CPE
A signature verification flaw in the noobaa-core component allows attackers to manipulate S3 presigned URLs, leading to unauthorized object copy operations and data access.