ZeroHour

CVE-2025-14243

CVSS 3.1
5.3 medium
EPSS
<1%p21
Published
()
Modified
Description

A flaw was found in the OpenShift Mirror Registry. This vulnerability allows an unauthenticated, remote attacker to enumerate valid usernames and email addresses via different error messages during authentication failures and account creation.

Vendors
redhat
Products
mirror registry for red hat openshift
Weakness
CWE-209
Vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:N

In the news

No ingested article mentions this CVE yet.