CVE-2018-10937: Red Hat Openshift Container Platform

Medium severity, CVSS 5.4. EPSS: 1.1% chance of exploitation in the next 30 days.

A cross site scripting flaw exists in the tetonic-console component of Openshift Container Platform 3.11. An attacker with the ability to create pods can use this flaw to perform actions on the K8s API as the victim.

Affected products

  • Red Hat Openshift Container Platform: version 3.11 only

Published 2018-09-11. Last modified 2026-06-17.