OpenShift HyperShift是OpenShift公司的一款托管Kubernetes控制平面的云计算服务。 OpenShift HyperShift存在授权问题漏洞,该漏洞由于缺少认证导致客户端证书未被验证,远程攻击者可通过Konnectivity集群端点连接为未授权代理,加入路由池,从而可能代理、检查、修改或丢弃控制平面到节点的流量。
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POC| CVE-2026-12701 | 9.0 CRITICAL | Pulpcore: pulpcore: relative_path_validator bypass via directory traversal in filesystemex |
| CVE-2026-64612 | 7.5 HIGH | Libcupsfilters: cups-filters: libcupsfilters: cups image filter process abort via malforme |
| CVE-2026-12080 | 7.3 HIGH | Qemu-kvm: qemu-guest-agent: local privilege escalation via symlink attack in guest-ssh-add |
| CVE-2026-15813 | 6.5 MEDIUM | Kronosnet: kronosnet: memory corruption and out-of-bounds access via malformed network pac |
| CVE-2026-16277 | 6.5 MEDIUM | Rpcbind: rpcbind: stack buffer overflow in rpcinfo rpcbaddrlist() |
| CVE-2026-15588 | 5.3 MEDIUM | Gdbusserver: glib2: gdbusserver pre-authentication dos via unbounded sasl line buffering |
| CVE-2026-16254 | 4.3 MEDIUM | Claircore: claircore: denial of service via out-of-bounds slice in claircore's apk install |
No comments yet