RHSA-2025:3593HighCVSS 7.5

Red Hat Security Advisory: opentelemetry-collector security update

Published
April 3, 2025
Last Modified
May 28, 2026

🔗 CVE IDs covered (4)

📋 Description

CVE-2024-45336 — golang: net/http: net/http: sensitive headers incorrectly sent after cross-domain redirect CVE-2025-22868 — golang.org/x/oauth2/jws: Unexpected memory consumption during token parsing in golang.org/x/oauth2/jws CVE-2025-27144 — go-jose: Go JOSE's Parsing Vulnerable to Denial of Service CVE-2025-29786 — github.com/expr-lang/expr: Memory Exhaustion in Expr Parser with Unrestricted Input

🔗 References (7)