02

    chef-server-api/app/controllers/users.rb in the API in Chef before 0.9.0 does not require administrative privileges for the create, destroy, and update methods, which allows remote authenticated users to manage user accounts via requests to the /users URI.