CVE Published: 05/06/2024 |
CVE Updated: 24/11/2024 |
CVE Year: 2024 Source: redhat |
Vendor: Red Hat |
Product: Red Hat OpenShift Container Platform 4.12 Status : PUBLISHED
CVE-2024-5037 Description
A flaw was found in OpenShift\'s Telemeter. If certain conditions are in place, an attacker can use a forged token to bypass the issue ("iss") check during JSON web token (JWT) authentication.