Description
Palantir Gotham included an unauthenticated endpoint that listed all active usernames on the stack with an active session. The affected services have been patched and automatically deployed to all Apollo-managed Gotham instances. It is highly recommended that customers upgrade all affected services to the latest version. This issue affects: Palantir Gotham versions prior to 103.30221005.0.
No analysis available yet.
Remediation
No remediation available yet.
Tracking
Sign in to view the affected projects.
Advisories
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2022-32379 | Palantir Gotham included an unauthenticated endpoint that listed all active usernames on the stack with an active session. The affected services have been patched and automatically deployed to all Apollo-managed Gotham instances. It is highly recommended that customers upgrade all affected services to the latest version. This issue affects: Palantir Gotham versions prior to 103.30221005.0. |
References
History
Tue, 18 Mar 2025 16:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Status: PUBLISHED
Assigner: Palantir
Published:
Updated: 2025-03-18T15:42:29.325Z
Reserved: 2022-03-25T00:00:00.000Z
Link: CVE-2022-27891
Updated: 2024-08-03T05:41:10.603Z
Status : Modified
Published: 2023-02-16T16:15:12.020
Modified: 2024-11-21T06:56:25.540
Link: CVE-2022-27891
No data.
OpenCVE Enrichment
No data.
EUVD