📦 Rundeck

by Pagerduty

🔍 What is Rundeck?

Description coming soon...

🛡️ Security Overview

Click on a severity to filter vulnerabilities

⚠️ Known Vulnerabilities

CVE-2023-48222

HIGH CVSS 8.1 Nov 16, 2023

This vulnerability allows authenticated users in Rundeck to bypass authorization checks and access two specific URLs, enabling them to view or delete jobs without proper permissions. It affects both R...

CVE-2022-31044

HIGH CVSS 7.5 Jun 15, 2022

Rundeck 4.2.0 and 4.2.1 have a vulnerability where the Key Storage encryption mechanism fails to work properly, causing credentials to be stored in plaintext instead of encrypted. This affects all use...

CVE-2021-41112

HIGH CVSS 8.1 Feb 28, 2022

This vulnerability allows authenticated Rundeck users to modify or delete system or project calendars without proper authorization. This could cause scheduled jobs to execute or not execute on uninten...

CVE-2021-39132

HIGH CVSS 8.8 Aug 30, 2021

This vulnerability allows authenticated users to upload malicious files that can execute arbitrary code on Rundeck servers. It affects all Rundeck editions through multiple attack vectors including pl...