Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

CVE-2024-45338 #1003

Closed
snailshadow opened this issue Jan 14, 2025 · 1 comment
Closed

CVE-2024-45338 #1003

snailshadow opened this issue Jan 14, 2025 · 1 comment
Labels
bug Something isn't working

Comments

@snailshadow
Copy link

Describe the bug
A clear and concise description of what the bug is.

I found a high level CVE in the latest version 0.9.1, please help to fix it
Image

To Reproduce
Steps to reproduce the behavior:

  1. Deploy application with the following yaml file with the following VSO custom resources.
  2. Any custom resources used for your secrets.
  3. ...
  4. See error (vault-secrets-operator logs, application logs, etc.)

Application deployment:

# Paste your application deployment yaml and custom resources here.
# Be sure to scrub any sensitive values!

Other useful info to include: kubectl describe deployment <app> and kubectl describe <vso-custom-resource> <app> output.

Expected behavior
A clear and concise description of what you expected to happen.

Environment

  • Kubernetes version:
    • Distribution or cloud vendor (OpenShift, EKS, GKE, AKS, etc.):
    • Other configuration options or runtime services (istio, etc.):
  • vault-secrets-operator version:

Additional context
Add any other context about the problem here.

@snailshadow snailshadow added the bug Something isn't working label Jan 14, 2025
@heatherezell
Copy link
Collaborator

Hello! We request that folks email [email protected] for concerns with CVEs, etc. Thanks for your understanding.

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
bug Something isn't working
Projects
None yet
Development

No branches or pull requests

2 participants