CVE-2026-32237
- EPSS 0.03%
- Veröffentlicht 12.03.2026 18:38:57
- Zuletzt bearbeitet 19.03.2026 20:49:17
Backstage is an open framework for building developer portals. Prior to 3.1.5, authenticated users with permission to execute scaffolder dry-runs can gain access to server-configured environment secrets through the dry-run API response. Secrets are p...
CVE-2026-32235
- EPSS 0.03%
- Veröffentlicht 12.03.2026 18:35:06
- Zuletzt bearbeitet 19.03.2026 20:55:22
Backstage is an open framework for building developer portals. Prior to 0.27.1, the experimental OIDC provider in @backstage/plugin-auth-backend is vulnerable to a redirect URI allowlist bypass. Instances that have enabled experimental Dynamic Client...
CVE-2026-25152
- EPSS 0.02%
- Veröffentlicht 30.01.2026 21:51:22
- Zuletzt bearbeitet 19.02.2026 15:37:56
Backstage is an open framework for building developer portals, and @backstage/plugin-techdocs-node provides common node.js functionalities for TechDocs. In versions of @backstage/plugin-techdocs-node prior to 1.13.11 and 1.14.1, a path traversal vuln...
CVE-2026-25153
- EPSS 0.02%
- Veröffentlicht 30.01.2026 21:31:58
- Zuletzt bearbeitet 19.02.2026 15:26:37
Backstage is an open framework for building developer portals, and @backstage/plugin-techdocs-node provides common node.js functionalities for TechDocs. In versions of @backstage/plugin-techdocs-node prior to 1.13.11 and 1.14.1, when TechDocs is conf...
CVE-2024-45815
- EPSS 0.23%
- Veröffentlicht 17.09.2024 21:15:12
- Zuletzt bearbeitet 03.01.2025 14:53:06
Backstage is an open framework for building developer portals. A malicious actor with authenticated access to a Backstage instance with the catalog backend plugin installed is able to interrupt the service using a specially crafted query to the catal...
CVE-2024-45816
- EPSS 0.21%
- Veröffentlicht 17.09.2024 21:15:12
- Zuletzt bearbeitet 03.01.2025 14:52:37
Backstage is an open framework for building developer portals. When using the AWS S3 or GCS storage provider for TechDocs it is possible to access content in the entire storage bucket. This can leak contents of the bucket that are not intended to be ...
CVE-2024-46976
- EPSS 0.19%
- Veröffentlicht 17.09.2024 21:15:12
- Zuletzt bearbeitet 03.01.2025 14:52:32
Backstage is an open framework for building developer portals. An attacker with control of the contents of the TechDocs storage buckets is able to inject executable scripts in the TechDocs content that will be executed in the victim's browser when br...
CVE-2023-6944
- EPSS 0.22%
- Veröffentlicht 04.01.2024 10:15:11
- Zuletzt bearbeitet 05.09.2025 12:15:31
A flaw was found in the Red Hat Developer Hub (RHDH). The catalog-import function leaks GitLab access tokens on the frontend when the base64 encoded GitLab token includes a newline at the end of the string. The sanitized error can display on the fron...
CVE-2023-35926
- EPSS 3.2%
- Veröffentlicht 22.06.2023 14:15:09
- Zuletzt bearbeitet 21.11.2024 08:08:59
Backstage is an open platform for building developer portals. The Backstage scaffolder-backend plugin uses a templating library that requires sandbox, as it by design allows for code injection. The library used for this sandbox so far has been `vm2`,...
CVE-2021-43783
- EPSS 0.35%
- Veröffentlicht 29.11.2021 20:15:08
- Zuletzt bearbeitet 03.01.2025 14:52:50
@backstage/plugin-scaffolder-backend is the backend for the default Backstage software templates. In affected versions a malicious actor with write access to a registered scaffolder template is able to manipulate the template in a way that writes fil...