CVE-2023-33189
30.05.2023, 06:16
Pomerium is an identity and context-aware access proxy. With specially crafted requests, incorrect authorization decisions may be made by Pomerium. This issue has been patched in versions 0.17.4, 0.18.1, 0.19.2, 0.20.1, 0.21.4 and 0.22.2.Enginsight
Vendor | Product | Version |
---|---|---|
pomerium | pomerium | 𝑥 < 0.17.4 |
pomerium | pomerium | 0.19.0 ≤ 𝑥 < 0.19.2 |
pomerium | pomerium | 0.21.0 ≤ 𝑥 < 0.21.4 |
pomerium | pomerium | 0.22.0 ≤ 𝑥 < 0.22.2 |
pomerium | pomerium | 0.18.0 |
pomerium | pomerium | 0.20.0 |
𝑥
= Vulnerable software versions
Common Weakness Enumeration
References