Vulnerabilities in OpenShift
5 resultsCVE-2014-0163—Openshift has shell command injection flaws due to unsanitized data being passed into shell commands.EPSS 2.0%CVE-2020-10752—A flaw was found in the OpenShift API Server, where it failed to sufficiently protect OAuthTokens by leaking them into the logs when an API EPSS 1.1%CVE-2021-4294LOWOpenShift OSIN CheckClientSecret timing discrepancyEPSS 0.7%CVE-2013-0196—A CSRF issue was found in OpenShift Enterprise 1.2. The web console is using 'Basic authentication' and the REST API has no CSRF attack protEPSS 0.4%CVE-2014-0023—OpenShift: Install script has temporary file creation vulnerability which can result in arbitrary code executionEPSS 0.4%