Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-qrgj-q9rw-gjrv

Опубликовано: 13 мая 2022
Источник: github
Github: Не прошло ревью
CVSS3: 5

Описание

The OpenShift Enterprise cluster-read can access webhook tokens which would allow an attacker with sufficient privileges to view confidential webhook tokens.

The OpenShift Enterprise cluster-read can access webhook tokens which would allow an attacker with sufficient privileges to view confidential webhook tokens.

EPSS

Процентиль: 38%
0.00165
Низкий

5 Medium

CVSS3

Дефекты

CWE-200

Связанные уязвимости

CVSS3: 5
redhat
почти 8 лет назад

The OpenShift Enterprise cluster-read can access webhook tokens which would allow an attacker with sufficient privileges to view confidential webhook tokens.

CVSS3: 5
nvd
больше 7 лет назад

The OpenShift Enterprise cluster-read can access webhook tokens which would allow an attacker with sufficient privileges to view confidential webhook tokens.

EPSS

Процентиль: 38%
0.00165
Низкий

5 Medium

CVSS3

Дефекты

CWE-200