The probability is the direct output of the EPSS model, and conveys an overall sense of the threat of exploitation in the wild. The percentile measures the EPSS probability relative to all known EPSS scores. Note: This data is updated daily, relying on the latest available EPSS model version. Check out the EPSS documentation for more details.
In a few clicks we can analyze your entire application and see what components are vulnerable in your application, and suggest you quick fixes.
Test your applicationsUpgrade Steeltoe.Security.Authorization.Certificate to version 4.3.0 or higher.
Affected versions of this package are vulnerable to Improper Certificate Validation through the UseCertificateAuthorization flow in Authorization.Certificate, specifically the AddOrgAndSpacePolicies authorization path that trusts the X-Client-Cert header. An attacker can bypass SameOrg and SameSpace authorization checks by supplying a forged X-Client-Cert header on a network-accessible request. If the application exposes protected endpoints through Cloud Foundry routing and uses certificate-based authorization for inter-service access, the attacker can impersonate a trusted client certificate and gain unauthorized access to endpoints intended only for the same organization or space.
Workarounds
UseCertificateForwarding to trusted proxy source IPs by configuring ForwardedHeadersOptions.KnownProxies and KnownNetworks; this prevents untrusted clients from supplying a spoofed certificate header directly.X-Forwarded-Client-Cert so Cloud Foundry Gorouter and Envoy strip inbound untrusted copies of that header; this blocks header spoofing on network-accessible requests..apps.internal and container-to-container network policies to restrict access to intended internal clients only.