VDB

CVE-2023-47633

CVE-2023-47633 PUBLISHED CVSS 7.5 HIGH

Traefik is an open source HTTP reverse proxy and load balancer. The traefik docker container uses 100% CPU when it serves as its own backend, which is an automatically generated route resulting from the Docker integration in the default configuration. This issue has been addressed in versions 2.10.6 and 3.0.0-beta5. Users are advised to upgrade. There are no known workarounds for this vulnerability.

EPSS 0.83% · 75.0th percentile

Risk Scores

CVSS 3.1
7.5
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H
EPSS Score
0.83%
75.0th percentile

Affected Products

VendorProductVersions
github.comtraefik/traefik/v20, 0, 0
github.comtraefik/traefik/v30, 0, 0
traefiktraefik*, 0, 0

Timeline

  • Dec 4, 2023 CVE Published
  • Dec 5, 2023 EPSS Score
  • Jan 4, 2024 EPSS Score
  • Feb 2, 2024 EPSS Score
  • Apr 1, 2024 EPSS Score
  • May 1, 2024 EPSS Score
  • May 30, 2024 EPSS Score
  • Jun 29, 2024 EPSS Score
  • Jul 28, 2024 EPSS Score
  • Aug 27, 2024 EPSS Score
  • Oct 25, 2024 EPSS Score
  • Nov 23, 2024 EPSS Score
Open in Interactive Console →
$ Console Community · 100/wk Open console ›