An input validation vulnerability exists in Openshift...
Low severity
Unreviewed
Published
Oct 17, 2022
to the GitHub Advisory Database
•
Updated Jan 31, 2023
Description
Published by the National Vulnerability Database
Oct 17, 2022
Published to the GitHub Advisory Database
Oct 17, 2022
Last updated
Jan 31, 2023
An input validation vulnerability exists in Openshift Enterprise due to a 1:1 mapping of tenants in Hawkular Metrics and projects/namespaces in OpenShift. If a user creates a project called "MyProject", and then later deletes it another user can then create a project called "MyProject" and access the metrics stored from the original "MyProject" instance.
References