VendorsPuppetpuppet_enterprise2023.0
Vulnerabilities

Puppet Puppet Enterprise 2023.0

Ranked by severity, then by exploit likelihood. Click a CVE ID for its full record.

2CVEs
CVE-2023-2530
A privilege escalation allowing remote code execution was discovered in the orchestration service.
Published 2023-06-07 · Modified
9.8EPSS 0.011
CVE-2023-1894
A Regular Expression Denial of Service (ReDoS) issue was discovered in Puppet Server 7.9.2 certificate validation. An issue related to specifically crafted certificate names significantly slowed down server operations.
Published 2023-05-04 · Modified
5.3EPSS 0.004