RHSA-2025:3607HighCVSS 7.5

Red Hat Security Advisory: Red Hat OpenShift distributed tracing platform (Tempo) 3.5.1 release

Published
April 4, 2025
Last Modified
June 3, 2026

🔗 CVE IDs covered (3)

📋 Description

CVE-2025-2786 — tempo-operator: ServiceAccount Token Exposure Leading to Token and Subject Access Reviews in OpenShift Tempo Operator CVE-2025-2842 — tempo-operator: Tempo Operator Token Exposition lead to read sensitive data CVE-2025-30204 — golang-jwt/jwt: jwt-go allows excessive memory allocation during header parsing

🔗 References (7)