Metrics
Affected Vendors & Products
| Source | ID | Title |
|---|---|---|
Github GHSA |
GHSA-m3hq-3qj8-c5fm | fog-kubevirt allows remote attacker to perform MITM attack due to disabled certificate validation |
Solution
No solution given by the vendor.
Workaround
Mitigation for this issue is either not available or the currently available options do not meet the Red Hat Product Security criteria comprising ease of use and deployment, applicability to widespread installation base or stability.
Mon, 02 Feb 2026 17:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Mon, 02 Feb 2026 06:00:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | No description is available for this CVE. | A flaw was found in fog-kubevirt. This vulnerability allows a remote attacker to perform a Man-in-the-Middle (MITM) attack due to disabled certificate validation. This enables the attacker to intercept and potentially alter sensitive communications between Satellite and OpenShift, resulting in information disclosure and data integrity compromise. |
| Title | fog-kubevirt: fog-kubevirt: Man-in-the-Middle vulnerability due to disabled certificate validation | Fog-kubevirt: fog-kubevirt: man-in-the-middle vulnerability due to disabled certificate validation |
| First Time appeared |
Redhat
Redhat satellite |
|
| CPEs | cpe:/a:redhat:satellite:6 | |
| Vendors & Products |
Redhat
Redhat satellite |
|
| References |
|
Thu, 29 Jan 2026 00:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | No description is available for this CVE. | |
| Title | fog-kubevirt: fog-kubevirt: Man-in-the-Middle vulnerability due to disabled certificate validation | |
| Weaknesses | CWE-295 | |
| References |
| |
| Metrics |
threat_severity
|
cvssV3_1
|
Projects
Sign in to view the affected projects.
Status: PUBLISHED
Assigner: redhat
Published:
Updated: 2026-02-02T16:28:31.327Z
Reserved: 2026-01-28T12:41:52.835Z
Link: CVE-2026-1530
Updated: 2026-02-02T16:26:14.451Z
Status : Received
Published: 2026-02-02T06:16:20.620
Modified: 2026-02-02T06:16:20.620
Link: CVE-2026-1530
OpenCVE Enrichment
No data.
Github GHSA