VendorsOpenShiftoriginall versions
Vulnerabilities

OpenShift Origin

Ranked by severity, then by exploit likelihood. Click a CVE ID for its full record.

2CVEs
CVE-2015-3207
In Openshift Origin 3 the cookies being set in console have no 'secure', 'HttpOnly' attributes.
Published 2022-07-07 · Modified
5.3EPSS 0.007
CVE-2015-8945
openshift-node in OpenShift Origin 1.1.6 and earlier improperly stores router credentials as envvars in the pod when the --credentials option is used, which allows local users to obtain sensitive private key information by reading the systemd journal.
Published 2016-08-05 · Modified
5.1EPSS 0.004