CVE-2024-6654
Vie, 27/09/2024 – 09:15
CVE-2024-6654
CVE-2024-6654
Vie, 27/09/2024 – 09:15
CVE-2024-6654
CVE-2024-41930
Vie, 27/09/2024 – 09:15
CVE-2024-41930
CVE-2024-6931
Vie, 27/09/2024 – 09:15
CVE-2024-6931
CVE-2024-9202
Vie, 27/09/2024 – 10:15
CVE-2024-9202
This enables parties to potentially see datasets they should not have access to, thereby exposing sensitive information. Exploiting this vulnerability requires knowing the ID of a restricted dataset, but some IDs may be guessed by trying out many IDs in an automated way.
Affected code:
DatasetResolverImpl, L76-79 https://github.com/eclipse-edc/Connector/blob/v0.9.0/core/control-plane/control-plane-catalog/src/main/java/org/eclipse/edc/connector/controlplane/catalog/DatasetResolverImpl.java
CVE-2024-7713
Vie, 27/09/2024 – 06:15
CVE-2024-7713
CVE-2024-8922
Vie, 27/09/2024 – 06:15
CVE-2024-8922
CVE-2024-7714
Vie, 27/09/2024 – 06:15
CVE-2024-7714
CVE-2024-9130
Vie, 27/09/2024 – 06:15
CVE-2024-9130
CVE-2024-8965
Vie, 27/09/2024 – 06:15
CVE-2024-8965
CVE-2024-7400
Vie, 27/09/2024 – 07:15
CVE-2024-7400