VendorsEdgeX Foundryedgex_foundryall versions
Vulnerabilities

EdgeX Foundry Edgex Foundry

Ranked by severity, then by exploit likelihood. Click a CVE ID for its full record.

3CVEs
CVE-2021-32753
Weak password in API gateway in EdgeX Foundry Edinburgh, Fuji, Geneva, and Hanoi releases allows remote attackers to obtain authentication token via dictionary-based password attack when OAuth2 authentication method is enabled.
Published 2021-07-09 · Modified
8.3EPSS 0.008
CVE-2022-31066
Configuration API in EdgeXFoundry exposes message bus credentials to local unauthenticated users
Published 2022-06-14 · Modified
5.9EPSS 0.003
CVE-2021-41278
Broken encryption in app-functions-sdk “AES” transform in EdgeX Foundry releases prior to Jakarta allows attackers to decrypt messages via unspecified vectors
Published 2021-11-18 · Modified
5.7EPSS 0.003