Vulnerabilities > Redhat > Noobaa Operator > 1.0.2

DATE CVE VULNERABILITY TITLE RISK
2021-06-02 CVE-2021-3529 Cross-site Scripting vulnerability in Redhat Noobaa-Operator and Openshift Container Platform
A flaw was found in noobaa-core in versions before 5.7.0.
network
redhat CWE-79
6.8
2021-05-13 CVE-2021-3528 Information Exposure Through Log Files vulnerability in Redhat Noobaa-Operator
A flaw was found in noobaa-operator in versions before 5.7.0, where internal RPC AuthTokens between the noobaa operator and the noobaa core are leaked into log files.
network
low complexity
redhat CWE-532
8.8