Analysis and contextual insights are available on OpenCVE Cloud.
No vendor fix or workaround currently provided.
Additional remediation guidance may be available on OpenCVE Cloud.
Tracking
Sign in to view the affected projects.
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2025-5341 | golang.org/x/oauth2 Improper Validation of Syntactic Correctness of Input vulnerability |
Github GHSA |
GHSA-6v2p-p543-phr9 | golang.org/x/oauth2 Improper Validation of Syntactic Correctness of Input vulnerability |
Thu, 03 Jul 2025 02:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| CPEs | cpe:/a:redhat:openshift:4.14::el8 |
Thu, 26 Jun 2025 02:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Redhat openshift Api Data Protection
|
|
| CPEs | cpe:/a:redhat:openshift_api_data_protection:1.3::el9 | |
| Vendors & Products |
Redhat openshift Api Data Protection
|
Wed, 25 Jun 2025 02:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| CPEs | cpe:/a:redhat:acm:2.10::el9 |
Wed, 18 Jun 2025 16:00:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| CPEs | cpe:/a:redhat:openshift:4.19::el9 |
Tue, 17 Jun 2025 16:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| CPEs | cpe:/a:redhat:openshift_distributed_tracing:3.6::el8 |
Fri, 13 Jun 2025 19:00:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| CPEs | cpe:/a:redhat:openshift:4.16::el9 |
Fri, 06 Jun 2025 22:00:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Redhat rhmt
|
|
| CPEs | cpe:/a:redhat:openshift:4.17::el9 cpe:/a:redhat:openshift_data_foundation:4.15::el9 cpe:/a:redhat:rhmt:1.8::el8 |
|
| Vendors & Products |
Redhat rhmt
|
Tue, 03 Jun 2025 06:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| CPEs | cpe:/a:redhat:multicluster_engine:2.4::el8 |
Thu, 29 May 2025 19:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| CPEs | cpe:/a:redhat:openshift_gitops:1.14::el8 |
Wed, 21 May 2025 03:00:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| CPEs | cpe:/a:redhat:openshift:4.18::el9 |
Fri, 16 May 2025 03:00:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Redhat openshift Gitops
|
|
| CPEs | cpe:/a:redhat:openshift_gitops:1.15::el8 | |
| Vendors & Products |
Redhat openshift Gitops
|
Wed, 14 May 2025 03:00:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| CPEs | cpe:/o:redhat:enterprise_linux:10.0 |
Tue, 13 May 2025 06:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| CPEs | cpe:/a:redhat:acm:2.11::el9 |
Wed, 07 May 2025 15:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| CPEs | cpe:/a:redhat:multicluster_engine:2.6::el8 cpe:/a:redhat:multicluster_engine:2.6::el9 |
Tue, 06 May 2025 15:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Redhat openshift Data Foundation
|
|
| CPEs | cpe:/a:redhat:multicluster_engine:2.5::el8 cpe:/a:redhat:openshift_data_foundation:4.18::el9 |
|
| Vendors & Products |
Redhat openshift Data Foundation
|
Thu, 01 May 2025 20:00:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Go
Go jws |
|
| CPEs | cpe:2.3:a:go:jws:*:*:*:*:*:go:*:* | |
| Vendors & Products |
Go
Go jws |
Fri, 18 Apr 2025 03:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| CPEs | cpe:/a:redhat:multicluster_engine:2.7::el8 cpe:/a:redhat:multicluster_engine:2.7::el9 |
Thu, 17 Apr 2025 15:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Redhat openshift
|
|
| CPEs | cpe:/a:redhat:acm:2.12::el9 cpe:/a:redhat:openshift:4.15::el9 |
|
| Vendors & Products |
Redhat openshift
|
Wed, 16 Apr 2025 15:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Redhat openshift Ai
Redhat openshift Devspaces |
|
| CPEs | cpe:/a:redhat:openshift_ai:2.19::el8 cpe:/a:redhat:openshift_devspaces:3::el9 |
|
| Vendors & Products |
Redhat openshift Ai
Redhat openshift Devspaces |
Tue, 15 Apr 2025 03:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| CPEs | cpe:/a:redhat:multicluster_globalhub:1.3::el9 |
Fri, 11 Apr 2025 03:00:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Redhat trusted Artifact Signer
|
|
| CPEs | cpe:/a:redhat:trusted_artifact_signer:1.1::el9 | |
| Vendors & Products |
Redhat trusted Artifact Signer
|
Thu, 10 Apr 2025 15:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Redhat openshift Distributed Tracing
|
|
| CPEs | cpe:/a:redhat:openshift_distributed_tracing:3.5::el8 | |
| Vendors & Products |
Redhat openshift Distributed Tracing
|
Wed, 09 Apr 2025 15:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Redhat multicluster Engine
|
|
| CPEs | cpe:/a:redhat:multicluster_engine:2.8::el8 cpe:/a:redhat:multicluster_engine:2.8::el9 |
|
| Vendors & Products |
Redhat multicluster Engine
|
Fri, 04 Apr 2025 03:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Redhat rhel Eus
|
|
| CPEs | cpe:/a:redhat:rhel_eus:9.4 | |
| Vendors & Products |
Redhat rhel Eus
|
Wed, 02 Apr 2025 15:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Redhat cryostat
|
|
| CPEs | cpe:/a:redhat:cryostat:4::el9 | |
| Vendors & Products |
Redhat cryostat
|
Wed, 02 Apr 2025 03:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Redhat multicluster Globalhub
Redhat openshift Custom Metrics Autoscaler |
|
| CPEs | cpe:/a:redhat:multicluster_globalhub:1.2::el9 cpe:/a:redhat:openshift_custom_metrics_autoscaler:2.15::el9 |
|
| Vendors & Products |
Redhat multicluster Globalhub
Redhat openshift Custom Metrics Autoscaler |
Fri, 28 Mar 2025 15:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Redhat enterprise Linux
|
|
| CPEs | cpe:/a:redhat:enterprise_linux:9 | |
| Vendors & Products |
Redhat enterprise Linux
|
Wed, 26 Mar 2025 03:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Redhat acm
|
|
| CPEs | cpe:/a:redhat:acm:2.13::el9 | |
| Vendors & Products |
Redhat acm
|
Thu, 20 Mar 2025 15:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Redhat gatekeeper
|
|
| CPEs | cpe:/a:redhat:gatekeeper:3.15::el9 cpe:/a:redhat:gatekeeper:3.17::el9 |
|
| Vendors & Products |
Redhat gatekeeper
|
Tue, 11 Mar 2025 02:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Redhat
Redhat advanced Cluster Security |
|
| CPEs | cpe:/a:redhat:advanced_cluster_security:4.5::el8 cpe:/a:redhat:advanced_cluster_security:4.6::el8 |
|
| Vendors & Products |
Redhat
Redhat advanced Cluster Security |
Tue, 04 Mar 2025 03:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Fri, 28 Feb 2025 02:00:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| References |
| |
| Metrics |
threat_severity
|
threat_severity
|
Wed, 26 Feb 2025 18:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Weaknesses | CWE-1286 | |
| Metrics |
cvssV3_1
|
Wed, 26 Feb 2025 03:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | An attacker can pass a malicious malformed token which causes unexpected memory to be consumed during parsing. | |
| Title | Unexpected memory consumption during token parsing in golang.org/x/oauth2 | |
| References |
|
Subscriptions
Status: PUBLISHED
Assigner: Go
Published:
Updated: 2025-02-26T14:46:20.671Z
Reserved: 2025-01-08T19:11:42.834Z
Link: CVE-2025-22868
Updated: 2025-02-26T14:45:55.061Z
Status : Analyzed
Published: 2025-02-26T08:14:24.897
Modified: 2025-05-01T19:27:10.430
Link: CVE-2025-22868
OpenCVE Enrichment
No data.
EUVD
Github GHSA