CVE-2025-61688

Omni manages Kubernetes on bare metal, virtual machines, or in a cloud. Prior to 1.1.5 and 1.0.2, Omni might leak sensitive information via an API.
Configurations

Configuration 1 (hide)

OR cpe:2.3:a:siderolabs:omni:*:*:*:*:*:kubernetes:*:*
cpe:2.3:a:siderolabs:omni:*:*:*:*:*:kubernetes:*:*

History

No history.

Information

Published : 2025-10-13 21:15

Updated : 2025-12-04 21:30


NVD link : CVE-2025-61688

Mitre link : CVE-2025-61688

CVE.ORG link : CVE-2025-61688


JSON object : View

Products Affected

siderolabs

  • omni
CWE
CWE-200

Exposure of Sensitive Information to an Unauthorized Actor

NVD-CWE-noinfo