Loading product vulnerabilities…
Total
3
Critical
1
High
1
Medium
1
CISA KEV
0
Missing SSL certificate validation in localstack v2.3.2 allows attackers to eavesdrop on communications between the host and server via a man-in-the-middle attack.
A Cross-site scripting (XSS) vulnerability exists in StackLift LocalStack 0.12.6.
The dashboard component of StackLift LocalStack 0.12.6 allows attackers to inject arbitrary shell commands via the functionName parameter.