blob: 34285761501ffa7b224f4ece92d1c3473f29759e [file] [log] [blame]
id: GO-2025-3434
modules:
- module: github.com/kubewarden/kubewarden-controller
versions:
- introduced: 1.7.0
- fixed: 1.21.0
vulnerable_at: 1.21.0-rc2
summary: |-
KubeWarden's AdmissionPolicy and AdmissionPolicyGroup policies can be used to
alter PolicyReport resources in github.com/kubewarden/kubewarden-controller
cves:
- CVE-2025-24376
ghsas:
- GHSA-fc89-jghx-8pvg
references:
- advisory: https://github.com/kubewarden/kubewarden-controller/security/advisories/GHSA-fc89-jghx-8pvg
- advisory: https://nvd.nist.gov/vuln/detail/CVE-2025-24376
- fix: https://github.com/kubewarden/kubewarden-controller/commit/8124039b5f0c955d0ee8c8ca12d4415282f02d2c
source:
id: GHSA-fc89-jghx-8pvg
created: 2025-02-04T13:47:30.54627-05:00
review_status: UNREVIEWED