kube-audit-rest is a simple logger of mutation/creation requests to the k8s api. If the "full-elastic-stack" example vector configuration was used for a real cluster, the previous values of kubernetes secrets would have been disclosed in the audit messages. This vulnerability is fixed in 1.0.16.
CVSS
No CVSS.
References
Configurations
No configuration.
History
29 Jan 2025, 21:15
Type | Values Removed | Values Added |
---|---|---|
New CVE |
Information
Published : 2025-01-29 21:15
Updated : 2025-01-29 21:15
NVD link : CVE-2025-24884
Mitre link : CVE-2025-24884
CVE.ORG link : CVE-2025-24884
JSON object : View
Products Affected
No product.