CVE-2024-5037
05.06.2024, 18:15
A flaw was found in OpenShift's Telemeter. If certain conditions are in place, an attacker can use a forged token to bypass the issue ("iss") check during JSON web token (JWT) authentication.Enginsight
Vendor | Product | Version |
---|---|---|
redhat | openshift_container_platform | 4.0 |
redhat | openshift_distributed_tracing | 2.0 |
𝑥
= Vulnerable software versions
Common Weakness Enumeration
References