Vendorsctfer-iochall-managerany version
Vulnerabilities

ctfer-io chall-manager any version

Ranked by severity, then by exploit likelihood. Click a CVE ID for its full record.

4CVEs
CVE-2026-32768
Chall-Manager's invalid NetworkPolicy enables a malicious actor to pivot into another namespace
Published 2026-03-20 · Analyzed
9.9EPSS 0.005
CVE-2025-53633
Chall-Manager's scenario decoding process does not check for zip bombs
Published 2025-07-10 · Analyzed
9.8EPSS 0.005
CVE-2025-53632
Chall-Manager's scenario decoding process does not check for zip slips
Published 2025-07-10 · Analyzed
9.1EPSS 0.007
CVE-2025-53634
Chall-Manager's HTTP Gateway have no header check timeout leading to potential slow loris attacks
Published 2025-07-10 · Analyzed
8.7EPSS 0.005