CVE-2025-14758: Alasca Yaook
Medium severity, CVSS 6.5. EPSS: 0.2% chance of exploitation in the next 30 days.
Incorrect configuration of replication security in the MariaDB component of the infra-operator in YAOOK Operator allows an on-path attacker to read database contents, potentially including credentials
Affected products
- Alasca Yaook: from 0.20240809.0, before 0.20251211.0 (fixed in 0.20251211.0)
Published 2025-12-16. Last modified 2026-10-07.