Medium
CVSS 5.3
Overview
Cloud Native Computing Foundation Harbor before 1.10.3 and 2.x before 2.0.1 allows resource enumeration because unauthenticated API calls reveal (via the HTTP status code) whether a resource exists.
Cloud Native Computing Foundation Harbor before 1.10.3 and 2.x before 2.0.1 allo...
Cloud Native Computing Foundation Harbor before 1.10.3 and 2.x before 2.0.1 allows resource enumeration because unauthenticated API calls reveal (via the HTTP status code) whether a resource exists.
This vulnerability is rated 🟡 MEDIUM.
Recommended actions: