VDB
CVE-2021-27098
CVE-2021-27098
PUBLISHED
CVSS 8.100000381469727 HIGH
Legacy Node API Allows Impersonation in github.com/spiffe/spire/pkg/server/endpoints/node
EPSS 0.12% · 30.1th percentile
Risk Scores
CVSS 3.1
8.100000381469727
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:N
EPSS Score
0.12%
30.1th percentile
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| n/a | n/a | * |
| github.com | spiffe/spire | 0.12.0, 0.8.1, 0.9.0 |
| cncf | spire | 0.8.1, 0.9.0, 0.10.0 |
Timeline
- Mar 5, 2021 CVE Published
- Apr 14, 2021 EPSS Score
- Jun 23, 2021 EPSS Score
- Aug 24, 2021 EPSS Score
- Oct 26, 2021 EPSS Score
- Jan 6, 2022 EPSS Score
- Feb 4, 2022 EPSS Score
- Feb 28, 2022 EPSS Score
- Apr 1, 2022 EPSS Score
- May 1, 2022 EPSS Score
- Jul 3, 2022 EPSS Score
- Sep 4, 2022 EPSS Score