Vulnerabilities in go-vela
5 resultsVexday analysis
O go-vela apresenta 5 vulnerabilidades catalogadas, com 1 classificada como crítica, mas nenhuma sob ataque ativo no momento. A fraqueza dominante é exposição de informações sensíveis (CWE-200), e não há registros de novas vulnerabilidades nos últimos 90 dias, indicando risco estável e de baixa urgência operacional.
CVE-2020-26294HIGHExposure of server configurationEPSS 1.8%CVE-2022-39395CRITICALVela Insecure DefaultsEPSS 1.2%CVE-2021-21432HIGHReject unauthorized access with GitHub PATsEPSS 1.0%CVE-2024-28236HIGHInsecure Variable Substitution in VelaEPSS 0.7%CVE-2025-27616HIGHVela Server has Insufficient Webhook Payload Data VerificationEPSS 0.3%