CVE-2021-34824

    Dashboard / Vulnerabilities / CVE-2021-34824

    CVE-2021-34824

    Published: 29 Jun 2021Last Modified: 9 Jul 2026

    Summary:

    Details: Istio (1.8.x, 1.9.0-1.9.5 and 1.10.0-1.10.1) contains a remotely exploitable vulnerability where credentials specified in the Gateway and DestinationRule credentialName field can be accessed from different namespaces.

    Affected packages

    Package

    Name:

    Purl:

    Affected ranges

    Type: GIT

    Events:

    Introduced- c87a4c874df27e37a3e6c25fa3d1ef6279685d23

    Affected versions

    1.10.1
    1.10.0

    Common Vulnerability Scoring System

    Attack Vector
    Network
    Adjacent
    Local
    Physical
    Privileges Required
    None
    Low
    High
    User Interaction
    None
    Required
    Scope
    Unchanged
    Changed
    Confidentiality
    None
    Low
    High
    Integrity
    None
    Low
    High
    Availability
    None
    Low
    High
    CVE-2021-34824 | CVE-DB