istio Summary
Latest vulnerabilities published by istio
Vulnerability Published:
ποΈ Published
- Anytime
Sort By:
ποΈ Published Date
- Descending
Authorization Policy Bypass in Istio by Mistaking Dots in Service Account Names
CVE-2026-39350IstioIstio5.4MEDIUMAuthorization Policy Bypass in Istio by Envoy RBAC Header Matching
CVE-2026-31838IstioIstio6.9MEDIUMJWKS Resolver Vulnerability in Istio by Istio
CVE-2026-31837IstioIstio8.7HIGHIstio may allow identity impersonation if user has localhost access
CVE-2022-39388IstioIstio7.6HIGHIstio vulnerable to denial of service attack due to Golang Regex Library
CVE-2022-39278IstioIstio7.5HIGHIll-formed headers may lead to unexpected behavior in Istio
CVE-2022-31045IstioIstio7HIGHUnauthenticated control plane denial of service attack in Istio
CVE-2022-24726IstioIstio7.5HIGHUnauthenticated control plane denial of service attack in Istio
CVE-2022-23635IstioIstio7.5HIGHPrivileged Escalation in Istio
CVE-2022-21701IstioIstio5MEDIUMAuthorization Policy bypass in Istio
CVE-2022-21679IstioIstio6.8MEDIUMAuthorization Policy Bypass Due to Case Insensitive Host Comparison
CVE-2021-39155IstioIstio8.3HIGHFragments in Path May Lead to Authorization Policy Bypass
CVE-2021-39156IstioIstio8.1HIGHRemote Credentials Exposure in Istio Gateway and DestinationRule
CVE-2021-34824IstioIstioπΎπ‘8.8HIGHRemote Access Vulnerability in Istio Gateway Configuration by Istio
CVE-2021-31921IstioIstio9.8CRITICALRemote Exploit in Istio's Authorization Policy Handling
CVE-2021-31920IstioIstio6.5MEDIUMNULL Pointer Dereference Vulnerability in Istio Pilot by Istio
CVE-2019-25014IstioIstio6.5MEDIUMAuthorizationPolicy Bypass in Istio 1.5 and 1.6 by Istio
CVE-2020-16844IstioIstio6.8MEDIUMAccess Control Weakness in Openshift Service Mesh Operator
CVE-2020-14306Istio-operator Pr...Openshift-service-mesh...8.8HIGHData Leak Vulnerability in Istio and Envoy from Google
CVE-2020-11767IstioIstio3.1LOWPolicy Bypass in Istio Proxy on Istio for Ingress Traffic
CVE-2020-8843IstioIstio7.4HIGHAuthentication Bypass in Istio Across Multiple Versions
CVE-2020-8595IstioIstio7.3HIGHDenial of Service Vulnerability in Istio by Google Cloud
CVE-2019-18817IstioIstio7.5HIGHDenial of Service Vulnerability in Istio API Management System
CVE-2019-14993IstioIstio7.5HIGHAccess Token Mismanagement in Istio by Google
CVE-2019-12995IstioIstio7.5HIGHIncorrect Access Control in Istio 1.1.x Affecting the Istio Open Source Community
CVE-2019-12243IstioIstio7.5HIGH