← Back to CVE List

CVE-2023-0813

Published: 2023-09-15T21:15Z
Last Modified: 2024-11-21T07:37Z
Source: MITRE CVE List
License: MITRE-CVE-TOS
A flaw was found in the Network Observability plugin for OpenShift console. Unless the Loki authToken configuration is set to FORWARD mode, authentication is no longer enforced, allowing any user who can connect to the OpenShift Console in an OpenShift cluster to retrieve flows without authentication. > MITRE Terms of Use apply – see LICENSE‑MITRE.txt