Cloud Foundry UAA
cpe:2.3:a:cloudfoundry:uaa:*:*:*:*:*:*:*
- >= 77.30.0, <= 78.7.0
A logic error in the token revocation endpoint has led to inappropriate user token revocation in Cloud Foundry UAA versions 77.30.0 prior to 78.7.0, and in Cloud Foundry Deployment versions 48.7.0 prior to 54.10.0.
This vulnerability can lead to improper management of user tokens, potentially allowing for unauthorized access or actions on behalf of a user.
Users are advised to upgrade Cloud Foundry UAA to version 78.8.0 or greater, and to upgrade Cloud Foundry Deployment to version 54.11.0 or greater, which includes UAA version 78.8.0.
Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.