VMware Tanzu (Spring Cloud Configuration (Config) Server) Data Breach

VMware Tanzu (Spring Cloud Configuration (Config) Server) experienced a data breach that was reported on March 25, 2022. Spring, by VMware Tanzu, Cloud Config contains a path traversal vulnerability that allows applications to serve arbitrary configuration files.

Key Facts

Organization
VMware Tanzu (Spring Cloud Configuration (Config) Server)
Date Reported
March 25, 2022
Incident Type
unknown
Industry
Technology
Severity Score
5/10
Confidence Level
high

Source

View original source - External link to primary source documentation

Understanding unknown Incidents

Data breaches can result in significant financial, operational, and reputational damage. Organizations should implement defense-in-depth strategies and maintain incident response capabilities.