Beveiligingsadvies

CVE-2024-56802

CVE-kwetsbaarheidsdetails - eXtreme Datacenter Security Operations

Gepubliceerd 2024-12-31 15:10:42
Laatst bijgewerkt 2024-12-31 15:52:36
Toegewezen door GitHub_M
CVSS-score 8.7
Status PUBLISHED

Beschrijving

Tapir is a private Terraform registry. Tapir versions 0.9.0 and 0.9.1 are facing a critical issue with scope-able Deploykeys where attackers can guess the key to get write access to the registry. User must upgrade to 0.9.2.