Description
An issue in Atomix v3.1.5 allows unauthorized Atomix nodes to join a target cluster via providing configuration information.
Remediation
References
https://docs.google.com/presentation/d/1W5KU7ffh4dheR8iD54ulABImi6byAhSI-OhEKw2adRo/edit?usp=sharing
Related Vulnerabilities
CVE-2018-11775 Vulnerability in maven package org.apache.activemq:activemq-broker
CVE-2021-22137 Vulnerability in maven package org.elasticsearch:elasticsearch
CVE-2020-7601 Vulnerability in npm package gulp-scss-lint
CVE-2022-45386 Vulnerability in maven package org.jenkins-ci.plugins:violations
CVE-2023-45648 Vulnerability in maven package org.apache.tomcat.embed:tomcat-embed-core