VDB
CVE-2025-30162
CVE-2025-30162
PUBLISHED
CVSS 4.300000190734863 MEDIUM
East-west traffic not subject to egress policy enforcement for requests via Gateway API load balancers
EPSS 0.01% · 1.3th percentile
Risk Scores
CVSS 3.1
4.300000190734863
CVSS:3.1/AV:L/AC:L/PR:N/UI:N/S:C/C:L/I:N/A:N
EPSS Score
0.01%
1.3th percentile
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Bitnami | cilium | 1.15.0 |
| github.com | cilium/proxy | |
| Bitnami | cilium | 1.15.0, 1.15.0, 1.15.0 |
| Bitnami | cilium-operator | 1.15.0, 1.15.0, 1.15.0 |
| Bitnami | cilium-operator | 1.15.0 |
| cilium | cilium | |
| Bitnami | hubble-relay | 1.15.0, 1.15.0, 1.15.0 |
Exploit Intelligence
- CIRCL seen: CVE-2025-30162 (circl-sighting)
- CIRCL seen: CVE-2025-30162 (circl-sighting)
- https://github.com/cilium/cilium/security/advisories/GHSA-24qp-4xx8-3jvj (circl)
- https://github.com/cilium/proxy/pull/1172 (circl)
- https://docs.cilium.io/en/stable/network/lb-ipam (circl)
Timeline
- Jan 21, 1970 Fix PR Merged
- Jan 21, 1970 Security Advisory
- Mar 24, 2025 CVE Published
- Mar 24, 2025 Coalition ESS Score
- Mar 24, 2025 PoC Published
- Mar 24, 2025 PoC Published
- Mar 25, 2025 EPSS Score
- Mar 28, 2025 Coalition ESS Score
- Apr 7, 2025 EPSS Score
- Apr 20, 2025 EPSS Score
- May 3, 2025 EPSS Score
- May 17, 2025 EPSS Score