VendorsNetAppcloud_insights_telegrafany version
Vulnerabilities

NetApp Cloud Insights Telegraf any version

Ranked by severity, then by exploit likelihood. Click a CVE ID for its full record.

5CVEs
CVE-2020-7919
Go before 1.12.16 and 1.13.x before 1.13.7 (and the crypto/cryptobyte package before 0.0.0-20200124225646-8b5121be2f68 for Go) allows attacks on clients (resulting in a panic) via a malformed X.509 certificate.
Published 2020-03-16 · Modified
7.8EPSS 0.026
CVE-2021-39293
In archive/zip in Go before 1.16.8 and 1.17.x before 1.17.1, a crafted archive header (falsely designating that many files are present) can cause a NewReader or OpenReader panic. NOTE: this issue exists because of an incomplete fix for CVE-2021-33196.
Published 2022-01-24 · Modified
7.5EPSS 0.069
CVE-2021-44716
net/http in Go before 1.16.12 and 1.17.x before 1.17.5 allows uncontrolled memory consumption in the header canonicalization cache via HTTP/2 requests.
Published 2022-01-01 · Modified
7.5EPSS 0.040
CVE-2022-28131
Stack exhaustion from deeply nested XML documents in encoding/xml
Published 2022-08-09 · Modified
7.5EPSS 0.023
CVE-2021-34558
The crypto/tls package of Go through 1.16.5 does not properly assert that the type of public key in an X.509 certificate matches the expected type when doing a RSA based key exchange, allowing a malicious TLS server to cause a TLS client to panic.
Published 2021-07-15 · Modified
6.5EPSS 0.070