Skip to content

Instantly share code, notes, and snippets.

@zcxlighthouse
Created March 9, 2026 06:00
Show Gist options
  • Select an option

  • Save zcxlighthouse/5a6d15611456de619e4be36f7d2a0ee7 to your computer and use it in GitHub Desktop.

Select an option

Save zcxlighthouse/5a6d15611456de619e4be36f7d2a0ee7 to your computer and use it in GitHub Desktop.
CVE-2025-70042
[CVE ID]
CVE-2025-70042
[PRODUCT]
ThermaKube
[VERSION]
master
[PROBLEM TYPE]
Server-Side Request Forgery (CWE-918)
[DESCRIPTION]
An issue pertaining to CWE-918: Server-Side Request Forgery was discovered in oslabs-beta ThermaKube master. This weakness allows attackers to induce the server to make unintended requests to internal or external services, potentially leading to unauthorized access or information disclosure.
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment