Skip to main content

Vendor/product archive

palantir / gotham CVEs

Beta · best-effort

3 CVEs tagged to palantir / gotham0 Critical, 0 High, 3 Medium, 0 Low, 0 Unrated.

CVE-2022-27897

Published Feb 16, 2023

Palantir Gotham versions prior to 3.22.11.2 included an unauthenticated endpoint that would load portions of maliciously crafted zip files to memory. An attacker could repeatedly…

CVSS 5.3 · Medium
Vendor/product tagsBeta · best-effort

CVE-2022-27892

Published Feb 16, 2023

Palantir Gotham versions prior to 3.22.11.2 included an unauthenticated endpoint that would have allowed an attacker to exhaust the memory of the Gotham dispatch service.

CVSS 5.3 · Medium
Vendor/product tagsBeta · best-effort

CVE-2022-27891

Published Feb 16, 2023

Palantir Gotham included an unauthenticated endpoint that listed all active usernames on the stack with an active session. The affected services have been patched and automaticall…

CVSS 5.3 · Medium
Vendor/product tagsBeta · best-effort
Showing 1-3 of 3 CVEsPage 1 of 1