← Back

CVE-2025-62878

nvd nist
Published: Feb 25, 2026Modified: Jun 17, 2026Deferred

JSON object

Loading...
9.9
Vector
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:C/C:H/I:H/A:H
Exploitability: 3.1 / Impact: 6.0
Source: meissner@suse.de (Secondary)

Description

A malicious user can manipulate the parameters.pathPattern to create PersistentVolumes in arbitrary locations on the host node, potentially overwriting sensitive files or gaining access to unintended directories.

Timeline

No history available yet.