CVEs (2)
CVE VENDORS PRODUCTS UPDATED PUBLISHED CVSS |
|---|
1Redhat 2Openshift Container Platform Openshift RouterJul 24, 2026 May 29, 2026 N/A· v4 7.5 HIGH· v3 N/A· v2 A flaw was found in the OpenShift Router. When a Route has `insecureEdgeTerminationPolicy` set to Allow, the HTTP frontend does not remove `X-SSL-Client-*` headers from incoming requests. This allows an unauthenticated a...Show more |
1Redhat 2Openshift Container Platform Openshift RouterJul 21, 2026 May 29, 2026 N/A· v4 6.5 MEDIUM· v3 N/A· v2 A flaw was found in the OpenShift Router. A user with EndpointSlice write access can exploit this vulnerability by creating a Service backed by an FQDN (Fully Qualified Domain Name) EndpointSlice that resolves to a cloud...Show more |