GHSA-gf6j-8mg3-547mMedium

In Eclipse Ankaios versions 0.6.0 to before 1.0.4, `LogRule::matches` in the agent control...

Published
September 17, 2026
Last Modified
September 17, 2026

🔗 CVE IDs covered (1)

📋 Description

In Eclipse Ankaios versions 0.6.0 to before 1.0.4, LogRule::matches in the agent control-interface authorizer stops at the first wildcard pattern in a single rule instead of evaluating later entries, which can cause deny LogRule entries to be skipped and allow unauthorized access to another workload's logs.

🔗 References (6)