Vulnerabilidades en prefecthq
10 resultadosAnálisis Vexday
A PrefectHQ apresenta um perfil de risco moderado com 5 vulnerabilidades conhecidas, das quais 3 foram divulgadas nos últimos 90 dias, indicando exposição recente. Embora nenhuma esteja sob exploração ativa (KEV), uma vulnerabilidade crítica foi registrada, predominantemente relacionada a validação inadequada de origem (CWE-346). O padrão de divulgações recentes exige atenção contínua para mitigação.
CVE-2026-32871CRITICALFastMCP OpenAPI Provider has an SSRF & Path Traversal VulnerabilityEPSS 0.9%CVE-2026-5366CRITICALGit Argument Injection in prefecthq/prefectEPSS 0.9%CVE-2026-3514HIGHAuthentication Bypass in prefecthq/prefectEPSS 0.5%CVE-2026-7722MEDIUMPrefectHQ prefect Health Check API health endswith improper authenticationEPSS 0.5%CVE-2026-7723MEDIUMPrefectHQ prefect WebSocket Endpoint in missing authenticationEPSS 0.4%CVE-2023-6022HIGHCross-Site Request Forgery (CSRF) in prefecthq/prefectEPSS 0.4%CVE-2026-3515HIGHArgument Injection in prefecthq/prefectEPSS 0.3%CVE-2026-7724LOWPrefectHQ prefect Webhook/Notification validate_restricted_url toctouEPSS 0.3%CVE-2026-7725MEDIUMPrefectHQ prefect GitRepository Pull storage.py argument injectionEPSS 0.2%CVE-2024-8183HIGHCORS Misconfiguration in prefecthq/prefectEPSS 0.2%