Red Hat Security Advisory: Network Observability 1.9.0 for OpenShift
Network flows collector and monitoring solution.
AI Analysis
Technical Summary
CVE-2025-26791 is a mutation-based Cross-site Scripting (mXSS) vulnerability in DOMPurify, caused by improper template literal regular expression handling. This vulnerability allows attackers to inject and execute malicious scripts in affected Red Hat OpenShift Service Mesh containers, specifically versions >=2.5.0 and <2.6.0. The issue is tracked under CWE-79 (Improper Neutralization of Input During Web Page Generation). Red Hat has published an advisory (RHSA-2025:10020) describing the vulnerability, its impact, and references to fixes in DOMPurify upstream. The vulnerability can lead to unauthorized code execution, data disclosure, and bypass of protection mechanisms in web applications using the affected component.
Potential Impact
The vulnerability enables attackers to perform mutation-based Cross-site Scripting (mXSS) attacks, potentially leading to unauthorized execution of malicious scripts in the context of affected web applications. This can result in disclosure of sensitive information such as session cookies, unauthorized actions performed on behalf of users, and compromise of user accounts. The impact includes confidentiality and integrity loss, but no direct availability impact. The severity is assessed as medium by Red Hat.
Mitigation Recommendations
Red Hat has published an official security advisory (RHSA-2025:10020) detailing the vulnerability and remediation steps. Users of Red Hat OpenShift Service Mesh versions >=2.5.0 and <2.6.0 should apply the updates provided by Red Hat to address this issue. Refer to Red Hat's official documentation and advisories for instructions on applying the fix. No additional mitigations are specified beyond applying the official update.
Red Hat Security Advisory: Network Observability 1.9.0 for OpenShift
Description
Network flows collector and monitoring solution.
Affected software
Weaknesses
AI-Powered Analysis
Machine-generated threat intelligence
Technical Analysis
CVE-2025-26791 is a mutation-based Cross-site Scripting (mXSS) vulnerability in DOMPurify, caused by improper template literal regular expression handling. This vulnerability allows attackers to inject and execute malicious scripts in affected Red Hat OpenShift Service Mesh containers, specifically versions >=2.5.0 and <2.6.0. The issue is tracked under CWE-79 (Improper Neutralization of Input During Web Page Generation). Red Hat has published an advisory (RHSA-2025:10020) describing the vulnerability, its impact, and references to fixes in DOMPurify upstream. The vulnerability can lead to unauthorized code execution, data disclosure, and bypass of protection mechanisms in web applications using the affected component.
Potential Impact
The vulnerability enables attackers to perform mutation-based Cross-site Scripting (mXSS) attacks, potentially leading to unauthorized execution of malicious scripts in the context of affected web applications. This can result in disclosure of sensitive information such as session cookies, unauthorized actions performed on behalf of users, and compromise of user accounts. The impact includes confidentiality and integrity loss, but no direct availability impact. The severity is assessed as medium by Red Hat.
Mitigation Recommendations
Red Hat has published an official security advisory (RHSA-2025:10020) detailing the vulnerability and remediation steps. Users of Red Hat OpenShift Service Mesh versions >=2.5.0 and <2.6.0 should apply the updates provided by Red Hat to address this issue. Refer to Red Hat's official documentation and advisories for instructions on applying the fix. No additional mitigations are specified beyond applying the official update.
Technical Details
- Gcve Source
- db.gcve.eu
- Csaf Category
- csaf_security_advisory
- Csaf Version
- 2.0
- Publisher
- Red Hat Product Security
- Advisory Id
- RHSA-2025:2518
- Cve Count
- 1
Threat ID: 6a1f4e86e29bf47b5007f8c5
Added to database: 06/02/2026, 21:43:34 UTC
Last enriched: 08/16/2026, 17:05:58 UTC
Last updated: 09/10/2026, 19:36:49 UTC
Views: 119
Community Reviews
0 reviewsCrowdsource mitigation strategies, share intel context, and vote on the most helpful responses. Sign in to add your voice and help keep defenders ahead.
Want to contribute mitigation steps or threat intel context? Sign in or create an account to join the community discussion.
Actions
Updates to AI analysis require Pro Console access. Upgrade inside Console → Billing.
External Links
Need more coverage?
Upgrade to Pro Console for AI refresh and higher limits.
For incident response and remediation, OffSeq services can help resolve threats faster.
Latest Threats
Check if your credentials are on the dark web
Instant breach scanning across billions of leaked records. Free tier available.