VDB

CVE-2023-0923

CVE-2023-0923 PUBLISHED CVSS 8 HIGH

A flaw was found in the Kubernetes service for notebooks in RHODS, where it does not prevent pods from other namespaces and applications from making requests to the Jupyter API. This flaw can lead to file content exposure and other issues.

EPSS 0.94% · 58.0th percentile

Risk Scores

CVSS 3.1
8
CVSS:3.1/AV:A/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
EPSS Score
0.94%
58.0th percentile

Affected Products

VendorProductVersions
Red HatRHODS-1.22-RHEL-8v1.22.1-3
redhatopenshift_data_science1.22

Timeline

  • Sep 15, 2023 CVE Published
  • Sep 16, 2023 EPSS Score
  • Oct 19, 2023 EPSS Score
  • Nov 20, 2023 EPSS Score
  • Dec 23, 2023 EPSS Score
  • Jan 24, 2024 EPSS Score
  • Feb 26, 2024 EPSS Score
  • Mar 29, 2024 EPSS Score
  • May 1, 2024 EPSS Score
  • Jun 2, 2024 EPSS Score
  • Jul 6, 2024 EPSS Score
  • Aug 2, 2024 CVE Updated
Open in Interactive Console →
$ Console Community · 100/wk Open console ›