terraform-provider-sumologic icon indicating copy to clipboard operation
terraform-provider-sumologic copied to clipboard

Orca Scan reports vulnerabilities (medium and high) in sumologic provider v2.27.0 and v2.28.0

Open SaranshIam opened this issue 1 year ago • 1 comments

Currently there are 12 high and medium level vulnerabilities found in sumologic provider. This is a security concern and should be addressed with priority.

CVEs
CVE-2022-27191
CVE-2022-27664
CVE-2022-41723
CVE-2023-39325
CVE-2021-38561
CVE-2022-32149
GHSA-m425-mq94-257g
CVE-2023-0475
CVE-2023-48795
CVE-2023-3978
CVE-2023-44487
CVE-2022-27191

Details can be found in the pictures: Screenshot 2024-01-10 at 12 31 52 PM

Screenshot 2024-01-10 at 12 32 19 PM Screenshot 2024-01-10 at 12 32 41 PM

SaranshIam avatar Jan 10 '24 07:01 SaranshIam

Hey SumoLogic/terraform-provider-sumologic, i didn’t now found any updates on this request, can you please priories it, this is a security concern for us

SREshalin avatar Feb 16 '24 12:02 SREshalin