<?xml version='1.0' encoding='UTF-8'?>
<?xml-stylesheet href="/static/style.xsl" type="text/xsl"?>
<feed xmlns="http://www.w3.org/2005/Atom" xml:lang="en">
  <id>https://cve.radiocsirt.org/rss/recent/all/10</id>
  <title>Most recent entries from all</title>
  <updated>2026-10-02T23:51:35.423796+00:00</updated>
  <author>
    <name>Vulnerability-Lookup</name>
    <email>csirt@opendfir.org</email>
  </author>
  <link href="https://cve.radiocsirt.org" rel="alternate"/>
  <generator uri="https://lkiesow.github.io/python-feedgen" version="1.0.0">python-feedgen</generator>
  <subtitle>Contains only the most 10 recent entries.</subtitle>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/euvd-2026-232063</id>
    <title>EUVD-2026-232063</title>
    <updated>2026-10-02T23:51:35.560391+00:00</updated>
    <content>EUVD-2026-232063</content>
    <link href="https://cve.radiocsirt.org/vuln/euvd-2026-232063"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/fkie_cve-2022-1798</id>
    <title>fkie_cve-2022-1798</title>
    <updated>2026-10-02T23:51:35.560430+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>A path traversal vulnerability in KubeVirt versions up to 0.56 (and 0.55.1) on all platforms allows a user able to configure the kubevirt to read arbitrary files on the host filesystem which are publicly readable or which are readable for UID 107 or GID 107. /proc/self/&lt;&gt; is not accessible.</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/fkie_cve-2022-1798"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/ghsa-cvx8-ppmc-78hm</id>
    <title>Withdrawn: GHSA-cvx8-ppmc-78hm — Duplicate Advisory: KubeVirt arbitrary host file read from the VM</title>
    <updated>2026-10-02T23:51:35.560466+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml"><p><strong>Withdrawn by the publisher.</strong></p>
<p><strong>Affected:</strong> Go: kubevirt.io/kubevirt</p>
<p>## Duplicate Advisory
This advisory is a duplicate of [GHSA-qv98-3369-g364](https://github.com/advisories/GHSA-qv98-3369-g364). This link is maintained to preserve external references.</p>
<p>## Original Description</p>
<p>**Summary**
As part of a Kubevirt audit performed by NCC group, a finding dealing with systemic lack of path sanitization which leads to a path traversal was identified.  Google tested the exploitability of the paths in the audit report and identified that when combined with another vulnerability one of the paths leads to an arbitrary file read on the host from the VM.</p>
<p>The read operations are limited to files which are publicly readable or which are readable for UID 107 or GID 107. /proc/self/&lt;&gt; is not accessible.</p>
<p>**Severity**</p>
<p>Moderate - The vulnerability is proven to exist in an open source version of KubeVirt by NCC Group while being combined with Systemic Lack of Path Sanitization, which leads to Path traversal.</p>
<p>**Proof of Concept**</p>
<p>The initial VMI specifications can be written as such to reproduce the issue:</p>
<p>```</p>
<p>apiVersion: kubevirt.io/v1
kind: VirtualMachineInstance
metadata:
  name: vmi-fedora
spec:
  domain:
    devices:
      disks:
      - disk:
          bus: virtio
        name: containerdisk
      - disk:
          bus: virtio
        name: cloudinitdisk
      - disk:
          bus: virtio
        name: containerdisk1
      rng: {}
    resources:
      requests:
        memory: 1024M
  terminationGracePeriodSeconds: 0
  volumes:
  - containerDisk:…</p></div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/ghsa-cvx8-ppmc-78hm"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/gsd-2022-1798</id>
    <title>gsd-2022-1798</title>
    <updated>2026-10-02T23:51:35.560519+00:00</updated>
    <content>gsd-2022-1798</content>
    <link href="https://cve.radiocsirt.org/vuln/gsd-2022-1798"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/msrc_cve-2022-1798</id>
    <title>msrc_CVE-2022-1798 — Path Traversal vulnerability in Kubevirt</title>
    <updated>2026-10-02T23:51:35.560533+00:00</updated>
    <content>msrc_CVE-2022-1798</content>
    <link href="https://cve.radiocsirt.org/vuln/msrc_cve-2022-1798"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/rhsa-2022:6351</id>
    <title>RHSA-2022:6351 — Red Hat Security Advisory: OpenShift Virtualization 4.10.5 Images security and bug fix update</title>
    <updated>2026-10-02T23:51:35.560549+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>kubeVirt: Arbitrary file read on the host from KubeVirt VMs go-restful: Authorization Bypass Through User-Controlled Key</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/rhsa-2022:6351"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/suse-su-2022:3321-1</id>
    <title>SUSE-SU-2022:3321-1 — Security update for kubevirt, virt-api-container, virt-controller-container, virt-handler-container, virt-launcher-cont…</title>
    <updated>2026-10-02T23:51:35.560567+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>Security update for kubevirt, virt-api-container, virt-controller-container, virt-handler-container, virt-launcher-container, virt-libguestfs-tools-container, virt-operator-container</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/suse-su-2022:3321-1"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/wid-sec-w-2022-1312</id>
    <title>WID-SEC-W-2022-1312 — Red Hat OpenShift: Mehrere Schwachstellen</title>
    <updated>2026-10-02T23:51:35.560585+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>Ein entfernter, anonymer oder authentisierter Angreifer kann mehrere Schwachstellen in Red Hat OpenShift ausnutzen, um Informationen offenzulegen und Sicherheitsmaßnahmen zu umgehen.</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/wid-sec-w-2022-1312"/>
  </entry>
</feed>
