Логотип exploitDog
bind:CVE-2025-13281
Консоль
Логотип exploitDog

exploitDog

bind:CVE-2025-13281

Количество 5

Количество 5

ubuntu логотип

CVE-2025-13281

около 2 месяцев назад

A half-blind Server Side Request Forgery (SSRF) vulnerability exists in kube-controller-manager when using the in-tree Portworx StorageClass. This vulnerability allows authorized users to leak arbitrary information from unprotected endpoints in the control plane’s host network (including link-local or loopback services).

CVSS3: 5.8
EPSS: Низкий
nvd логотип

CVE-2025-13281

около 2 месяцев назад

A half-blind Server Side Request Forgery (SSRF) vulnerability exists in kube-controller-manager when using the in-tree Portworx StorageClass. This vulnerability allows authorized users to leak arbitrary information from unprotected endpoints in the control plane’s host network (including link-local or loopback services).

CVSS3: 5.8
EPSS: Низкий
msrc логотип

CVE-2025-13281

около 1 месяца назад

Portworx Half-Blind SSRF in kube-controller-manager

CVSS3: 5.8
EPSS: Низкий
debian логотип

CVE-2025-13281

около 2 месяцев назад

A half-blind Server Side Request Forgery (SSRF) vulnerability exists i ...

CVSS3: 5.8
EPSS: Низкий
github логотип

GHSA-r6j8-c6r2-37rr

около 2 месяцев назад

kube-controller-manager is vulnerable to half-blind Server Side Request Forgery through in-tree Portworx StorageClass

CVSS3: 5.8
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
ubuntu логотип
CVE-2025-13281

A half-blind Server Side Request Forgery (SSRF) vulnerability exists in kube-controller-manager when using the in-tree Portworx StorageClass. This vulnerability allows authorized users to leak arbitrary information from unprotected endpoints in the control plane’s host network (including link-local or loopback services).

CVSS3: 5.8
0%
Низкий
около 2 месяцев назад
nvd логотип
CVE-2025-13281

A half-blind Server Side Request Forgery (SSRF) vulnerability exists in kube-controller-manager when using the in-tree Portworx StorageClass. This vulnerability allows authorized users to leak arbitrary information from unprotected endpoints in the control plane’s host network (including link-local or loopback services).

CVSS3: 5.8
0%
Низкий
около 2 месяцев назад
msrc логотип
CVE-2025-13281

Portworx Half-Blind SSRF in kube-controller-manager

CVSS3: 5.8
0%
Низкий
около 1 месяца назад
debian логотип
CVE-2025-13281

A half-blind Server Side Request Forgery (SSRF) vulnerability exists i ...

CVSS3: 5.8
0%
Низкий
около 2 месяцев назад
github логотип
GHSA-r6j8-c6r2-37rr

kube-controller-manager is vulnerable to half-blind Server Side Request Forgery through in-tree Portworx StorageClass

CVSS3: 5.8
0%
Низкий
около 2 месяцев назад

Уязвимостей на страницу