Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-ffvf-vj8c-4hf8

Опубликовано: 15 сент. 2023
Источник: github
Github: Не прошло ревью
CVSS3: 8

Описание

A flaw was found in the Kubernetes service for notebooks in RHODS, where it does not prevent pods from other namespaces and applications from making requests to the Jupyter API. This flaw can lead to file content exposure and other issues.

A flaw was found in the Kubernetes service for notebooks in RHODS, where it does not prevent pods from other namespaces and applications from making requests to the Jupyter API. This flaw can lead to file content exposure and other issues.

EPSS

Процентиль: 34%
0.00137
Низкий

8 High

CVSS3

Дефекты

CWE-862

Связанные уязвимости

CVSS3: 9.8
redhat
почти 3 года назад

A flaw was found in the Kubernetes service for notebooks in RHODS, where it does not prevent pods from other namespaces and applications from making requests to the Jupyter API. This flaw can lead to file content exposure and other issues.

CVSS3: 8.8
nvd
больше 2 лет назад

A flaw was found in the Kubernetes service for notebooks in RHODS, where it does not prevent pods from other namespaces and applications from making requests to the Jupyter API. This flaw can lead to file content exposure and other issues.

CVSS3: 8
fstec
почти 3 года назад

Уязвимость службы Kubernetes облачной платформы Red Hat OpenShift Data Science (RHODS), позволяющая нарушителю отправлять произвольные API-запросы

EPSS

Процентиль: 34%
0.00137
Низкий

8 High

CVSS3

Дефекты

CWE-862