Description
An issue in Atomix v3.1.5 allows unauthorized Atomix nodes to join a target cluster via providing configuration information.
Remediation
References
https://docs.google.com/presentation/d/1W5KU7ffh4dheR8iD54ulABImi6byAhSI-OhEKw2adRo/edit?usp=sharing
Related Vulnerabilities
CVE-2017-1000486 Vulnerability in maven package org.primefaces:primefaces
CVE-2021-23507 Vulnerability in npm package object-path-set
CVE-2018-3774 Vulnerability in maven package org.webjars.npm:url-parse
CVE-2019-16763 Vulnerability in npm package pannellum
CVE-2023-36542 Vulnerability in maven package org.apache.nifi:nifi-cdc-mysql-processors