← back
CVE-2021-32835CWE-693

Groovy Sandbox escape in Eclipse Keti

3Vexday Risk Score

No sign of exploitation. No public exploitation artifact known so far.

ssvc Trackepss 4.6%
exploitation probability
4.6%top 9% of all CVEs
observed exploitation
nono source reports it
Eclipse Keti is a service that was designed to protect RESTfuls API using Attribute Based Access Control (ABAC). In Keti a sandbox escape vulnerability may lead to post-authentication Remote Code execution. This vulnerability is known to exist in the latest commit at the time of writing this CVE (commit a1c8dbe). For more details see the referenced GHSL-2021-063.
Affected products
eclipse · keti