All Vulnerability Reports

CVE-2017-8047: Cloud Foundry router open redirect


Severity

High

References

Affected VMware Products and Versions

Severity is high unless otherwise noted.

  • PCF Elastic Runtime:
    • All versions prior to 1.8.62
    • 1.9.x versions prior to 1.9.40
    • 1.10.x versions prior to 1.10.28
    • 1.11.x versions prior to 1.11.12
    • 1.12.x versions prior to 1.12.2

Mitigation

Users of affected versions should apply the following mitigation:

  • The Cloud Foundry team recommends upgrading BOSH stemcells and/or other OSS components listed here if applicable.
  • Releases that have fixed this issue include:
    • PCF Elastic Runtime: 1.8.62, 1.9.40, 1.10.28, 1.11.12, and 1.12.2