Description
An issue in Atomix v3.1.5 allows unauthorized Atomix nodes to join a target cluster via providing configuration information.
Remediation
References
https://docs.google.com/presentation/d/1W5KU7ffh4dheR8iD54ulABImi6byAhSI-OhEKw2adRo/edit?usp=sharing
Related Vulnerabilities
CVE-2018-8718 Vulnerability in maven package org.jenkins-ci.plugins:mailer
CVE-2018-11775 Vulnerability in maven package org.apache.activemq:activemq-all
CVE-2022-24901 Vulnerability in npm package parse-server
CVE-2016-10686 Vulnerability in npm package fis-sass-all
CVE-2022-38179 Vulnerability in maven package io.ktor:ktor-utils