Количество 3
Количество 3
CVE-2025-14443
A flaw was found in ose-openshift-apiserver. This vulnerability allows internal network enumeration, service discovery, limited information disclosure, and potential denial-of-service (DoS) through Server-Side Request Forgery (SSRF) due to missing IP address and network-range validation when processing user-supplied image references.
CVE-2025-14443
A flaw was found in ose-openshift-apiserver. This vulnerability allows internal network enumeration, service discovery, limited information disclosure, and potential denial-of-service (DoS) through Server-Side Request Forgery (SSRF) due to missing IP address and network-range validation when processing user-supplied image references.
GHSA-gxvv-45f6-3ch8
openshift-apiserver: SSRF via Missing IP/Network-Range Validation in User-Supplied Image References
Уязвимостей на страницу
Уязвимость | CVSS | EPSS | Опубликовано | |
|---|---|---|---|---|
CVE-2025-14443 A flaw was found in ose-openshift-apiserver. This vulnerability allows internal network enumeration, service discovery, limited information disclosure, and potential denial-of-service (DoS) through Server-Side Request Forgery (SSRF) due to missing IP address and network-range validation when processing user-supplied image references. | CVSS3: 6.4 | 0% Низкий | 9 месяцев назад | |
CVE-2025-14443 A flaw was found in ose-openshift-apiserver. This vulnerability allows internal network enumeration, service discovery, limited information disclosure, and potential denial-of-service (DoS) through Server-Side Request Forgery (SSRF) due to missing IP address and network-range validation when processing user-supplied image references. | CVSS3: 6.4 | 0% Низкий | 9 месяцев назад | |
GHSA-gxvv-45f6-3ch8 openshift-apiserver: SSRF via Missing IP/Network-Range Validation in User-Supplied Image References | CVSS3: 8.5 | 0% Низкий | 9 месяцев назад |
Уязвимостей на страницу