Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

Количество 3

Количество 3

redhat логотип

CVE-2026-6437

4 месяца назад

Improper neutralization of argument delimiters in the volume handling component in AWS EFS CSI Driver (aws-efs-csi-driver) before v3.0.1 allows remote authenticated users with PersistentVolume creation permissions to inject arbitrary mount options via comma injection. To remediate this issue, users should upgrade to version v3.0.1

CVSS3: 6.5
EPSS: Низкий
nvd логотип

CVE-2026-6437

4 месяца назад

Improper neutralization of argument delimiters in the volume handling component in AWS EFS CSI Driver (aws-efs-csi-driver) before v3.0.1 allows remote authenticated users with PersistentVolume creation permissions to inject arbitrary mount options via comma injection. To remediate this issue, users should upgrade to version v3.0.1

CVSS3: 6.5
EPSS: Низкий
github логотип

GHSA-mph4-q2vm-w2pw

4 месяца назад

Amazon EFS CSI Driver has mount option injection via unsanitized volumeHandle and mounttargetip fields

CVSS3: 6.5
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
redhat логотип
CVE-2026-6437

Improper neutralization of argument delimiters in the volume handling component in AWS EFS CSI Driver (aws-efs-csi-driver) before v3.0.1 allows remote authenticated users with PersistentVolume creation permissions to inject arbitrary mount options via comma injection. To remediate this issue, users should upgrade to version v3.0.1

CVSS3: 6.5
0%
Низкий
4 месяца назад
nvd логотип
CVE-2026-6437

Improper neutralization of argument delimiters in the volume handling component in AWS EFS CSI Driver (aws-efs-csi-driver) before v3.0.1 allows remote authenticated users with PersistentVolume creation permissions to inject arbitrary mount options via comma injection. To remediate this issue, users should upgrade to version v3.0.1

CVSS3: 6.5
0%
Низкий
4 месяца назад
github логотип
GHSA-mph4-q2vm-w2pw

Amazon EFS CSI Driver has mount option injection via unsanitized volumeHandle and mounttargetip fields

CVSS3: 6.5
0%
Низкий
4 месяца назад

Уязвимостей на страницу