CVE-2020-9298

The Spinnaker template resolution functionality is vulnerable to Server-Side Request Forgery (SSRF), which allows an attacker to send requests on behalf of Spinnaker potentially leading to sensitive data disclosure.
Configurations

Configuration 1 (hide)

cpe:2.3:a:spinnaker:orca:*:*:*:*:*:*:*:*

History

No history.

Information

Published : 2020-08-28 15:15

Updated : 2024-02-28 17:47


NVD link : CVE-2020-9298

Mitre link : CVE-2020-9298

CVE.ORG link : CVE-2020-9298


JSON object : View

Products Affected

spinnaker

  • orca
CWE
CWE-918

Server-Side Request Forgery (SSRF)