← Back

CVE-2025-8415

nvd nist
Published: Aug 20, 2025Modified: Jun 17, 2026Deferred

JSON object

Loading...
5.9
Vector
CVSS:3.1/AV:N/AC:H/PR:H/UI:N/S:U/C:H/I:H/A:N
Exploitability: 0.7 / Impact: 5.2
Source: secalert@redhat.com (Secondary)

Description

A vulnerability was found in the Cryostat HTTP API. Cryostat's HTTP API binds to all network interfaces, allowing possible external visibility and access to the API port if Network Policies are disabled, allowing an unauthenticated, malicious attacker to jeopardize the environment.

Timeline

No history available yet.