CVE Vulnerabilities

CVE-2025-7445

Insertion of Sensitive Information into Log File

Published: Sep 05, 2025 | Modified: Sep 05, 2025
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
RedHat/V2
RedHat/V3
Ubuntu
MEDIUM

Kubernetes secrets-store-sync-controller in versions before 0.0.2 discloses service account tokens in logs.

Weakness

The product writes sensitive information to a log file.

Potential Mitigations

References