CVE-2018-1231: Pivotal Software Bosh CLI
High severity, CVSS 8.8. EPSS: 1% chance of exploitation in the next 30 days.
Cloud Foundry BOSH CLI, versions prior to v3.0.1, contains an improper access control vulnerability. A user with access to an instance using the BOSH CLI can access the BOSH CLI configuration file and use its contents to perform authenticated requests to BOSH.
Affected products
- Pivotal Software Bosh CLI: before 3.0.1 (fixed in 3.0.1)
Published 2018-03-27. Last modified 2026-06-17.