cloud foundry Uaa Vulnerabilities
Cloud%20foundry Uaa vulnerabilities.
Vulnerability Published:
ποΈ Published
- Anytime
Sort By:
ποΈ Published Date
- Descending
Private Key Exposure in Cloud Foundry UAA Software
CVE-2025-22246Cloud FoundryUaa7.5HIGHSession Information Vulnerability in Multi-Zone UAA by Cloud Foundry
CVE-2025-22216Cloud FoundryCloud Foundry Uaa5.4MEDIUMPotential Security Risk: Incorrect User Permissions in Cloud Foundry UAA
CVE-2024-38806Cloud Foundry Fou...Uaa3.9LOWUAA fails to check the state parameter when authenticating with external IDPs
CVE-2020-5402Cloud FoundryUaa8.8HIGHUAA logs all query parameters with debug logging level
CVE-2019-11293Cloud FoundryUaa Release8.8HIGHCloud Foundry UAA logs query parameters in tomcat access file
CVE-2019-11290Cloud FoundryUaa Release8.8HIGHUAA is vulnerable to a Blind SCIM injection leading to information disclosure
CVE-2019-11282Cloud FoundryUaa Release4.3MEDIUMPrivilege Escalation via Scope Manipulation in UAA
CVE-2019-11279Cloud FoundryUaa Release (oss)8.7HIGHPrivilege Escalation via Blind SCIM Injection in UAA
CVE-2019-11278Cloud FoundryUaa Release (oss)8.7HIGHUAA SCIM Filter XSS
CVE-2019-11274Cloud FoundryUaa Release (oss)4.3MEDIUMUAA clients.write vulnerability
CVE-2019-11270Cloud FoundryUaa Release (oss)7.3HIGHUAA - Login app subject to clickjacking attack
CVE-2019-3794Cloud FoundryUaa Release (oss)6.5MEDIUMUAA SQL Identity Zone Vulnerability
CVE-2019-11268Cloud FoundryUaa Release (oss)6.5MEDIUMUAA defaults email address to an insecure domain
CVE-2019-3787Cloud FoundryUaa Release (oss)8.3HIGHUAA redirect-uri allows wildcard in the subdomain
CVE-2019-3788Cloud FoundryUaa Release (oss)8.7HIGHJava Projects using HTTP to fetch dependencies
CVE-2019-3801Cloud FoundryCredhub8.7HIGHUAA allows users to modify their own email address
CVE-2019-3775Cloud FoundryUaa Release (oss)7.1HIGHUAA can issue tokens across identity providers if users with matching usernames exist
CVE-2018-15754Cloud FoundryUaa Release4.2MEDIUMUAA Privilege Escalation
CVE-2018-15761Cloud FoundryUaa9.9CRITICALCloud Foundry UAA MFA does not prevent brute force of MFA code
CVE-2018-11082Cloud FoundryUaa Release6.6MEDIUMAuthorization Flaw in Cloud Foundry UAA Admin Endpoints
CVE-2018-11047Cloud FoundryCloud Foundry Uaa7.5HIGHOpen Redirect Vulnerability in Cloud Foundry UAA
CVE-2018-11041Cloud FoundryCloud Foundry Uaa6.1MEDIUMPrivilege Escalation Vulnerability in Cloud Foundry UAA
CVE-2018-1262Cloud FoundryCloudfoundry Uaa7.2HIGH