AUGUST 4, 2026
Live Feed
Back to database
Case File

CVE-2019-3789

MEDIUM · CVSS 6.5 EPSS 0.77%

Source: NVD + CISA KEV + EPSS (historical backfill) · Published 2019-04-24 · Last synced 2026-08-04

CyberRota Analysis

AI analysis pending.

CVE
CVE-2019-3789
Severity
MEDIUM
CVSS
6.5
EPSS
0.77%

Original NVD Description

Cloud Foundry Routing Release, all versions prior to 0.188.0, contains a vulnerability that can hijack the traffic to route services hosted outside the platform. A user with space developer permissions can create a private domain that shadows the external domain of the route service, and map that route to an app. When the gorouter receives traffic destined for the external route service, this traffic will instead be directed to the internal app using the shadow route.