A security defect was identified that enabled a user of Foundry Issues to perform a Denial of Service attack by submitting malformed data in an Issue that caused loss of frontend functionality to all issue participants.
This defect was resolved with the release of Foundry Issues 2.510.0 and Foundry Frontend 6.228.0.
References
Link | Resource |
---|---|
https://palantir.safebase.us/?tcuUid=0e2e79bd-cc03-42a8-92c2-c0e68a1ea53d | Vendor Advisory |
Configurations
Configuration 1 (hide)
|
History
18 Jul 2023, 19:06
Type | Values Removed | Values Added |
---|---|---|
First Time |
Palantir
Palantir foundry Issues Palantir foundry Frontend |
|
CPE | cpe:2.3:a:palantir:foundry_frontend:*:*:*:*:*:*:*:* cpe:2.3:a:palantir:foundry_issues:*:*:*:*:*:*:*:* |
|
CVSS |
v2 : v3 : |
v2 : unknown
v3 : 7.7 |
CWE | NVD-CWE-noinfo | |
References | (MISC) https://palantir.safebase.us/?tcuUid=0e2e79bd-cc03-42a8-92c2-c0e68a1ea53d - Vendor Advisory |
10 Jul 2023, 21:15
Type | Values Removed | Values Added |
---|---|---|
New CVE |
Information
Published : 2023-07-10 21:15
Updated : 2023-11-07 04:07
NVD link : CVE-2023-22835
Mitre link : CVE-2023-22835
JSON object : View
Products Affected
palantir
- foundry_frontend
- foundry_issues
CWE