By the Year
In 2023 there have been 0 vulnerabilities in Odysseyproject Odyssey . Last year Odyssey had 1 security vulnerability published. Right now, Odyssey is on track to have less security vulnerabilities in 2023 than it did last year.
It may take a day or so for new Odyssey vulnerabilities to show up in the stats or in the list of recent security vulnerabilties. Additionally vulnerabilities may be tagged under a different product or component name.
Recent Odysseyproject Odyssey Security Vulnerabilities
Odyssey passes to server unencrypted bytes
8.1 - High
- August 25, 2022
Odyssey passes to server unencrypted bytes from man-in-the-middle When Odyssey is configured to use certificate Common Name for client authentication, a man-in-the-middle attacker can inject arbitrary SQL queries when a connection is first established, despite the use of SSL certificate verification and encryption. This is similar to CVE-2021-23214 for PostgreSQL.
Improper Certificate Validation