Threats Tagged 'cve-2025-61779'
View all threats tagged with 'cve-2025-61779'. Filter and sort to focus on specific types of threats.
Stop chasing alerts. Route them.
Start free, then upgrade once to turn Radar into an automated delivery engine for your security stack.
Custom feeds / Automations: email, Slack, webhooks, SIEM/MISP / API access (baseline limits)
API access activates after upgrading in Console -> Billing.
Check if your credentials are on the dark web
Instant breach scanning across billions of leaked records. Free tier available.
Filter Threats
Narrow down the results by type, severity, or affected countries
Threats Tagged 'cve-2025-61779'
Click on any threat for detailed analysis and mitigation recommendations
0 CVE-2025-61779 is a high-severity authorization bypass vulnerability in the Confidential Containers Trustee project versions prior to 0.15.0. The flaw exists because the attestation-policy endpoint does not verify if the requesting kbs-client is authenticated or authorized, allowing any client to modify attestation policies. This can lead to unauthorized changes in security policies governing confidential guest attestation and secret provisioning. The vulnerability requires no authentication or user interaction and can be exploited remotely over the network. Version 0.15.0 of the Trustee project addresses this issue by enforcing proper authentication checks. European organizations using Confidential Containers Trustee in affected versions are at risk of unauthorized policy manipulation, potentially compromising confidentiality and integrity of sensitive workloads. Join the discussion | CVE Database V5 | 10/09/2025, 20:53:33 UTC Added: 10/09/2025, 21:08:12 UTC |
Showing 1 to 1 of 1 result