0.0
medium
  • Attack Complexity

    High

  • User Interaction

    Required

  • Confidentiality

    High

Do your applications use this vulnerable package?

In a few clicks we can analyze your entire application and see what components are vulnerable in your application, and suggest you quick fixes.

Test your applications

How to fix?

Upgrade github.com/edgexfoundry/app-functions-sdk-go/v2/pkg/transforms to version 2.1.0 or higher.

Overview

Affected versions of this package are vulnerable to Insecure Encryption via broken encryption in app-functions-sdk “AES” transform in EdgeX, which allows attackers to decrypt messages via unspecified vectors.