Vulnerabilities (CVE)

Filtered by CWE-1027
Total 2 CVE
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2025-59874 2026-07-22 N/A 8.1 HIGH
HCL Hive Telco Observability is affected by  a Required directives missing from the CSP issue is detected in keycloak component of the web application. Missing essential directives can leave a site vulnerable.
CVE-2021-27021 1 Puppet 3 Puppet, Puppet Enterprise, Puppetdb 2026-06-17 6.5 MEDIUM 8.8 HIGH
A flaw was discovered in Puppet DB, this flaw results in an escalation of privileges which allows the user to delete tables via an SQL query.