VDB
CVE-2023-47633
CVE-2023-47633
PUBLISHED
CVSS 7.5 HIGH
Traefik is an open source HTTP reverse proxy and load balancer. The traefik docker container uses 100% CPU when it serves as its own backend, which is an automatically generated route resulting from the Docker integration in the default configuration. This issue has been addressed in versions 2.10.6 and 3.0.0-beta5. Users are advised to upgrade. There are no known workarounds for this vulnerability.
EPSS 1.27% · 68.7th percentile
Risk Scores
CVSS 3.1
7.5
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H
EPSS Score
1.27%
68.7th percentile
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| github.com | traefik/traefik/v2 | 0, 0, 0 |
| github.com | traefik/traefik/v3 | 0, 0, 0 |
| traefik | traefik | *, 0, 0 |
Timeline
- Dec 4, 2023 CVE Published
- Dec 5, 2023 EPSS Score
- Jan 4, 2024 EPSS Score
- Feb 3, 2024 EPSS Score
- Apr 3, 2024 EPSS Score
- May 3, 2024 EPSS Score
- Jun 2, 2024 EPSS Score
- Jul 2, 2024 EPSS Score
- Aug 2, 2024 EPSS Score
- Sep 1, 2024 EPSS Score
- Oct 31, 2024 EPSS Score
- Nov 30, 2024 EPSS Score