CVE-2025-6193 | Teknoloji dünyasından en güncel haberleri ve güvenlikle ilgili gelişmeleri takip edin.

A command injection vulnerability was discovered in the TrustyAI Explainability toolkit. Arbitrary commands placed in certain fields of a LMEValJob custom resou…
Medium CVSS: 5.9

CVE-2025-6193

A command injection vulnerability was discovered in the TrustyAI Explainability toolkit. Arbitrary commands placed in certain fields of a LMEValJob custom resource (CR) may be executed in the LMEvalJob pod's terminal. This issue can be exploited via a maliciously crafted LMEvalJob by a user with permissions to deploy a CR.
Vendor
-
Product
-
CWE
CWE-78
Yayın Tarihi
2025-06-20 16:15:29
Güncelleme
2026-03-25 13:16:24
Source Identifier
secalert@redhat.com
KEV Date Added
-

Kategoriler

Referanslar