cve,link,title,description,vendor,products,score,severity,epss,cisa,cisa_published,article,ransomware,exploited,exploited_date,poc,trended,trended_no_1,trended_no_1_date,published,trended_score CVE-2023-47090,https://securityvulnerability.io/vulnerability/CVE-2023-47090,Authentication Bypass in NATS Server by NATS.io,"The NATS server experiences a vulnerability that allows for an authentication bypass in certain configurations. This affects versions prior to 2.9.23 and 2.10.2, where an implicit user account may be misused, enabling unauthorized access. Users may believe their configurations are secure, but the flaw allows for unauthenticated entities to gain access without appropriate checks, starting from version 2.2.0.",Linux,Nats-server,6.5,MEDIUM,0.001120000029914081,false,,false,false,false,,,false,false,,2023-10-30T00:00:00.000Z,0 CVE-2022-28357,https://securityvulnerability.io/vulnerability/CVE-2022-28357,Directory Traversal Vulnerability in NATS nats-server by NATS.io,"The NATS nats-server, versions 2.2.0 to 2.7.4, is susceptible to a directory traversal vulnerability that allows unauthorized access to internal directories. This issue arises from an unintended path exposure that allows management accounts to execute unintended actions, potentially leading to sensitive data access or influencing server configurations. Users should promptly upgrade to the latest version to mitigate this risk.",Linux,Nats-server,9.8,CRITICAL,0.0018599999602884054,false,,false,false,false,,,false,false,,2023-09-19T00:00:00.000Z,0 CVE-2020-26892,https://securityvulnerability.io/vulnerability/CVE-2020-26892,,The JWT library in NATS nats-server before 2.1.9 has Incorrect Access Control because of how expired credentials are handled.,Linux,Nats-server,9.8,CRITICAL,0.0016199999954551458,false,,false,false,false,,,false,false,,2020-11-06T07:36:45.000Z,0 CVE-2020-26521,https://securityvulnerability.io/vulnerability/CVE-2020-26521,,The JWT library in NATS nats-server before 2.1.9 allows a denial of service (a nil dereference in Go code).,Linux,Nats-server,7.5,HIGH,0.0015300000086426735,false,,false,false,false,,,false,false,,2020-11-06T07:35:12.000Z,0