CVE-2023-1065 is a medium-severity vulnerability affecting the Snyk Kubernetes Monitor. It allows an unauthenticated attacker, knowing the target's Integration ID, to post irrelevant data to a Snyk Organization. This could obscure legitimate security issues, though it poses no direct security risk to users and does not leak user data. The CVSS score is 5.3, indicating a network-based attack with low complexity and no integrity or availability impact. There is no evidence of active exploitation, public exploit code, or significant community discussion surrounding this vulnerability.
| Vendor | Product | Version(s) | CPE |
|---|---|---|---|
< 2.0.0CPE matchmatch criteria | cpe:2.3:a:snyk:kubernetes_monitor:*:*:*:*:*:*:*:* |
CVSS version used by this source: 3.1
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:L/A:L
The average CVE in this peer group has 0.0 Twitter, 0.0 Reddit, 0.1 Bluesky, 0.0 Mastodon, and 0.4 GitHub mentions.
The average CVE in this peer group has 0.0 InfoSec Media, 0.0 Vendor Blog, and 0.0 Security Researcher mentions.