Início
Tendências
Vulnerabilidades
Notícias
Pesquisadores
Por que dbugs?

Rikatz

#28208de 53,633
9CVSS total
Vulnerabilidades · 1
PT-2026-2290
9.0
2026-01-12
Unknown · Envoy Gateway · CVE-2026-22771
**Name of the Vulnerable Software and Affected Versions** Envoy Gateway versions prior to 1.5.7 Envoy Gateway versions prior to 1.6.2 **Description** Envoy Gateway is an open source project for managing Envoy Proxy. EnvoyExtensionPolicy Lua scripts executed by the proxy can be used to leak the proxy's credentials. These credentials can then be used to communicate with the control plane and gain access to secrets used by Envoy proxy, such as TLS private keys and credentials used for upstream and downstream communication. **Recommendations** Update Envoy Gateway to version 1.5.7 or later. Update Envoy Gateway to version 1.6.2 or later.