VDB

CVE-2021-3644

CVE-2021-3644 PUBLISHED

A flaw was found in wildfly-core in all versions. If a vault expression is in the form of a single attribute that contains multiple expressions, a user who was granted access to the management interface can potentially access a vault expression they should not be able to access and possibly retrieve the item which was stored in the vault. The highest threat from this vulnerability is data confidentiality and integrity.

EPSS 0.44% · 63.5th percentile

Risk Scores

EPSS Score
0.44%
63.5th percentile

Affected Products

VendorProductVersions
Bitnamiwildfly16.0.0
Bitnamiwildfly16.0.0

Timeline

  • Sep 8, 2021 CVE Published
  • Aug 27, 2022 EPSS Score
  • Sep 2, 2022 CVE Updated
  • Oct 12, 2022 EPSS Score
  • Nov 26, 2022 EPSS Score
  • Jan 11, 2023 EPSS Score
  • Feb 25, 2023 EPSS Score
  • Mar 7, 2023 EPSS Score
  • Apr 12, 2023 EPSS Score
  • May 27, 2023 EPSS Score
  • Jul 12, 2023 EPSS Score
  • Aug 26, 2023 EPSS Score
Open in Interactive Console →
$ Console Community · 100/wk Open console ›