| CVE-2026-4404 |
unknown |
— |
— |
|
|
|
3mo ago |
Harbor allows the use of the default password for web UI login in github.com/goharbor/harbor |
| CVE-2025-30086 |
unknown |
— |
— |
|
|
|
11mo ago |
Possible ORM Leak Vulnerability in the Harbor in github.com/goharbor/harbor |
| CVE-2025-32019 |
unknown |
— |
— |
|
|
|
11mo ago |
Harbor repository description page has Cross-site Scripting vulnerability in github.com/goharbor/harbor |
| CVE-2022-31668 |
unknown |
— |
— |
|
|
|
2y ago |
Harbor fails to validate the user permissions when updating p2p preheat policies in github.com/goharbor/harbor |
| CVE-2024-22278 |
unknown |
— |
— |
|
|
|
2y ago |
Harbor fails to validate the user permissions when updating project configurations in github.com/goharbor/harbor |
| CVE-2024-22261 |
unknown |
— |
— |
|
|
|
2y ago |
SQL Injection in Harbor scan log API in github.com/goharbor/harbor |
| CVE-2024-22244 |
unknown |
— |
— |
|
|
|
2y ago |
Open Redirect URL in Harbor in github.com/goharbor/harbor |
| CVE-2023-20902 |
unknown |
— |
— |
|
|
|
3y ago |
Harbor timing attack risk in github.com/goharbor/harbor |
| CVE-2022-31667 |
unknown |
— |
— |
|
|
|
4y ago |
Harbor fails to validate the user permissions when updating a robot account |
| CVE-2022-31669 |
unknown |
— |
— |
|
|
|
4y ago |
Harbor fails to validate the user permissions when updating tag immutability policies |
| CVE-2022-31666 |
unknown |
— |
— |
|
|
|
4y ago |
Harbor fails to validate the user permissions when viewing Webhook policies |
| CVE-2022-31670 |
unknown |
— |
— |
|
|
|
4y ago |
Harbor fails to validate the user permissions when updating tag retention policies |
| CVE-2022-31671 |
unknown |
— |
— |
|
|
|
4y ago |
Harbor fails to validate the user permissions when reading job execution logs through the P2P preheat execution logs |
| CVE-2019-16097 |
unknown |
— |
— |
|
|
|
4y ago |
Missing Authorization in Harbor in github.com/goharbor/harbor |
| CVE-2020-29662 |
unknown |
— |
— |
|
|
|
4y ago |
"catalog's registry v2 api exposed on unauthenticated path in Harbor" in github.com/goharbor/harbor |
| CVE-2019-19030 |
unknown |
— |
— |
|
|
|
4y ago |
Unauthenticated users can exploit an enumeration vulnerability in Harbor (CVE-2019-19030) in github.com/goharbor/harbor |
| CVE-2020-13788 |
unknown |
— |
— |
|
|
|
4y ago |
Harbor is vulnerable to a limited Server-Side Request Forgery (SSRF) (CVE-2020-13788) in github.com/goharbor/harbor |
| CVE-2020-13794 |
unknown |
— |
— |
|
|
|
5y ago |
Authenticated users can exploit an enumeration vulnerability in Harbor in github.com/goharbor/harbor |
| CVE-2019-19025 |
unknown |
— |
— |
|
|
|
5y ago |
Cross-site Request Forgery (CSRF) in Cloud Native Computing Foundation Harbor in github.com/goharbor/harbor |
| CVE-2019-19026 |
unknown |
— |
— |
|
|
|
5y ago |
SQL Injection in Cloud Native Computing Foundation Harbor in github.com/goharbor/harbor |
| CVE-2019-19029 |
unknown |
— |
— |
|
|
|
5y ago |
SQL Injection in Cloud Native Computing Foundation Harbor in github.com/goharbor/harbor |
| CVE-2019-19023 |
unknown |
— |
— |
|
|
|
5y ago |
Privilege Escalation in Cloud Native Computing Foundation Harbor in github.com/goharbor/harbor |