Filters

Apache PulsarApache Pulsar: Timing attack in SASL token signature verification

7.4
First published (updated )

maven/org.apache.pulsar:pulsar-websocketApache Pulsar WebSocket Proxy: Improper Authentication for WebSocket Proxy Endpoint Allows DoS

7.5
First published (updated )

Apache PulsarApache Pulsar Function Worker: Incorrect Authorization for Function Worker Can Leak Sink/Source Credentials

8.2
First published (updated )

Apache PulsarApache Pulsar: Broker does not always disconnect client when authentication data expires

First published (updated )

Apache PulsarApache Pulsar: Incorrect Authorization for Function Worker when using mTLS Authentication through Pulsar Proxy

First published (updated )

Never miss a vulnerability like this again

Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.

Apache PulsarApache Pulsar Broker: Incorrect Authorization Validation for Rest Producer

8.2
First published (updated )

Apache PulsarApache Pulsar C++/Python OAuth Clients prior to 3.0.0 were vulnerable to an MITM attack due to Disabled Certificate Validation

8.1
First published (updated )

Apache PulsarDisabled Certificate Validation makes Broker, Proxy Admin Clients vulnerable to MITM attack

First published (updated )

Apache PulsarDisabled Hostname Verification makes Brokers, Proxies vulnerable to MITM attack

First published (updated )

Apache PulsarApache Pulsar Proxy target broker address isn't validated

First published (updated )

Never miss a vulnerability like this again

Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.

Apache PulsarImproper Hostname Verification in Java Client and Proxy can expose authentication data via MITM

First published (updated )

Apache PulsarPulsar Admin API allows access to data from other tenants using getMessageById API

First published (updated )

Apache PulsarAuthentication with JWT allows use of “none”-algorithm

First published (updated )

Contact

SecAlerts Pty Ltd.
132 Wickham Terrace
Fortitude Valley,
QLD 4006, Australia
info@secalerts.co
By using SecAlerts services, you agree to our services end-user license agreement. This website is safeguarded by reCAPTCHA and governed by the Google Privacy Policy and Terms of Service. All names, logos, and brands of products are owned by their respective owners, and any usage of these names, logos, and brands for identification purposes only does not imply endorsement. If you possess any content that requires removal, please get in touch with us.
© 2024 SecAlerts Pty Ltd.
ABN: 70 645 966 203, ACN: 645 966 203