Vulnerabilities
Vulnerable Software
Use of hard coded credentials in GoHarbor Harbor version 2.15.0 and below, allows attackers to use the default password and gain access to the web UI.
CVSS Score
9.4
EPSS Score
0.005
Published
2026-03-23
Incorrect user permission validation in Harbor <v2.9.5 and Harbor <v2.10.3 allows authenticated users to modify configurations.
CVSS Score
6.4
EPSS Score
0.004
Published
2024-08-02
SQL-Injection in Harbor allows priviledge users to leak the task IDs
CVSS Score
2.7
EPSS Score
0.004
Published
2024-06-11
Open Redirect in Harbor  <=v2.8.4, <=v2.9.2, and <=v2.10.0 may redirect a user to a malicious site.
CVSS Score
4.3
EPSS Score
0.004
Published
2024-06-10
A timing condition in Harbor 2.6.x and below, Harbor 2.7.2 and below,  Harbor 2.8.2 and below, and Harbor 1.10.17 and below allows an attacker with network access to create jobs/stop job tasks and retrieve job task information.
CVSS Score
5.9
EPSS Score
0.004
Published
2023-11-09


Contact Us

Shodan ® - All rights reserved