Vulnerability index

Browse CVEs

47 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Traefik MEDIUM 6.1
CVE-2024-52003

Traefik (pronounced traffic) is an HTTP reverse proxy and load balancer. There is a vulnerability in Traefik that allows the client to provide the X-…

Fix: 2.11.14 / 3.2.1+
Fix from $1,600 2024-11-29
Traefik HIGH 7.5
CVE-2024-45410

Traefik is a golang, Cloud Native Application Proxy. When a HTTP request is processed by Traefik, certain HTTP headers such as X-Forwarded-Host or X-…

Fix: 2.11.9 / 3.1.3+
Fix from $1,950 2024-09-19
Traefik HIGH 7.5
CVE-2024-39321

Traefik is an HTTP reverse proxy and load balancer. Versions prior to 2.11.6, 3.0.4, and 3.1.0-rc3 have a vulnerability that allows bypassing IP allo…

Fix: 2.11.6 / 3.0.4+
Fix from $1,950 2024-07-05
Traefik HIGH 7.5
CVE-2024-28869

Traefik is an HTTP reverse proxy and load balancer. In affected versions sending a GET request to any Traefik endpoint with the "Content-length" requ…

Fix: 2.11.2+
Fix from $1,950 2024-04-12
Traefik HIGH 7.5
CVE-2023-47633

Traefik is an open source HTTP reverse proxy and load balancer. The traefik docker container uses 100% CPU when it serves as its own backend, which i…

Fix: after 2.10.5
Fix from $1,950 2023-12-04
Traefik MEDIUM 6.5
CVE-2023-47106

Traefik is an open source HTTP reverse proxy and load balancer. When a request is sent to Traefik with a URL fragment, Traefik automatically URL enco…

Fix: after 2.10.5
Fix from $1,600 2023-12-04
Traefik MEDIUM 5.9
CVE-2023-47124

Traefik is an open source HTTP reverse proxy and load balancer. When Traefik is configured to use the `HTTPChallenge` to generate and renew the Let's…

Fix: after 2.10.5
Fix from $1,600 2023-12-04
Traefik HIGH 7.5
CVE-2023-29013

Traefik (pronounced traffic) is a modern HTTP reverse proxy and load balancer for deploying microservices. There is a vulnerability in Go when parsin…

Fix: 2.9.10+
Fix from $1,950 2023-04-14
Traefik MEDIUM 6.5
CVE-2022-23469

Traefik is an open source HTTP reverse proxy and load balancer. Versions prior to 2.9.6 are subject to a potential vulnerability in Traefik displayin…

Fix: 2.9.6+
Fix from $1,600 2022-12-08
Traefik MEDIUM 6.5
CVE-2022-46153

Traefik is an open source HTTP reverse proxy and load balancer. In affected versions there is a potential vulnerability in Traefik managing TLS conne…

Fix: 2.9.6+
Fix from $1,600 2022-12-08
Traefik HIGH 7.5
CVE-2022-39271

Traefik (pronounced traffic) is a modern HTTP reverse proxy and load balancer that assists in deploying microservices. There is a potential vulnerabi…

Fix: 2.8.8+
Fix from $1,950 2022-10-11
Traefik HIGH 7.5
CVE-2022-23632

Traefik is an HTTP reverse proxy and load balancer. Prior to version 2.6.1, Traefik skips the router transport layer security (TLS) configuration whe…

Fix: 2.6.1+
Fix from $1,950 2022-02-17
Traefik HIGH 8.1
CVE-2021-32813

Traefik is an HTTP reverse proxy and load balancer. Prior to version 2.4.13, there exists a potential header vulnerability in Traefik's handling of t…

Fix: 2.4.13+
Fix from $1,950 2021-08-03
Traefik HIGH 7.5
CVE-2019-20894

Traefik 2.x, in certain configurations, allows HTTPS sessions to proceed without mutual TLS verification in a situation where ERR_BAD_SSL_CLIENT_AUTH…

Fix: 2.0.1+
Fix from $1,950 2020-07-02
Traefik HIGH 7.5
CVE-2020-9321

configurationwatcher.go in Traefik 2.x before 2.1.4 and TraefikEE 2.0.0 mishandles the purging of certificate contents from providers before logging.

Fix: after 2.1.4
Fix from $1,950 2020-03-16
Traefik HIGH 7.5
CVE-2019-12452

types/types.go in Containous Traefik 1.7.x through 1.7.11, when the --api flag is used and the API is publicly reachable and exposed without sufficie…

Fix: after 1.7.11
Fix from $1,950 2019-05-29
Traefik HIGH 7.5
CVE-2018-15598

Containous Traefik 1.6.x before 1.6.6, when --api is used, exposes the configuration and secret if authentication is missing and the API's port is pu…

Fix: 1.6.6+
Fix from $1,950 2018-08-21