CVE-2018-1223: Pivotal Cloud Foundry Container Runtime

High severity, CVSS 8.8. EPSS: 0.9% chance of exploitation in the next 30 days.

Cloud Foundry Container Runtime (kubo-release), versions prior to 0.14.0, may leak UAA and vCenter credentials to application logs. A malicious user with the ability to read the application logs could use these credentials to escalate privileges.

Affected products

  • Pivotal Cloud Foundry Container Runtime: before 0.14.0 (fixed in 0.14.0)

Published 2018-09-17. Last modified 2026-06-17.