← Back

Openshift

openshift

2 CVEs • 1 product

Products (1)

Click to collapse
Toggle
Origin
origin

CVEs (2)

CVE
VENDORS
PRODUCTS
UPDATED
PUBLISHED
CVSS
1Openshift
1Origin
Nov 21, 2024
Jul 7, 2022
N/A· v4
5.3 MEDIUM· v3
5.0 MEDIUM· v2
In Openshift Origin 3 the cookies being set in console have no 'secure', 'HttpOnly' attributes.
1Openshift
1Origin
May 6, 2026
Aug 5, 2016
N/A· v4
5.1 MEDIUM· v3
1.9 LOW· v2
openshift-node in OpenShift Origin 1.1.6 and earlier improperly stores router credentials as envvars in the pod when the --credentials option is used, which allows local users to obtain sensitive private key information...Show more
openshift-node in OpenShift Origin 1.1.6 and earlier improperly stores router credentials as envvars in the pod when the --credentials option is used, which allows local users to obtain sensitive private key information by reading the systemd journal.Show less