Description
An issue in Atomix v3.1.5 allows unauthorized Atomix nodes to join a target cluster via providing configuration information.
Remediation
References
https://docs.google.com/presentation/d/1W5KU7ffh4dheR8iD54ulABImi6byAhSI-OhEKw2adRo/edit?usp=sharing
Related Vulnerabilities
CVE-2017-16138 Vulnerability in maven package org.webjars.npm:mime
CVE-2022-22138 Vulnerability in npm package fast-string-search
CVE-2020-17531 Vulnerability in maven package org.apache.tapestry:tapestry-core
CVE-2020-27543 Vulnerability in npm package restify-paginate
CVE-2019-14837 Vulnerability in maven package org.keycloak:keycloak-services