[UPDATED] Details regarding CVE-2025-14025
Updated -
While this CVE doesn't allow privilege escalation, it defeats the intentional safety mechanism of read-only token scopes. Until the fix is applied, defense-in-depth through RBAC least privilege, credential restrictions, and careful token management is essential to limit potential damage.
Mitigations (Until Patch Releas...
Subscriber exclusive content
A Red Hat subscription provides unlimited access to our knowledgebase, tools, and much more.