在 hawtio-operator 中发现了一个漏洞。该 operator 会从 命名空间读取 OpenShift Service CA 的私有签名密钥,并使用该密钥签发客户端证书,证书的 Subject Common Name (CN) 由创建 Hawtio 命名空间自定义资源(CR)的提供者指定。 由于该 operator 随附一个 ClusterRole,将 Hawtio CR 的权限聚合到 和 角色中,因此任何在任一命名空间中具有 访问权限的用户,都能获得一个由 Service CA 签发的、Subject
| Vendor | Product | Version Range | Status |
|---|---|---|---|
| Red Hat | Red Hat build of Apache Camel - HawtIO 4 | any |
affected |
any |
affected | ||
any |
affected |
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| Vendor | Product | Affected Versions | CPE | Subscribe |
|---|---|---|---|---|
| Red Hat | Red Hat build of Apache Camel - HawtIO 4 | - |
cpe:/a:redhat:apache_camel_hawtio:4
|
|
| Red Hat | Red Hat build of Apache Camel - HawtIO 4 | - |
cpe:/a:redhat:apache_camel_hawtio:4
|
|
| Red Hat | Red Hat build of Apache Camel - HawtIO 4 | - |
cpe:/a:redhat:apache_camel_hawtio:4
|
|
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POC| CVE-2026-80219 | 8.7 HIGH | Hawtio-operator: hawtio-operator: oauthclient created with grantmethod auto and no secret |
| CVE-2026-74860 | 8.5 HIGH | Libxml2: double-free/uaf in libxml2 python bindings |
| CVE-2026-77968 | 8.2 HIGH | Hawtio-operator: hawtio-operator: cluster-wide secrets read/write granted to operator serv |
| CVE-2026-76561 | 7.2 HIGH | Pki-core: dogtag/pki: certprofile-import allows code execution via unsanitized profile con |
| CVE-2026-74859 | 6.8 MEDIUM | Gnome-tweaks: path traversal in theme installer |
| CVE-2026-18090 | 6.1 MEDIUM | Gdk-pixbuf: gdk-pixbuf: heap out-of-bounds read in uncompress() via crafted icns rle block |
| CVE-2026-86564 | 3.3 LOW | Dpdk: dpdk: missing length validation before reading command_data in virtio-net control qu |
No comments yet