KrakenD is an open-source API gateway and microservices orchestration platform that centralizes request routing, transformation, and policy enforcement for distributed service architectures. The vendor's disclosures have centered on its gateway product and recur around data-integrity concerns such as modification of assumed-immutable data, reflecting the role of middleware in preserving request and configuration semantics across service boundaries. Current vulnerability counts, severity distribution, and exploitation status are shown alongside this summary.
The number and severity of CVEs published that impact products developed by KrakenD, S.L. over time
Of all the CVEs published by KrakenD, S.L. as a CNA, 0.0% affect products that KrakenD, S.L. develops as a vendor.
Of all the CVEs published that affect products developed by KrakenD, S.L., 0.0% are self-published by KrakenD, S.L. as a CNA.
Signals from CVEs in this vendor scope (1 CVEs).
1 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2022-1561MEDIUM Lura and KrakenD-CE versions older than v2.0.2 and KrakenD-EE versions older than v2.0.0 do not sanitize URL parameters correctly, allowing a malicious user to alter the backend UR | Aug 1, 2022 | 4.3 | 14 | NO | NO |
Signals from CVEs in this vendor scope (1 CVEs).
An overview of all social media posts that mention a CVE ID that affects a product developed by KrakenD, S.L..
Media articles that mention a CVE ID that affects a product developed by KrakenD, S.L. — matched by CVE ID, not by vendor name.