NeuVector stores user passwords and API keys using a simple, unsalted hash. This method is vulnerable to rainbow table attack (offline attack where hashes of known passwords are precomputed).
| Package (Ecosystem) | Introduced | Fixed | Limit |
|---|---|---|---|
| github.com/neuvector/neuvector(Go) | 5.0.0 | 5.4.6 | N/A |
CVSS Metrics