Vulnerabilidades em envoyproxy

108 resultados
Análise Vexday

Com 74 CVEs catalogadas e nenhuma confirmada em exploração ativa pelo CISA KEV, o Envoy Proxy apresenta taxa de exploração abaixo da média geral do catálogo, o que sugere menor pressão imediata de ameaças conhecidas. No entanto, o EPSS de 0,8781 associado ao CVE-2024-30255 indica alta probabilidade estatística de exploração para essa vulnerabilidade específica, merecendo atenção prioritária nas equipes de resposta. O tipo de falha mais recorrente é CWE-416 (use-after-free), uma classe de vulnerabilidade com potencial significativo de impacto em disponibilidade e integridade em sistemas de proxy de alto desempenho. A ausência de PoCs públicas conhecidas reduz o risco imediato de exploração em massa, mas não elimina a necessidade de acompanhamento contínuo, especialmente para ambientes que expõem o Envoy diretamente na borda de rede.

CVE-2024-23324HIGHEnvoy ext auth can be bypassed when Proxy protocol filter sets invalid UTF-8 metadataEPSS 0.6%CVE-2026-73546HIGHEnvoy: Stored XSS in Admin Stats Interface (/stats?format=html)EPSS 0.6%CVE-2024-34362MEDIUMEnvoy affected by a crash (use-after-free) in EnvoyQuicServerStreamEPSS 0.6%CVE-2026-48090MEDIUMEnvoy HTTP: OAuth2 filter late async token completion after stream teardown (UAF / crash risk)EPSS 0.6%CVE-2026-48042HIGHEnvoy: Stack overflow in destructor of highly nested JSONEPSS 0.6%CVE-2026-73511MEDIUMEnvoy: Potential path-matching/authentication bypass when using Envoy in combination with a backend stripping per-segment path (matrix) parameters (e.g. Apache Tomcat)EPSS 0.6%CVE-2026-73551MEDIUMEnvoy: Path normalization does not handle dot and dotdot segments with parametersEPSS 0.6%CVE-2025-64527MEDIUMEnvoy crashes when JWT authentication is configured with the remote JWKS fetchingEPSS 0.5%CVE-2026-73553HIGHEnvoy: RBAC Authorization Bypass via Path ParametersEPSS 0.5%CVE-2022-21657MEDIUMX.509 Extended Key Usage and Trust Purposes bypass in EnvoyEPSS 0.5%CVE-2023-27493HIGHEnvoy doesn't escape HTTP header valuesEPSS 0.5%CVE-2024-23323MEDIUMExcessive CPU usage when URI template matcher is configured using regex in EnvoyEPSS 0.5%CVE-2024-45807HIGHoghttp2 crash on OnBeginHeadersForStream in envoyEPSS 0.5%CVE-2026-48044HIGHEnvoy Zstd Decompressor: Ratio Check at Wrong Loop Depth lead to memory explosionEPSS 0.5%CVE-2025-54588HIGHEnvoy: Race condition in Dynamic Forward Proxy leads to use-after-free and segmentation faultsEPSS 0.5%CVE-2024-34364MEDIUMEnvoy OOM vector from HTTP async client with unbounded response buffer for mirror responseEPSS 0.5%CVE-2025-62409MEDIUMEnvoy allows large requests and responses to cause TCP connection pool crashEPSS 0.5%CVE-2026-47204MEDIUMEnvoy: grpc_stats filter segfault on Connect protocol requests to direct_response routesEPSS 0.4%CVE-2026-47221MEDIUMEnvoy: Null pointer deref in internal redirectsEPSS 0.4%CVE-2026-47207MEDIUMEnvoy crashes if multiple unexpected ext_proc responses are packed into one gRPC messageEPSS 0.4%