z
zalando
Security Risk Profile
49
/100
mediumSecurity Risk Score
Comprehensive risk assessment based on 4 vulnerabilities, EPSS scores, exploitation status, and remediation availability.
📅 Data spans from June 22, 2022 to present
4
Total CVEs
4
Critical+High
0
Exploited
0
Unpatched
Threat Assessment
Avg CVSS
8.6
Base severity
Avg EPSS
0%
Exploit probability
Unpatched
0
Critical/High
Risk Level
49/100
medium
Severity Distribution
Critical
1High
3Medium
0Low
0Exploit Likelihood
>50% chance
020-50%
05-20%
0<5%
2Age Distribution
Common Weaknesses (CWE)
1
SSRF
2
2
Code Injection
1
Most Affected Products
1. go/github.com/zalando/skipper4
2. Zalando Skipper4
3. skipper2
Recent Vulnerabilities
See more →CVE-2026-24470
CVSS 8.1EPSS 0%high
Skipper Ingress Controller Allows Unauthorized Access to Internal Services via ExternalName
Jan 26, 2026
CVE-2026-23742
CVSS 8.8EPSS 0%high
Skipper arbitrary code execution through lua filters
Jan 16, 2026
CVE-2022-38580
CVSS 9.8critical
Oct 24, 2022
CVE-2022-34296
CVSS 7.5high
Jun 22, 2022
Monitor zalando in Real-Time
Get instant alerts when new vulnerabilities are discovered. Stay ahead of security threats with SecAlerts.