CVE-2022-38580: Zalando Skipper

Critical severity, CVSS 9.8. EPSS: 12% chance of exploitation in the next 30 days.

Zalando Skipper v0.13.236 is vulnerable to Server-Side Request Forgery (SSRF).

Affected products

  • Zalando Skipper: before 0.13.237 (fixed in 0.13.237)

Published 2022-10-25. Last modified 2026-07-09.