Vulnerabilities in Temporal Technologies, Inc.
14 resultsVexday analysis
Temporal Technologies possui 4 vulnerabilidades registradas, todas de severidade baixa a média, com nenhuma sob exploração ativa conhecida. A fraqueza dominante é validação inadequada de entrada (CWE-20), padrão comum em produtos de software, sem registros recentes que indiquem escalação de risco no curto prazo.
CVE-2026-87858HIGHTemporal Server completion callback source header can direct attacker-chosen requests to the internal frontend with administrator authorizationEPSS 0.8%CVE-2026-65652HIGHtemporalio/tchannel-go malformed checksum type causes process terminationEPSS 0.7%CVE-2026-65653HIGHtemporalio/tchannel-go zero-chunk call fragment causes process terminationEPSS 0.7%CVE-2026-65651HIGHtemporalio/sqlparser deeply nested unary expressions can cause a fatal stack overflow during AST traversalEPSS 0.7%CVE-2026-5724MEDIUMMissing Authentication on Streaming gRPC Replication EndpointEPSS 0.7%CVE-2026-89139HIGHTemporal Server worker deployment compute provider executes a caller-supplied command on the Worker Service hostEPSS 0.6%CVE-2026-65654HIGHtemporalio/ringpop-go fails to enforce configured label limits on inbound membership gossipEPSS 0.6%CVE-2024-2689MEDIUMDenial of Service if invalid UTF-8 sentEPSS 0.5%CVE-2026-16651HIGHtemporalio/sqlparser malformed MySQL version comments can cause a panicEPSS 0.4%CVE-2026-65655LOWTemporal UI Server may set OAuth credential cookies without Secure behind a TLS-terminating reverse proxyEPSS 0.4%CVE-2026-5199LOWCross Namespace Access via Batch OperationEPSS 0.3%CVE-2026-16652HIGHTemporal Server Schedule exclusion search can cause excessive CPU consumptionEPSS 0.3%CVE-2026-96770CRITICALs2s-proxy accepts untrusted client certificatesEPSS 0.3%CVE-2025-1243LOWField in api-go proxy not transformed before version 1.44.1EPSS 0.1%