VendorsTigeracalicoany version
Vulnerabilities

Tigera Calico any version

Ranked by severity, then by exploit likelihood. Click a CVE ID for its full record.

6CVEs
CVE-2026-6540
L7 policy bypass via unnormalized HTTP path matching
Published 2026-07-30 · Analyzed
7.9EPSS 0.005
CVE-2026-41186
Unauthenticated Go pprof exposure in Calico debug server
Published 2026-07-30 · Analyzed
7.5EPSS 0.007
CVE-2026-41184
ServiceAccount token disclosure via install-cni container logs
Published 2026-05-28 · Analyzed
6.5EPSS 0.005
CVE-2026-41187
Calico Tier Authorization Bypass via DeleteCollection
Published 2026-07-30 · Analyzed
6.5EPSS 0.004
CVE-2026-41185
ServiceAccount token disclosure via Azure IPAM CNI plugin logs
Published 2026-05-28 · Analyzed
6.5EPSS 0.003
CVE-2022-28224
Calico and Calico Enterprise may be vulnerable to route hijacking with the floating IP feature
Published 2022-06-06 · Analyzed
5.5EPSS 0.006