← Volver al buscador de CVEs

CVE-2026-71567

FakeFish

Descripción

In openshift-metal3/fakefish there is a repeated pattern in some of the scripts where shell variables are injected without quoting them either into command lines or into manifests. This mostly applies to the Image URL and BMC credentials (which are not verified by FakeFish).

CVSS 7.7EPSS 0.19499999999999998%Riesgo 0.78
Ver fuente
Publicación
2026-08-17 15:16:57
Versiones afectadas
unknown
Tipo
Otro
Última modificación
2026-08-17 16:17:44
Vector
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:C/C:N/I:H/A:N