CVE-2024-53351: Linuxfoundation Pipecd

Critical severity, CVSS 9.8. EPSS: 0.5% chance of exploitation in the next 30 days.

Insecure permissions in pipecd v0.49 allow attackers to gain access to the service account's token, leading to escalation of privileges.

Affected products

Published 2025-03-21. Last modified 2026-06-17.