Product
linuxfoundation zowe api mediation layer
3 known vulnerabilities across versions
Vulnerabilities are listed by affected version. Select any CVE for the full briefing and its intelligence graph.
CVE-2024-9802
CVE-2024-9798
CVE-2021-4314
>= 2.11.0 and < 2.17.0
The conformance validation endpoint is public so everybody can verify the conformance of onboarded services. The response could co
>= 1.0.0 and < 1.28.8
The health endpoint is public so everybody can see a list of all services. It is potentially valuable information for attackers.
>= 1.16.0 and < 1.19.0
It is possible to manipulate the JWT token without the knowledge of the JWT secret and authenticate without valid JWT token as any