CVE-2025-59303 | Teknoloji dünyasından en güncel haberleri ve güvenlikle ilgili gelişmeleri takip edin.

HAProxy Kubernetes Ingress Controller before 3.1.13, when the config-snippets feature flag is used, accepts config snippets from users with create/update permis…
Medium CVSS: 6.4

CVE-2025-59303

HAProxy Kubernetes Ingress Controller before 3.1.13, when the config-snippets feature flag is used, accepts config snippets from users with create/update permissions. This can result in obtaining an ingress token secret as a response. The fixed versions of HAProxy Enterprise Kubernetes Ingress Controller are 3.0.16-ee1, 1.11.13-ee1, and 1.9.15-ee1.
Vendor
-
Product
-
CWE
CWE-791
Yayın Tarihi
2025-10-08 16:15:38
Güncelleme
2025-10-08 19:38:09
Source Identifier
cve@mitre.org
KEV Date Added
-

Kategoriler

Referanslar