Description
An issue in Atomix v3.1.5 allows unauthorized Atomix nodes to join a target cluster via providing configuration information.
Remediation
References
https://docs.google.com/presentation/d/1W5KU7ffh4dheR8iD54ulABImi6byAhSI-OhEKw2adRo/edit?usp=sharing
Related Vulnerabilities
CVE-2015-5255 Vulnerability in maven package org.apache.flex.blazeds:flex-messaging-core
CVE-2022-4245 Vulnerability in maven package org.codehaus.plexus:plexus-utils
CVE-2023-27095 Vulnerability in maven package cn.hippo4j:hippo4j-core
CVE-2017-3586 Vulnerability in maven package mysql:mysql-connector-java
CVE-2021-43841 Vulnerability in maven package org.xwiki.platform:xwiki-platform-oldcore