Database/Container, Kubernetes & orchestration

KubeVirt CDI: PVCs can be cloned from unauthorized namespaces via DataImportCron
CVE-2025-14459Container, Kubernetes & orchestrationcurated
Impact
PVCs can be cloned from unauthorized namespaces via DataImportCron; cross-tenant data theft
Who can reach it
Cluster user with namespace access
What to do
Upgrade CDI
References
This entry is curated: imported from vendor advisories with machine assistance, not yet individually verified. Confirm against your vendor's advisory before acting, and report anything wrong.