{"description":"Trending threats, MITRE ATT\u0026CK coverage, and detection metadata. Fed continuously.","feed_url":"https://feed.craftedsignal.io/cpes/cpe2.3abrainstormforceultimate_addons_for_wpbakery_page_builderwordpress/feed.json","home_page_url":"https://feed.craftedsignal.io/","items":[{"_cs_actors":[],"_cs_cpes":["cpe:2.3:a:brainstormforce:ultimate_addons_for_wpbakery_page_builder:*:*:*:*:*:wordpress:*:*"],"_cs_cves":[{"cvss":6.4,"id":"CVE-2024-5254"}],"_cs_exploited":false,"_cs_has_poc":false,"_cs_poc_references":[],"_cs_products":["OpenShift Container Platform"],"_cs_severities":["low"],"_cs_tags":[],"_cs_type":"advisory","_cs_vendors":["Red Hat"],"content_html":"\u003cp\u003eRed Hat has identified a security vulnerability affecting the oauth-proxy component within the OpenShift Container Platform, tracked as CVE-2024-5254. This flaw allows a remote, authenticated attacker to bypass established security restrictions. The vulnerability stems from improper handling of specific request patterns during the authentication and authorization flow. An attacker successful in exploiting this vulnerability can manipulate data or perform unauthorized operations within the affected OpenShift environment. Because the proxy is a critical component for managing access to containerized services, this flaw poses a risk to the integrity of service deployments and the underlying data accessed through the OpenShift API. Defenders should prioritize patching affected OpenShift clusters to mitigate the risk of unauthorized access and potential data manipulation by authenticated entities within the environment.\u003c/p\u003e\n\u003ch2 id=\"impact\"\u003eImpact\u003c/h2\u003e\n\u003cp\u003eSuccessful exploitation of this vulnerability permits an authenticated attacker to perform actions that should be restricted by the oauth-proxy, leading to potential unauthorized data modification or administrative actions within the cluster. This affects organizations relying on OpenShift for secure container orchestration and service access control.\u003c/p\u003e\n\u003ch2 id=\"recommendation\"\u003eRecommendation\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003eApply the security update provided by Red Hat for the OpenShift Container Platform to remediate CVE-2024-5254 across all cluster environments.\u003c/li\u003e\n\u003cli\u003eReview OpenShift audit logs for unexpected or anomalous HTTP requests targeting the oauth-proxy endpoint, particularly those utilizing atypical URL path patterns.\u003c/li\u003e\n\u003cli\u003eVerify authorization policies are correctly enforced for sensitive services behind the proxy following the application of the vendor-supplied patch.\u003c/li\u003e\n\u003c/ul\u003e\n","date_modified":"2026-08-11T11:59:21Z","date_published":"2026-08-11T11:59:21Z","id":"https://feed.craftedsignal.io/briefs/2026-08-openshift-oauth-proxy-bypass/","summary":"A vulnerability in the Red Hat OpenShift oauth-proxy component, identified as CVE-2024-5254, allows a remote authenticated attacker to bypass security controls and manipulate data.","title":"Security Bypass Vulnerability in Red Hat OpenShift oauth-proxy","url":"https://feed.craftedsignal.io/briefs/2026-08-openshift-oauth-proxy-bypass/"}],"language":"en","title":"CraftedSignal Threat Feed - Cpe:2.3:a:brainstormforce:ultimate_addons_for_wpbakery_page_builder:*:*:*:*:*:wordpress:*:*","version":"https://jsonfeed.org/version/1.1"}