VDB

GHSA-4v48-4q5m-8vx4

GHSA-4v48-4q5m-8vx4 PUBLISHED CVSS 7.199999809265137 HIGH

Prometheus vulnerable to basic authentication bypass

Risk Scores

CVSS 3.1
7.199999809265137
CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H

Affected Products

VendorProductVersions
github.comprometheus/prometheus/v22.38.0, 2.24.1
github.comprometheus/prometheus2.24.1, 2.38.0, 2.38.0
github.comprometheus/prometheus
github.comprometheus/prometheus2.24.1, 2.38.0
Gogithub.com/prometheus/prometheus/v22.38.0, 2.24.1
Gogithub.com/prometheus/prometheus2.24.1, 2.38.0
github.comprometheus/prometheus/v22.24.1, 2.24.1, 2.38.0

Timeline

  • Dec 5, 2022 CVE Published
  • Apr 15, 2026 CVE Updated
Open in Interactive Console →
$ Console Community · 100/wk Open console ›