<?xml version="1.0" encoding="UTF-8"?>
<rss version="2.0" xmlns:atom="http://www.w3.org/2005/Atom">
<channel>
  <title>CVE Daily – Red Hat OpenShift (High+Critical)</title>
  <link>https://cvedaily.com/pages/tags/red-hat-openshift.html</link>
  <atom:link href="https://cvedaily.com/feed-tags/red-hat-openshift-severe.xml" rel="self" type="application/rss+xml"/>
  <description>CVE Daily – Red Hat OpenShift (High+Critical)</description>
  <language>en</language>
  <lastBuildDate>Wed, 03 Jun 2026 21:26:34 +0000</lastBuildDate>
  <item>
    <title>[High] CVE-2026-1784 – The Route OpenShift resource allows to define routes to make pods reachable at a...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2026-1784</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2026-1784</guid>
    <pubDate>Tue, 02 Jun 2026 09:16:15 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2026-1784</strong></p>
  <p>The Route OpenShift resource allows to define routes to make pods reachable at a subdomain through HAProxy. It was found that the checks performed on the spec.path YAML stanza in a Route document was insufficient and could allow a controlled injection of the HAProxy configuration.</p>
  <p><strong>CVSS:</strong> 8.8 · <strong>CWE:</strong> CWE-15</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-1784">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2026-46579 – A flaw was found in the OpenShift Router. When a Route has `insecureEdgeTerminat...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2026-46579</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2026-46579</guid>
    <pubDate>Fri, 29 May 2026 11:16:17 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2026-46579</strong></p>
  <p>A flaw was found in the OpenShift Router. When a Route has `insecureEdgeTerminationPolicy` set to Allow, the HTTP frontend does not remove `X-SSL-Client-*` headers from incoming requests. This allows an unauthenticated attacker to send plain HTTP requests with crafted `X-SSL-Client-*` headers. As a result, backends relying on these headers for mutual TLS (Transport Layer Security) authentication…</p>
  <p><strong>CVSS:</strong> 7.4 · <strong>CWE:</strong> CWE-287</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-46579">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2026-42965 – A flaw was found in the OpenShift Router. A user with EndpointSlice write access...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2026-42965</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2026-42965</guid>
    <pubDate>Fri, 29 May 2026 11:16:16 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2026-42965</strong></p>
  <p>A flaw was found in the OpenShift Router. A user with EndpointSlice write access can exploit this vulnerability by creating a Service backed by an FQDN (Fully Qualified Domain Name) EndpointSlice that resolves to a cloud metadata endpoint. This allows the router to proxy requests to the cloud metadata endpoint, leading to the disclosure of instance credentials and other sensitive metadata. This b…</p>
  <p><strong>CVSS:</strong> 7.7 · <strong>CWE:</strong> CWE-918</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-42965">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Critical] CVE-2026-7374 – A flaw was found in KubeVirt's virt-handler component. This vulnerability allows...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2026-7374</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2026-7374</guid>
    <pubDate>Tue, 26 May 2026 14:16:40 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk critical">Critical</span> CVE-2026-7374</strong></p>
  <p>A flaw was found in KubeVirt's virt-handler component. This vulnerability allows an authenticated OpenShift user with edit permissions in a single namespace to exploit improper symlink validation when connecting to virtual machine console sockets. By replacing the console socket with a symlink to the host's container runtime (CRI-O) socket, an attacker can hijack virt-handler's privileged connect…</p>
  <p><strong>CVSS:</strong> 9.9 · <strong>CWE:</strong> CWE-59</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-7374">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2026-5483 – A flaw was found in odh-dashboard in Red Hat Openshift AI. This vulnerability in...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2026-5483</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2026-5483</guid>
    <pubDate>Fri, 10 Apr 2026 18:16:46 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2026-5483</strong></p>
  <p>A flaw was found in odh-dashboard in Red Hat Openshift AI. This vulnerability in the `odh-dashboard` component of Red Hat OpenShift AI (RHOAI) allows for the disclosure of Kubernetes Service Account tokens through a NodeJS endpoint. This could enable an attacker to gain unauthorized access to Kubernetes resources.</p>
  <p><strong>CVSS:</strong> 8.5 · <strong>CWE:</strong> CWE-201</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-5483">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2025-12805 – A flaw was found in Red Hat OpenShift AI (RHOAI) llama-stack-operator. This vuln...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2025-12805</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2025-12805</guid>
    <pubDate>Thu, 26 Mar 2026 22:16:25 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2025-12805</strong></p>
  <p>A flaw was found in Red Hat OpenShift AI (RHOAI) llama-stack-operator. This vulnerability allows unauthorized access to Llama Stack services deployed in other namespaces via direct network requests, because no NetworkPolicy restricts access to the llama-stack service endpoint. As a result, a user in one namespace can access another user’s Llama Stack instance and potentially view or manipulate se…</p>
  <p><strong>CVSS:</strong> 8.1 · <strong>CWE:</strong> CWE-653</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2025-12805">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2026-27134 – Strimzi provides a way to run an Apache Kafka cluster on Kubernetes or OpenShift...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2026-27134</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2026-27134</guid>
    <pubDate>Sat, 21 Feb 2026 00:16:15 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2026-27134</strong></p>
  <p>Strimzi provides a way to run an Apache Kafka cluster on Kubernetes or OpenShift in various deployment configurations. In versions  0.49.0 through 0.50.0, when using a custom Cluster or Clients CA with a multistage CA chain consisting of multiple CAs, Strimzi incorrectly configures the trusted certificates for mTLS authentication on the internal as well as user-configured listeners. All CAs from…</p>
  <p><strong>CVSS:</strong> 8.1 · <strong>CWE:</strong> CWE-287</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-27134">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2026-1531 – A flaw was found in foreman_kubevirt. When configuring the connection to OpenShi...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2026-1531</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2026-1531</guid>
    <pubDate>Mon, 02 Feb 2026 06:16:20 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2026-1531</strong></p>
  <p>A flaw was found in foreman_kubevirt. When configuring the connection to OpenShift, the system disables SSL verification if a Certificate Authority (CA) certificate is not explicitly set. This insecure default allows a remote attacker, capable of intercepting network traffic between Satellite and OpenShift, to perform a Man-in-the-Middle (MITM) attack. Such an attack could lead to the disclosure…</p>
  <p><strong>CVSS:</strong> 8.1 · <strong>CWE:</strong> CWE-295</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-1531">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2026-1530 – A flaw was found in fog-kubevirt. This vulnerability allows a remote attacker to...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2026-1530</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2026-1530</guid>
    <pubDate>Mon, 02 Feb 2026 06:16:20 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2026-1530</strong></p>
  <p>A flaw was found in fog-kubevirt. This vulnerability allows a remote attacker to perform a Man-in-the-Middle (MITM) attack due to disabled certificate validation. This enables the attacker to intercept and potentially alter sensitive communications between Satellite and OpenShift, resulting in information disclosure and data integrity compromise.</p>
  <p><strong>CVSS:</strong> 8.1 · <strong>CWE:</strong> CWE-295</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-1530">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Critical] CVE-2025-13888 – A flaw was found in OpenShift GitOps. Namespace admins can create ArgoCD Custom ...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2025-13888</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2025-13888</guid>
    <pubDate>Mon, 15 Dec 2025 16:15:50 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk critical">Critical</span> CVE-2025-13888</strong></p>
  <p>A flaw was found in OpenShift GitOps. Namespace admins can create ArgoCD Custom Resources (CRs) that trick the system into granting them elevated permissions in other namespaces, including privileged namespaces. An authenticated attacker can then use these elevated permissions to create privileged workloads that run on master nodes, effectively giving them root access to the entire cluster.</p>
  <p><strong>CVSS:</strong> 9.1 · <strong>CWE:</strong> CWE-266</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2025-13888">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2025-66623 – Strimzi provides a way to run an Apache Kafka cluster on Kubernetes or OpenShift...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2025-66623</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2025-66623</guid>
    <pubDate>Fri, 05 Dec 2025 19:15:52 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2025-66623</strong></p>
  <p>Strimzi provides a way to run an Apache Kafka cluster on Kubernetes or OpenShift in various deployment configurations. From 0.47.0 and prior to 0.49.1, in some situations, Strimzi creates an incorrect Kubernetes Role which grants the Apache Kafka Connect and Apache Kafka MirrorMaker 2 operands the GET access to all Kubernetes Secrets that exist in the given Kubernetes namespace. The issue is fixe…</p>
  <p><strong>CVSS:</strong> 7.4 · <strong>CWE:</strong> CWE-200</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2025-66623">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Critical] CVE-2025-10725 – A flaw was found in Red Hat Openshift AI Service. A low-privileged attacker with...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2025-10725</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2025-10725</guid>
    <pubDate>Tue, 30 Sep 2025 18:15:47 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk critical">Critical</span> CVE-2025-10725</strong></p>
  <p>A flaw was found in Red Hat Openshift AI Service. A low-privileged attacker with access to an authenticated account, for example as a data scientist using a standard Jupyter notebook, can escalate their privileges to a full cluster administrator. This allows for the complete compromise of the cluster's confidentiality, integrity, and availability. The attacker can steal sensitive data, disrupt al…</p>
  <p><strong>CVSS:</strong> 9.9 · <strong>CWE:</strong> CWE-266</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2025-10725">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2025-49521 – A flaw was found in the EDA component of the Ansible Automation Platform, where ...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2025-49521</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2025-49521</guid>
    <pubDate>Mon, 30 Jun 2025 21:15:31 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2025-49521</strong></p>
  <p>A flaw was found in the EDA component of the Ansible Automation Platform, where user-supplied Git branch or refspec values are evaluated as Jinja2 templates. This vulnerability allows authenticated users to inject expressions that execute commands or access sensitive files on the EDA worker. In OpenShift, it can lead to service account token theft.</p>
  <p><strong>CVSS:</strong> 8.8 · <strong>CWE:</strong> CWE-94</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2025-49521">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2025-49520 – A flaw was found in Ansible Automation Platform’s EDA component where user-suppl...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2025-49520</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2025-49520</guid>
    <pubDate>Mon, 30 Jun 2025 21:15:30 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2025-49520</strong></p>
  <p>A flaw was found in Ansible Automation Platform’s EDA component where user-supplied Git URLs are passed unsanitized to the git ls-remote command. This vulnerability allows an authenticated attacker to inject arguments and execute arbitrary commands on the EDA worker. In Kubernetes/OpenShift environments, this can lead to service account token theft and cluster access.</p>
  <p><strong>CVSS:</strong> 8.8 · <strong>CWE:</strong> CWE-88</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2025-49520">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2025-3528 – A flaw was found in the Mirror Registry. The quay-app container shipped as part ...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2025-3528</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2025-3528</guid>
    <pubDate>Fri, 09 May 2025 12:15:33 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2025-3528</strong></p>
  <p>A flaw was found in the Mirror Registry. The quay-app container shipped as part of the Mirror Registry for OpenShift has write access to the `/etc/passwd`. This flaw allows a malicious actor with access to the container to modify the passwd file and elevate their privileges to the root user within that pod.</p>
  <p><strong>CVSS:</strong> 8.2 · <strong>CWE:</strong> CWE-276</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2025-3528">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2025-2586 – A flaw was found in the OpenShift Lightspeed Service, which is vulnerable to una...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2025-2586</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2025-2586</guid>
    <pubDate>Mon, 31 Mar 2025 12:15:15 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2025-2586</strong></p>
  <p>A flaw was found in the OpenShift Lightspeed Service, which is vulnerable to unauthenticated API request flooding. Repeated queries to non-existent endpoints inflate metrics storage and processing, consuming excessive resources. This issue can lead to monitoring system degradation, increased disk usage, and potential service unavailability. Since the issue does not require authentication, an exte…</p>
  <p><strong>CVSS:</strong> 7.5 · <strong>CWE:</strong> CWE-400</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2025-2586">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2024-13484 – A flaw was found in openshift-gitops-operator-container. The openshift.io/cluste...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2024-13484</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2024-13484</guid>
    <pubDate>Tue, 28 Jan 2025 18:15:32 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2024-13484</strong></p>
  <p>A flaw was found in openshift-gitops-operator-container. The openshift.io/cluster-monitoring label is applied to all namespaces that deploy an ArgoCD CR instance, allowing the namespace to create a rogue PrometheusRule. This issue can have adverse effects on the platform monitoring stack, as the rule is rolled out cluster-wide when the label is applied.</p>
  <p><strong>CVSS:</strong> 8.2 · <strong>CWE:</strong> CWE-668</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2024-13484">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2025-0752 – A flaw was found in OpenShift Service Mesh 2.6.3 and 2.5.6. Rate-limiter avoidan...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2025-0752</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2025-0752</guid>
    <pubDate>Tue, 28 Jan 2025 10:15:09 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2025-0752</strong></p>
  <p>A flaw was found in OpenShift Service Mesh 2.6.3 and 2.5.6. Rate-limiter avoidance, access-control bypass, CPU and memory exhaustion, and replay attacks may be possible due to improper HTTP header sanitization in Envoy.</p>
  <p><strong>CVSS:</strong> 7.1 · <strong>CWE:</strong> CWE-444</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2025-0752">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2024-25133 – A flaw was found in the Hive ClusterDeployments resource in OpenShift Dedicated...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2024-25133</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2024-25133</guid>
    <pubDate>Tue, 31 Dec 2024 15:15:08 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2024-25133</strong></p>
  <p>A flaw was found in the Hive ClusterDeployments resource in OpenShift Dedicated. In certain conditions, this issue may allow a developer account on a Hive-enabled cluster to obtain cluster-admin privileges by executing arbitrary commands on the hive/hive-controllers pod.</p>
  <p><strong>CVSS:</strong> 8.8 · <strong>CWE:</strong> CWE-284</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2024-25133">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2024-45497 – A flaw was found in the OpenShift build process, where the docker-build containe...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2024-45497</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2024-45497</guid>
    <pubDate>Tue, 31 Dec 2024 03:15:05 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2024-45497</strong></p>
  <p>A flaw was found in the OpenShift build process, where the docker-build container is configured with a hostPath volume mount that maps the node's /var/lib/kubelet/config.json file into the build pod. This file contains sensitive credentials necessary for pulling images from private repositories. The mount is not read-only, which allows the attacker to overwrite it. By modifying the config.json fi…</p>
  <p><strong>CVSS:</strong> 7.6 · <strong>CWE:</strong> CWE-732</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2024-45497">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2024-25131 – A flaw was found in the MustGather.managed.openshift.io Custom Defined Resource ...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2024-25131</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2024-25131</guid>
    <pubDate>Thu, 19 Dec 2024 15:15:07 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2024-25131</strong></p>
  <p>A flaw was found in the MustGather.managed.openshift.io Custom Defined Resource (CRD) of OpenShift Dedicated. A non-privileged user on the cluster can create a MustGather object with a specially crafted file and set the most privileged service account to run the job. This can allow a standard developer user to escalate their privileges to a cluster administrator and pivot to the AWS environment.</p>
  <p><strong>CVSS:</strong> 8.8 · <strong>CWE:</strong> CWE-20</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2024-25131">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Critical] CVE-2024-7387 – A flaw was found in openshift/builder. This vulnerability allows command injecti...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2024-7387</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2024-7387</guid>
    <pubDate>Tue, 17 Sep 2024 00:15:52 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk critical">Critical</span> CVE-2024-7387</strong></p>
  <p>A flaw was found in openshift/builder. This vulnerability allows command injection via path traversal, where a malicious user can execute arbitrary commands on the OpenShift node running the builder container. When using the “Docker” strategy, executable files inside the privileged build container can be overridden using the `spec.source.secrets.secret.destinationDir` attribute of the `BuildConfi…</p>
  <p><strong>CVSS:</strong> 9.1 · <strong>CWE:</strong> CWE-250</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2024-7387">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Critical] CVE-2024-45496 – A flaw was found in OpenShift. This issue occurs due to the misuse of elevated p...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2024-45496</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2024-45496</guid>
    <pubDate>Tue, 17 Sep 2024 00:15:52 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk critical">Critical</span> CVE-2024-45496</strong></p>
  <p>A flaw was found in OpenShift. This issue occurs due to the misuse of elevated privileges in the OpenShift Container Platform's build process. During the build initialization step, the git-clone container is run with a privileged security context, allowing unrestricted access to the node. An attacker with developer-level access can provide a crafted .gitconfig file containing commands executed du…</p>
  <p><strong>CVSS:</strong> 9.9 · <strong>CWE:</strong> CWE-269</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2024-45496">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2024-6508 – An insufficient entropy vulnerability was found in the Openshift Console. In the...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2024-6508</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2024-6508</guid>
    <pubDate>Wed, 21 Aug 2024 06:15:08 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2024-6508</strong></p>
  <p>An insufficient entropy vulnerability was found in the Openshift Console. In the authorization code type and implicit grant type, the OAuth2 protocol is vulnerable to a Cross-Site Request Forgery (CSRF) attack if the state parameter is used inefficiently. This flaw allows logging into the victim’s current application account using a third-party account without any restrictions.</p>
  <p><strong>CVSS:</strong> 8.0 · <strong>CWE:</strong> CWE-331</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2024-6508">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2024-7557 – A vulnerability was found in OpenShift AI that allows for authentication bypass ...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2024-7557</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2024-7557</guid>
    <pubDate>Mon, 12 Aug 2024 13:38:43 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2024-7557</strong></p>
  <p>A vulnerability was found in OpenShift AI that allows for authentication bypass and privilege escalation across models within the same namespace. When deploying AI models, the UI provides the option to protect models with authentication. However, credentials from one model can be used to access other models and APIs within the same namespace. The exposed ServiceAccount tokens, visible in the UI,…</p>
  <p><strong>CVSS:</strong> 8.8 · <strong>CWE:</strong> CWE-305</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2024-7557">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2024-5037 – A flaw was found in OpenShift's Telemeter. If certain conditions are in place, a...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2024-5037</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2024-5037</guid>
    <pubDate>Wed, 05 Jun 2024 18:15:11 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2024-5037</strong></p>
  <p>A flaw was found in OpenShift's Telemeter. If certain conditions are in place, an attacker can use a forged token to bypass the issue ("iss") check during JSON web token (JWT) authentication.</p>
  <p><strong>CVSS:</strong> 7.5 · <strong>CWE:</strong> CWE-290</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2024-5037">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2023-6596 – An incomplete fix was shipped for the Rapid Reset (CVE-2023-44487/CVE-2023-39325...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2023-6596</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2023-6596</guid>
    <pubDate>Thu, 25 Apr 2024 16:15:10 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2023-6596</strong></p>
  <p>An incomplete fix was shipped for the Rapid Reset (CVE-2023-44487/CVE-2023-39325) vulnerability for an OpenShift Containers.</p>
  <p><strong>CVSS:</strong> 7.5 · <strong>CWE:</strong> CWE-400</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2023-6596">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2023-5408 – A privilege escalation flaw was found in the node restriction admission plugin o...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2023-5408</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2023-5408</guid>
    <pubDate>Thu, 02 Nov 2023 03:15:10 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2023-5408</strong></p>
  <p>A privilege escalation flaw was found in the node restriction admission plugin of the kubernetes api server of OpenShift. A remote attacker who modifies the node role label could steer workloads from the control plane and etcd nodes onto different worker nodes and gain broader access to the cluster.</p>
  <p><strong>CVSS:</strong> 7.2 · <strong>CWE:</strong> CWE-269</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2023-5408">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2023-3361 – A flaw was found in Red Hat OpenShift Data Science. When exporting a pipeline fr...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2023-3361</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2023-3361</guid>
    <pubDate>Wed, 04 Oct 2023 12:15:10 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2023-3361</strong></p>
  <p>A flaw was found in Red Hat OpenShift Data Science. When exporting a pipeline from the Elyra notebook pipeline editor as Python DSL or YAML, it reads S3 credentials from the cluster (ds pipeline server) and saves them in plain text in the generated output instead of an ID for a Kubernetes secret.</p>
  <p><strong>CVSS:</strong> 7.7 · <strong>CWE:</strong> CWE-200</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2023-3361">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2022-4039 – A flaw was found in Red Hat Single Sign-On for OpenShift container images, which...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2022-4039</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2022-4039</guid>
    <pubDate>Fri, 22 Sep 2023 15:15:09 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2022-4039</strong></p>
  <p>A flaw was found in Red Hat Single Sign-On for OpenShift container images, which are configured with an unsecured management interface enabled. This flaw allows an attacker to use this interface to deploy malicious code and access and modify potentially sensitive information in the app server configuration.</p>
  <p><strong>CVSS:</strong> 8.0 · <strong>CWE:</strong> CWE-276</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2022-4039">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2023-0813 – A flaw was found in the Network Observability plugin for OpenShift console. Unle...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2023-0813</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2023-0813</guid>
    <pubDate>Fri, 15 Sep 2023 21:15:08 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2023-0813</strong></p>
  <p>A flaw was found in the Network Observability plugin for OpenShift console. Unless the Loki authToken configuration is set to FORWARD mode, authentication is no longer enforced, allowing any user who can connect to the OpenShift Console in an OpenShift cluster to retrieve flows without authentication.</p>
  <p><strong>CVSS:</strong> 7.5 · <strong>CWE:</strong> CWE-285</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2023-0813">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2023-37946 – Jenkins OpenShift Login Plugin 1.1.0.227.v27e08dfb_1a_20 and earlier does not in...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2023-37946</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2023-37946</guid>
    <pubDate>Wed, 12 Jul 2023 16:15:13 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2023-37946</strong></p>
  <p>Jenkins OpenShift Login Plugin 1.1.0.227.v27e08dfb_1a_20 and earlier does not invalidate the previous session on login.</p>
  <p><strong>CVSS:</strong> 8.8 · <strong>CWE:</strong> CWE-384</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2023-37946">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2023-3089 – A compliance problem was found in the Red Hat OpenShift Container Platform. Red ...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2023-3089</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2023-3089</guid>
    <pubDate>Wed, 05 Jul 2023 13:15:09 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2023-3089</strong></p>
  <p>A compliance problem was found in the Red Hat OpenShift Container Platform. Red Hat discovered that, when FIPS mode was enabled, not all of the cryptographic modules in use were FIPS-validated.</p>
  <p><strong>CVSS:</strong> 7.0 · <strong>CWE:</strong> CWE-693</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2023-3089">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2022-3259 – Openshift 4.9 does not use HTTP Strict Transport Security (HSTS) which may allow...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2022-3259</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2022-3259</guid>
    <pubDate>Fri, 09 Dec 2022 18:15:19 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2022-3259</strong></p>
  <p>Openshift 4.9 does not use HTTP Strict Transport Security (HSTS) which may allow man-in-the-middle (MITM) attacks.</p>
  <p><strong>CVSS:</strong> 7.4 · <strong>CWE:</strong> CWE-665</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2022-3259">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2022-3262 – A flaw was found in Openshift. A pod with a DNSPolicy of "ClusterFirst" may inco...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2022-3262</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2022-3262</guid>
    <pubDate>Thu, 08 Dec 2022 16:15:13 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2022-3262</strong></p>
  <p>A flaw was found in Openshift. A pod with a DNSPolicy of "ClusterFirst" may incorrectly resolve the hostname based on a service provided. This flaw allows an attacker to supply an incorrect name with the DNS search policy, affecting confidentiality and availability.</p>
  <p><strong>CVSS:</strong> 8.1 · <strong>CWE:</strong> CWE-453</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2022-3262">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2013-4253 – The deployment script in the unsupported "OpenShift Extras" set of add-on script...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2013-4253</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2013-4253</guid>
    <pubDate>Wed, 19 Oct 2022 18:15:11 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2013-4253</strong></p>
  <p>The deployment script in the unsupported "OpenShift Extras" set of add-on scripts, in Red Hat Openshift 1, installs a default public key in the root user's authorized_keys file.</p>
  <p><strong>CVSS:</strong> 7.5 · <strong>CWE:</strong> CWE-377</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2013-4253">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2021-4125 – It was found that the original fix for log4j CVE-2021-44228 and CVE-2021-45046 i...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2021-4125</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2021-4125</guid>
    <pubDate>Wed, 24 Aug 2022 16:15:09 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2021-4125</strong></p>
  <p>It was found that the original fix for log4j CVE-2021-44228 and CVE-2021-45046 in the OpenShift metering hive containers was incomplete, as not all JndiLookup.class files were removed. This CVE only applies to the OpenShift Metering hive container images, shipped in OpenShift 4.8, 4.7 and 4.6.</p>
  <p><strong>CVSS:</strong> 8.1 · <strong>CWE:</strong> CWE-20</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2021-4125">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Critical] CVE-2013-4561 – In a openshift node, there is a cron job to update mcollective facts that mishan...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2013-4561</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2013-4561</guid>
    <pubDate>Thu, 30 Jun 2022 19:15:08 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk critical">Critical</span> CVE-2013-4561</strong></p>
  <p>In a openshift node, there is a cron job to update mcollective facts that mishandles a temporary file. This may lead to loss of confidentiality and integrity.</p>
  <p><strong>CVSS:</strong> 9.1 · <strong>CWE:</strong> CWE-377</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2013-4561">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2022-22472 – IBM Spectrum Protect Plus Container Backup and Restore (10.1.5 through 10.1.10.2...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2022-22472</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2022-22472</guid>
    <pubDate>Thu, 30 Jun 2022 17:15:07 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2022-22472</strong></p>
  <p>IBM Spectrum Protect Plus Container Backup and Restore (10.1.5 through 10.1.10.2 for Kubernetes and 10.1.7 through 10.1.10.2 for Red Hat OpenShift) could allow a remote attacker to bypass IBM Spectrum Protect Plus role based access control restrictions, caused by improper disclosure of session information. By retrieving the logs of a container an attacker could exploit this vulnerability to bypas…</p>
  <p><strong>CVSS:</strong> 8.8 · <strong>CWE:</strong> CWE-281</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2022-22472">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2021-4047 – The release of OpenShift 4.9.6 included four CVE fixes for the haproxy package, ...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2021-4047</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2021-4047</guid>
    <pubDate>Mon, 11 Apr 2022 20:15:16 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2021-4047</strong></p>
  <p>The release of OpenShift 4.9.6 included four CVE fixes for the haproxy package, however the patch for CVE-2021-39242 was missing. This issue only affects Red Hat OpenShift 4.9.</p>
  <p><strong>CVSS:</strong> 7.5 · <strong>CWE:</strong> CWE-20</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2021-4047">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2020-35514 – An insecure modification flaw in the /etc/kubernetes/kubeconfig file was found i...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2020-35514</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2020-35514</guid>
    <pubDate>Wed, 02 Jun 2021 14:15:09 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2020-35514</strong></p>
  <p>An insecure modification flaw in the /etc/kubernetes/kubeconfig file was found in OpenShift. This flaw allows an attacker with access to a running container which mounts /etc/kubernetes or has local access to the node, to copy this kubeconfig file and attempt to add their own node to the OpenShift cluster. The highest threat from this vulnerability is to confidentiality, integrity, as well as sys…</p>
  <p><strong>CVSS:</strong> 7.0 · <strong>CWE:</strong> CWE-266</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2020-35514">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2020-27833 – A Zip Slip vulnerability was found in the oc binary in openshift-clients where a...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2020-27833</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2020-27833</guid>
    <pubDate>Fri, 14 May 2021 21:15:07 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2020-27833</strong></p>
  <p>A Zip Slip vulnerability was found in the oc binary in openshift-clients where an arbitrary file write is achieved by using a specially crafted raw container image (.tar file) which contains symbolic links. The vulnerability is limited to the command `oc image extract`. If a symbolic link is first created pointing within the tarball, this allows further symbolic links to bypass the existing path…</p>
  <p><strong>CVSS:</strong> 7.1 · <strong>CWE:</strong> CWE-20</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2020-27833">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2019-19354 – An insecure modification vulnerability in the /etc/passwd file was found in the ...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2019-19354</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2019-19354</guid>
    <pubDate>Wed, 24 Mar 2021 17:15:12 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2019-19354</strong></p>
  <p>An insecure modification vulnerability in the /etc/passwd file was found in the operator-framework/hadoop as shipped in Red Hat Openshift 4. An attacker with access to the container could use this flaw to modify /etc/passwd and escalate their privileges.</p>
  <p><strong>CVSS:</strong> 7.8 · <strong>CWE:</strong> CWE-266</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2019-19354">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2019-19353 – An insecure modification vulnerability in the /etc/passwd file was found in the ...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2019-19353</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2019-19353</guid>
    <pubDate>Wed, 24 Mar 2021 17:15:12 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2019-19353</strong></p>
  <p>An insecure modification vulnerability in the /etc/passwd file was found in the operator-framework/hive as shipped in Red Hat Openshift 4. An attacker with access to the container could use this flaw to modify /etc/passwd and escalate their privileges.</p>
  <p><strong>CVSS:</strong> 7.0 · <strong>CWE:</strong> CWE-266</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2019-19353">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2019-19352 – An insecure modification vulnerability in the /etc/passwd file was found in the ...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2019-19352</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2019-19352</guid>
    <pubDate>Wed, 24 Mar 2021 17:15:12 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2019-19352</strong></p>
  <p>An insecure modification vulnerability in the /etc/passwd file was found in the operator-framework/presto as shipped in Red Hat Openshift 4. An attacker with access to the container could use this flaw to modify /etc/passwd and escalate their privileges.</p>
  <p><strong>CVSS:</strong> 7.0 · <strong>CWE:</strong> CWE-266</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2019-19352">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2019-19350 – An insecure modification vulnerability in the /etc/passwd file was found in the ...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2019-19350</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2019-19350</guid>
    <pubDate>Wed, 24 Mar 2021 16:15:14 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2019-19350</strong></p>
  <p>An insecure modification vulnerability in the /etc/passwd file was found in the openshift/ansible-service-broker as shipped in Red Hat Openshift 4 and 3.11. An attacker with access to the container could use this flaw to modify /etc/passwd and escalate their privileges.</p>
  <p><strong>CVSS:</strong> 7.8 · <strong>CWE:</strong> CWE-266</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2019-19350">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2019-19349 – An insecure modification vulnerability in the /etc/passwd file was found in the ...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2019-19349</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2019-19349</guid>
    <pubDate>Wed, 24 Mar 2021 16:15:14 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2019-19349</strong></p>
  <p>An insecure modification vulnerability in the /etc/passwd file was found in the container operator-framework/operator-metering as shipped in Red Hat Openshift 4. An attacker with access to the container could use this flaw to modify /etc/passwd and escalate their privileges.</p>
  <p><strong>CVSS:</strong> 7.8 · <strong>CWE:</strong> CWE-266</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2019-19349">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2019-10200 – A flaw was discovered in OpenShift Container Platform 4 where, by default, users...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2019-10200</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2019-10200</guid>
    <pubDate>Fri, 19 Mar 2021 21:15:11 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2019-10200</strong></p>
  <p>A flaw was discovered in OpenShift Container Platform 4 where, by default, users with access to create pods also have the ability to schedule workloads on master nodes. Pods with permission to access the host network, running on master nodes, can retrieve security credentials for the master AWS IAM role, allowing management access to AWS resources. With access to the security credentials, the use…</p>
  <p><strong>CVSS:</strong> 7.2 · <strong>CWE:</strong> CWE-284</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2019-10200">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2021-3344 – A privilege escalation flaw was found in OpenShift builder. During build time, c...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2021-3344</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2021-3344</guid>
    <pubDate>Tue, 16 Mar 2021 22:15:11 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2021-3344</strong></p>
  <p>A privilege escalation flaw was found in OpenShift builder. During build time, credentials outside the build context are automatically mounted into the container image under construction. An OpenShift user, able to execute code during build time inside this container can re-use the credentials to overwrite arbitrary container images in internal registries and/or escalate their privileges. The hig…</p>
  <p><strong>CVSS:</strong> 8.8 · <strong>CWE:</strong> CWE-522</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2021-3344">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2021-20198 – A flaw was found in the OpenShift Installer before version v0.9.0-master.0.20210...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2021-20198</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2021-20198</guid>
    <pubDate>Tue, 23 Feb 2021 18:15:13 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2021-20198</strong></p>
  <p>A flaw was found in the OpenShift Installer before version v0.9.0-master.0.20210125200451-95101da940b0. During installation of OpenShift Container Platform 4 clusters, bootstrap nodes are provisioned with anonymous authentication enabled on kubelet port 10250. A remote attacker able to reach this port during installation can make unauthenticated `/exec` requests to execute arbitrary commands with…</p>
  <p><strong>CVSS:</strong> 8.1 · <strong>CWE:</strong> CWE-306</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2021-20198">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2020-14306 – An incorrect access control flaw was found in the operator, openshift-service-me...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2020-14306</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2020-14306</guid>
    <pubDate>Wed, 16 Sep 2020 18:15:13 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2020-14306</strong></p>
  <p>An incorrect access control flaw was found in the operator, openshift-service-mesh/istio-rhel8-operator all versions through 1.1.3. This flaw allows an attacker with a basic level of access to the cluster to deploy a custom gateway/pod to any namespace, potentially gaining access to privileged service account tokens. The highest threat from this vulnerability is to data confidentiality and integr…</p>
  <p><strong>CVSS:</strong> 8.8 · <strong>CWE:</strong> CWE-862</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2020-14306">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2020-10752 – A flaw was found in the OpenShift API Server, where it failed to sufficiently pr...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2020-10752</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2020-10752</guid>
    <pubDate>Fri, 12 Jun 2020 23:15:10 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2020-10752</strong></p>
  <p>A flaw was found in the OpenShift API Server, where it failed to sufficiently protect OAuthTokens by leaking them into the logs when an API Server panic occurred. This flaw allows an attacker with the ability to cause an API Server error to read the logs, and use the leaked OAuthToken to log into the API Server with the leaked token.</p>
  <p><strong>CVSS:</strong> 7.5 · <strong>CWE:</strong> CWE-522</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2020-10752">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2020-10712 – A flaw was found in OpenShift Container Platform version 4.1 and later. Sensitiv...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2020-10712</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2020-10712</guid>
    <pubDate>Wed, 22 Apr 2020 16:15:12 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2020-10712</strong></p>
  <p>A flaw was found in OpenShift Container Platform version 4.1 and later. Sensitive information was found to be logged by the image registry operator allowing an attacker able to gain access to those logs, to read and write to the storage backing the internal image registry. The highest threat from this vulnerability is to data integrity.</p>
  <p><strong>CVSS:</strong> 7.0 · <strong>CWE:</strong> CWE-532</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2020-10712">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2019-19348 – An insecure modification vulnerability in the /etc/passwd file was found in the ...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2019-19348</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2019-19348</guid>
    <pubDate>Thu, 02 Apr 2020 20:15:15 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2019-19348</strong></p>
  <p>An insecure modification vulnerability in the /etc/passwd file was found in the container openshift/apb-base, affecting versions before the following 4.3.5, 4.2.21, 4.1.37, and 3.11.188-4. An attacker with access to the container could use this flaw to modify /etc/passwd and escalate their privileges.</p>
  <p><strong>CVSS:</strong> 7.0 · <strong>CWE:</strong> CWE-266</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2019-19348">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2019-19346 – An insecure modification vulnerability in the /etc/passwd file was found in the ...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2019-19346</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2019-19346</guid>
    <pubDate>Thu, 02 Apr 2020 20:15:15 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2019-19346</strong></p>
  <p>An insecure modification vulnerability in the /etc/passwd file was found in the container openshift/mariadb-apb, affecting versions before the following 4.3.5, 4.2.21, 4.1.37, and 3.11.188-4 . An attacker with access to the container could use this flaw to modify /etc/passwd and escalate their privileges.</p>
  <p><strong>CVSS:</strong> 7.0 · <strong>CWE:</strong> CWE-266</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2019-19346">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2020-2167 – Jenkins OpenShift Pipeline Plugin 1.0.56 and earlier does not configure its YAML...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2020-2167</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2020-2167</guid>
    <pubDate>Wed, 25 Mar 2020 17:15:15 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2020-2167</strong></p>
  <p>Jenkins OpenShift Pipeline Plugin 1.0.56 and earlier does not configure its YAML parser to prevent the instantiation of arbitrary types, resulting in a remote code execution vulnerability.</p>
  <p><strong>CVSS:</strong> 8.8 · <strong>CWE:</strong> CWE-20</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2020-2167">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2020-1709 – A vulnerability was found in all openshift/mediawiki 4.x.x versions prior to 4.3...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2020-1709</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2020-1709</guid>
    <pubDate>Fri, 20 Mar 2020 15:15:13 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2020-1709</strong></p>
  <p>A vulnerability was found in all openshift/mediawiki 4.x.x versions prior to 4.3.0, where an insecure modification vulnerability in the /etc/passwd file was found in the openshift/mediawiki. An attacker with access to the container could use this flaw to modify /etc/passwd and escalate their privileges.</p>
  <p><strong>CVSS:</strong> 7.0 · <strong>CWE:</strong> CWE-732</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2020-1709">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2020-1707 – A vulnerability was found in all openshift/postgresql-apb 4.x.x versions prior t...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2020-1707</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2020-1707</guid>
    <pubDate>Fri, 20 Mar 2020 15:15:13 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2020-1707</strong></p>
  <p>A vulnerability was found in all openshift/postgresql-apb 4.x.x versions prior to 4.3.0, where an insecure modification vulnerability in the /etc/passwd file was found in the container openshift/postgresql-apb. An attacker with access to the container could use this flaw to modify /etc/passwd and escalate their privileges.</p>
  <p><strong>CVSS:</strong> 7.0 · <strong>CWE:</strong> CWE-732</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2020-1707">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2019-19345 – A vulnerability was found in all openshift/mediawiki-apb 4.x.x versions prior to...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2019-19345</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2019-19345</guid>
    <pubDate>Fri, 20 Mar 2020 15:15:13 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2019-19345</strong></p>
  <p>A vulnerability was found in all openshift/mediawiki-apb 4.x.x versions prior to 4.3.0, where an insecure modification vulnerability in the /etc/passwd file was found in the container openshift/mediawiki-apb. An attacker with access to the container could use this flaw to modify /etc/passwd and escalate their privileges.</p>
  <p><strong>CVSS:</strong> 7.0 · <strong>CWE:</strong> CWE-266</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2019-19345">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2020-1705 – A vulnerability was found in openshift/template-service-broker-operator in all 4...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2020-1705</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2020-1705</guid>
    <pubDate>Thu, 19 Mar 2020 16:15:14 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2020-1705</strong></p>
  <p>A vulnerability was found in openshift/template-service-broker-operator in all 4.x.x versions prior to 4.3.0, where an insecure modification vulnerability in the /etc/passwd file was found in the openshift/template-service-broker-operator. An attacker with access to the container could use this flaw to modify /etc/passwd and escalate their privileges.</p>
  <p><strong>CVSS:</strong> 7.0 · <strong>CWE:</strong> CWE-266</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2020-1705">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2019-19355 – An insecure modification vulnerability in the /etc/passwd file was found in the ...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2019-19355</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2019-19355</guid>
    <pubDate>Wed, 18 Mar 2020 17:15:11 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2019-19355</strong></p>
  <p>An insecure modification vulnerability in the /etc/passwd file was found in the openshift/ocp-release-operator-sdk. An attacker with access to the container could use this flaw to modify /etc/passwd and escalate their privileges. This CVE is specific to the openshift/ansible-operator-container as shipped in Openshift 4.</p>
  <p><strong>CVSS:</strong> 7.0 · <strong>CWE:</strong> CWE-266</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2019-19355">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2019-19351 – An insecure modification vulnerability in the /etc/passwd file was found in the ...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2019-19351</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2019-19351</guid>
    <pubDate>Wed, 18 Mar 2020 17:15:11 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2019-19351</strong></p>
  <p>An insecure modification vulnerability in the /etc/passwd file was found in the container openshift/jenkins. An attacker with access to the container could use this flaw to modify /etc/passwd and escalate their privileges. This CVE is specific to the openshift/jenkins-slave-base-rhel7-containera as shipped in Openshift 4 and 3.11.</p>
  <p><strong>CVSS:</strong> 7.0 · <strong>CWE:</strong> CWE-266</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2019-19351">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2020-1706 – It has been found that in openshift-enterprise version 3.11 and openshift-enterp...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2020-1706</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2020-1706</guid>
    <pubDate>Mon, 09 Mar 2020 16:15:12 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2020-1706</strong></p>
  <p>It has been found that in openshift-enterprise version 3.11 and openshift-enterprise versions 4.1 up to, including 4.3, multiple containers modify the permissions of /etc/passwd to make them modifiable by users other than root. An attacker with access to the running container can exploit this to modify /etc/passwd to add a user and escalate their privileges. This CVE is specific to the openshift/…</p>
  <p><strong>CVSS:</strong> 7.0 · <strong>CWE:</strong> CWE-732</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2020-1706">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Critical] CVE-2020-1731 – A flaw was found in all versions of the Keycloak operator, before version 8.0.2,...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2020-1731</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2020-1731</guid>
    <pubDate>Mon, 02 Mar 2020 17:15:19 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk critical">Critical</span> CVE-2020-1731</strong></p>
  <p>A flaw was found in all versions of the Keycloak operator, before version 8.0.2,(community only) where the operator generates a random admin password when installing Keycloak, however the password remains the same when deployed to the same OpenShift namespace.</p>
  <p><strong>CVSS:</strong> 9.1 · <strong>CWE:</strong> CWE-341</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2020-1731">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2020-1704 – An insecure modification vulnerability in the /etc/passwd file was found in all ...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2020-1704</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2020-1704</guid>
    <pubDate>Mon, 17 Feb 2020 17:15:14 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2020-1704</strong></p>
  <p>An insecure modification vulnerability in the /etc/passwd file was found in all versions of OpenShift ServiceMesh (maistra) before 1.0.8 in the openshift/istio-kialia-rhel7-operator-container. An attacker with access to the container could use this flaw to modify /etc/passwd and escalate their privileges.</p>
  <p><strong>CVSS:</strong> 7.0 · <strong>CWE:</strong> CWE-266</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2020-1704">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Critical] CVE-2014-0234 – The default configuration of broker.conf in Red Hat OpenShift Enterprise 2.x bef...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2014-0234</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2014-0234</guid>
    <pubDate>Wed, 12 Feb 2020 01:15:10 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk critical">Critical</span> CVE-2014-0234</strong></p>
  <p>The default configuration of broker.conf in Red Hat OpenShift Enterprise 2.x before 2.1 has a password of "mooo" for a Mongo account, which allows remote attackers to hijack the broker by providing this password, related to the openshift.sh script in Openshift Extras before 20130920. NOTE: this may overlap CVE-2013-4253 and CVE-2013-4281.</p>
  <p><strong>CVSS:</strong> 9.8 · <strong>CWE:</strong> CWE-1188</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2014-0234">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2020-1708 – It has been found in openshift-enterprise version 3.11 and all openshift-enterpr...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2020-1708</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2020-1708</guid>
    <pubDate>Fri, 07 Feb 2020 21:15:10 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2020-1708</strong></p>
  <p>It has been found in openshift-enterprise version 3.11 and all openshift-enterprise versions from 4.1 to, including 4.3, that multiple containers modify the permissions of /etc/passwd to make them modifiable by users other than root. An attacker with access to the running container can exploit this to modify /etc/passwd to add a user and escalate their privileges. This CVE is specific to the open…</p>
  <p><strong>CVSS:</strong> 7.0 · <strong>CWE:</strong> CWE-266</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2020-1708">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Critical] CVE-2013-2060 – The download_from_url function in OpenShift Origin allows remote attackers to ex...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2013-2060</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2013-2060</guid>
    <pubDate>Tue, 28 Jan 2020 16:15:11 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk critical">Critical</span> CVE-2013-2060</strong></p>
  <p>The download_from_url function in OpenShift Origin allows remote attackers to execute arbitrary commands via shell metacharacters in the URL of a request to download a cart.</p>
  <p><strong>CVSS:</strong> 9.8 · <strong>CWE:</strong> CWE-78</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2013-2060">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2019-14819 – A flaw was found during the upgrade of an existing OpenShift Container Platform ...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2019-14819</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2019-14819</guid>
    <pubDate>Tue, 07 Jan 2020 18:15:10 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2019-14819</strong></p>
  <p>A flaw was found during the upgrade of an existing OpenShift Container Platform 3.x cluster. Using CRI-O, the dockergc service account is assigned to the current namespace of the user performing the upgrade. This flaw can allow an unprivileged user to escalate their privileges to those allowed by the privileged Security Context Constraints.</p>
  <p><strong>CVSS:</strong> 8.8 · <strong>CWE:</strong> CWE-266</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2019-14819">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2014-0163 – Openshift has shell command injection flaws due to unsanitized data being passed...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2014-0163</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2014-0163</guid>
    <pubDate>Wed, 11 Dec 2019 16:15:10 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2014-0163</strong></p>
  <p>Openshift has shell command injection flaws due to unsanitized data being passed into shell commands.</p>
  <p><strong>CVSS:</strong> 8.8 · <strong>CWE:</strong> CWE-78</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2014-0163">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Critical] CVE-2013-2095 – rubygem-openshift-origin-controller: API can be used to create applications via ...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2013-2095</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2013-2095</guid>
    <pubDate>Tue, 10 Dec 2019 14:15:10 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk critical">Critical</span> CVE-2013-2095</strong></p>
  <p>rubygem-openshift-origin-controller: API can be used to create applications via cartridge_cache.rb URI.prase() to perform command injection</p>
  <p><strong>CVSS:</strong> 9.8 · <strong>CWE:</strong> CWE-74</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2013-2095">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2013-2103 – OpenShift cartridge allows remote URL retrieval</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2013-2103</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2013-2103</guid>
    <pubDate>Tue, 03 Dec 2019 14:15:09 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2013-2103</strong></p>
  <p>OpenShift cartridge allows remote URL retrieval</p>
  <p><strong>CVSS:</strong> 8.1 · <strong>CWE:</strong> CWE-20</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2013-2103">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2014-0023 – OpenShift: Install script has temporary file creation vulnerability which can re...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2014-0023</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2014-0023</guid>
    <pubDate>Fri, 15 Nov 2019 15:15:11 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2014-0023</strong></p>
  <p>OpenShift: Install script has temporary file creation vulnerability which can result in arbitrary code execution</p>
  <p><strong>CVSS:</strong> 7.8 · <strong>CWE:</strong> CWE-668</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2014-0023">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2013-0165 – cartridges/openshift-origin-cartridge-mongodb-2.2/info/bin/dump.sh in OpenShift ...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2013-0165</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2013-0165</guid>
    <pubDate>Fri, 01 Nov 2019 19:15:10 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2013-0165</strong></p>
  <p>cartridges/openshift-origin-cartridge-mongodb-2.2/info/bin/dump.sh in OpenShift does not properly create files in /tmp.</p>
  <p><strong>CVSS:</strong> 7.3 · <strong>CWE:</strong> CWE-20</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2013-0165">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Critical] CVE-2019-3899 – It was found that default configuration of Heketi does not require any authentic...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2019-3899</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2019-3899</guid>
    <pubDate>Mon, 22 Apr 2019 16:29:01 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk critical">Critical</span> CVE-2019-3899</strong></p>
  <p>It was found that default configuration of Heketi does not require any authentication potentially exposing the management interface to misuse. This isue only affects heketi as shipped with Openshift Container Platform 3.11.</p>
  <p><strong>CVSS:</strong> 9.8 · <strong>CWE:</strong> CWE-592</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2019-3899">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2019-3869 – When running Tower before 3.4.3 on OpenShift or Kubernetes, application credenti...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2019-3869</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2019-3869</guid>
    <pubDate>Thu, 28 Mar 2019 14:29:00 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2019-3869</strong></p>
  <p>When running Tower before 3.4.3 on OpenShift or Kubernetes, application credentials are exposed to playbook job runs via environment variables. A malicious user with the ability to write playbooks could use this to gain administrative privileges.</p>
  <p><strong>CVSS:</strong> 7.2 · <strong>CWE:</strong> CWE-214</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2019-3869">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2019-3818 – The kube-rbac-proxy container before version 0.4.1 as used in Red Hat OpenShift ...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2019-3818</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2019-3818</guid>
    <pubDate>Tue, 05 Feb 2019 17:29:00 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2019-3818</strong></p>
  <p>The kube-rbac-proxy container before version 0.4.1 as used in Red Hat OpenShift Container Platform does not honor TLS configurations, allowing for use of insecure ciphers and TLS 1.0. An attacker could target traffic sent over a TLS connection with a weak configuration and potentially break the encryption.</p>
  <p><strong>CVSS:</strong> 7.5 · <strong>CWE:</strong> CWE-327</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2019-3818">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2016-7075 – It was found that Kubernetes as used by Openshift Enterprise 3 did not correctly...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2016-7075</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2016-7075</guid>
    <pubDate>Mon, 10 Sep 2018 14:29:00 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2016-7075</strong></p>
  <p>It was found that Kubernetes as used by Openshift Enterprise 3 did not correctly validate X.509 client intermediate certificate host name fields. An attacker could use this flaw to bypass authentication requirements by using a specially crafted X.509 certificate.</p>
  <p><strong>CVSS:</strong> 7.5 · <strong>CWE:</strong> CWE-295</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2016-7075">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2018-14632 – An out of bound write can occur when patching an Openshift object using the 'oc ...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2018-14632</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2018-14632</guid>
    <pubDate>Thu, 06 Sep 2018 14:29:00 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2018-14632</strong></p>
  <p>An out of bound write can occur when patching an Openshift object using the 'oc patch' functionality in OpenShift Container Platform before 3.7. An attacker can use this flaw to cause a denial of service attack on the Openshift master api service which provides cluster management.</p>
  <p><strong>CVSS:</strong> 7.7 · <strong>CWE:</strong> CWE-787</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2018-14632">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2018-10843 – source-to-image component of Openshift Container Platform before versions atomic...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2018-10843</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2018-10843</guid>
    <pubDate>Mon, 02 Jul 2018 17:29:00 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2018-10843</strong></p>
  <p>source-to-image component of Openshift Container Platform before versions atomic-openshift 3.7.53, atomic-openshift 3.9.31 is vulnerable to a privilege escalation which allows the assemble script to run as the root user in a non-privileged container. An attacker can use this flaw to open network connections, and possibly other actions, on the host which are normally only available to a root user.</p>
  <p><strong>CVSS:</strong> 8.5 · <strong>CWE:</strong> CWE-20</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2018-10843">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Critical] CVE-2018-1085 – openshift-ansible before versions 3.9.23, 3.7.46 deploys a misconfigured etcd fi...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2018-1085</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2018-1085</guid>
    <pubDate>Fri, 15 Jun 2018 13:29:01 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk critical">Critical</span> CVE-2018-1085</strong></p>
  <p>openshift-ansible before versions 3.9.23, 3.7.46 deploys a misconfigured etcd file that causes the SSL client certificate authentication to be disabled. Quotations around the values of ETCD_CLIENT_CERT_AUTH and ETCD_PEER_CLIENT_CERT_AUTH in etcd.conf result in etcd being configured to allow remote users to connect without any authentication if they can access the etcd server bound to the network…</p>
  <p><strong>CVSS:</strong> 9.0 · <strong>CWE:</strong> CWE-592</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2018-1085">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2018-1102 – A flaw was found in source-to-image function as shipped with Openshift Enterpris...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2018-1102</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2018-1102</guid>
    <pubDate>Mon, 30 Apr 2018 19:29:00 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2018-1102</strong></p>
  <p>A flaw was found in source-to-image function as shipped with Openshift Enterprise 3.x. An improper path validation of tar files in ExtractTarStreamFromTarReader in tar/tar.go leads to privilege escalation.</p>
  <p><strong>CVSS:</strong> 8.8 · <strong>CWE:</strong> CWE-20</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2018-1102">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2018-1069 – Red Hat OpenShift Enterprise version 3.7 is vulnerable to access control overrid...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2018-1069</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2018-1069</guid>
    <pubDate>Fri, 09 Mar 2018 14:29:00 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2018-1069</strong></p>
  <p>Red Hat OpenShift Enterprise version 3.7 is vulnerable to access control override for container network filesystems. An attacker could override the UserId and GroupId for GlusterFS and NFS to read and write any data on the network filesystem.</p>
  <p><strong>CVSS:</strong> 7.1 · <strong>CWE:</strong> CWE-284</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2018-1069">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2013-4364 – (1) oo-analytics-export and (2) oo-analytics-import in the openshift-origin-brok...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2013-4364</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2013-4364</guid>
    <pubDate>Mon, 08 Jan 2018 19:29:00 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2013-4364</strong></p>
  <p>(1) oo-analytics-export and (2) oo-analytics-import in the openshift-origin-broker-util package in Red Hat OpenShift Enterprise 1 and 2 allow local users to have unspecified impact via a symlink attack on an unspecified file in /tmp.</p>
  <p><strong>CVSS:</strong> 7.8 · <strong>CWE:</strong> CWE-59</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2013-4364">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Critical] CVE-2015-7501 – Red Hat JBoss A-MQ 6.x; BPM Suite (BPMS) 6.x; BRMS 6.x and 5.x; Data Grid (JDG) ...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2015-7501</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2015-7501</guid>
    <pubDate>Thu, 09 Nov 2017 17:29:00 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk critical">Critical</span> CVE-2015-7501</strong></p>
  <p>Red Hat JBoss A-MQ 6.x; BPM Suite (BPMS) 6.x; BRMS 6.x and 5.x; Data Grid (JDG) 6.x; Data Virtualization (JDV) 6.x and 5.x; Enterprise Application Platform 6.x, 5.x, and 4.3.x; Fuse 6.x; Fuse Service Works (FSW) 6.x; Operations Network (JBoss ON) 3.x; Portal 6.x; SOA Platform (SOA-P) 5.x; Web Server (JWS) 3.x; Red Hat OpenShift/xPAAS 3.x; and Red Hat Subscription Asset Manager 1.3 allow remote at…</p>
  <p><strong>CVSS:</strong> 9.8 · <strong>CWE:</strong> CWE-502</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2015-7501">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2016-5409 – Red Hat OpenShift Enterprise 2 does not include the HTTPOnly flag in a Set-Cooki...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2016-5409</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2016-5409</guid>
    <pubDate>Thu, 20 Apr 2017 17:59:00 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2016-5409</strong></p>
  <p>Red Hat OpenShift Enterprise 2 does not include the HTTPOnly flag in a Set-Cookie header for the GEARID cookie, which makes it easier for remote attackers to obtain potentially sensitive information via script access to the cookies.</p>
  <p><strong>CVSS:</strong> 7.5 · <strong>CWE:</strong> CWE-200</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2016-5409">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2016-3738 – Red Hat OpenShift Enterprise 3.2 does not properly restrict access to STI builds...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2016-3738</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2016-3738</guid>
    <pubDate>Wed, 08 Jun 2016 17:59:07 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2016-3738</strong></p>
  <p>Red Hat OpenShift Enterprise 3.2 does not properly restrict access to STI builds, which allows remote authenticated users to access the Docker socket and gain privileges via vectors related to build-pod.</p>
  <p><strong>CVSS:</strong> 8.8 · <strong>CWE:</strong> CWE-264</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2016-3738">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2016-3708 – Red Hat OpenShift Enterprise 3.2, when multi-tenant SDN is enabled and a build i...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2016-3708</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2016-3708</guid>
    <pubDate>Wed, 08 Jun 2016 17:59:05 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2016-3708</strong></p>
  <p>Red Hat OpenShift Enterprise 3.2, when multi-tenant SDN is enabled and a build is run in a namespace that would normally be isolated from pods in other namespaces, allows remote authenticated users to access network resources on restricted pods via an s2i build with a builder image that (1) contains ONBUILD commands or (2) does not contain a tar binary.</p>
  <p><strong>CVSS:</strong> 7.1 · <strong>CWE:</strong> CWE-284</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2016-3708">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2016-2160 – Red Hat OpenShift Enterprise 3.2 and OpenShift Origin allow remote authenticated...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2016-2160</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2016-2160</guid>
    <pubDate>Wed, 08 Jun 2016 17:59:03 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2016-2160</strong></p>
  <p>Red Hat OpenShift Enterprise 3.2 and OpenShift Origin allow remote authenticated users to execute commands with root privileges by changing the root password in an sti builder image.</p>
  <p><strong>CVSS:</strong> 8.8 · <strong>CWE:</strong> CWE-264</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2016-2160">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Critical] CVE-2016-1906 – Openshift allows remote attackers to gain privileges by updating a build configu...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2016-1906</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2016-1906</guid>
    <pubDate>Wed, 03 Feb 2016 18:59:09 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk critical">Critical</span> CVE-2016-1906</strong></p>
  <p>Openshift allows remote attackers to gain privileges by updating a build configuration that was created with an allowed type to a type that is not allowed.</p>
  <p><strong>CVSS:</strong> 9.8 · <strong>CWE:</strong> CWE-264</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2016-1906">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2015-5222 – Red Hat OpenShift Enterprise 3.0.0.0 does not properly check permissions, which ...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2015-5222</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2015-5222</guid>
    <pubDate>Mon, 24 Aug 2015 14:59:07 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2015-5222</strong></p>
  <p>Red Hat OpenShift Enterprise 3.0.0.0 does not properly check permissions, which allows remote authenticated users with build permissions to execute arbitrary shell commands with root permissions on arbitrary build pods via unspecified vectors.</p>
  <p><strong>CVSS:</strong> 8.5 · <strong>CWE:</strong> CWE-264</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2015-5222">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2014-3674 – Red Hat OpenShift Enterprise before 2.2 does not properly restrict access to gea...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2014-3674</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2014-3674</guid>
    <pubDate>Thu, 13 Nov 2014 21:32:03 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2014-3674</strong></p>
  <p>Red Hat OpenShift Enterprise before 2.2 does not properly restrict access to gears, which allows remote attackers to access the network resources of arbitrary gears via unspecified vectors.</p>
  <p><strong>CVSS:</strong> 7.5 · <strong>CWE:</strong> CWE-264</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2014-3674">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Critical] CVE-2014-3496 – cartridge_repository.rb in OpenShift Origin and Enterprise 1.2.8 through 2.1.1 a...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2014-3496</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2014-3496</guid>
    <pubDate>Fri, 20 Jun 2014 14:55:07 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk critical">Critical</span> CVE-2014-3496</strong></p>
  <p>cartridge_repository.rb in OpenShift Origin and Enterprise 1.2.8 through 2.1.1 allows remote attackers to execute arbitrary commands via shell metacharacters in a Source-Url ending with a (1) .tar.gz, (2) .zip, (3) .tgz, or (4) .tar file extension in a cartridge manifest file.</p>
  <p><strong>CVSS:</strong> 10.0 · <strong>CWE:</strong> CWE-94</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2014-3496">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2014-0188 – The openshift-origin-broker in Red Hat OpenShift Enterprise 2.0.5, 1.2.7, and ea...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2014-0188</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2014-0188</guid>
    <pubDate>Thu, 24 Apr 2014 14:55:04 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2014-0188</strong></p>
  <p>The openshift-origin-broker in Red Hat OpenShift Enterprise 2.0.5, 1.2.7, and earlier does not properly handle authentication requests from the remote-user auth plugin, which allows remote attackers to bypass authentication and impersonate arbitrary users via the X-Remote-User header in a request to a passthrough trigger.</p>
  <p><strong>CVSS:</strong> 7.5 · <strong>CWE:</strong> CWE-287</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2014-0188">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2012-5646 – node-util/www/html/restorer.php in the Red Hat OpenShift Origin before 1.0.5-3 a...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2012-5646</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2012-5646</guid>
    <pubDate>Sun, 24 Feb 2013 21:55:00 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2012-5646</strong></p>
  <p>node-util/www/html/restorer.php in the Red Hat OpenShift Origin before 1.0.5-3 allows remote attackers to execute arbitrary commands via a crafted uuid in the PATH_INFO.</p>
  <p><strong>CVSS:</strong> 7.5 · <strong>CWE:</strong> CWE-20</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2012-5646">View on NVD</a></p>
]]>
    </description>
  </item>
</channel>
</rss>
