CVE-2025-14758
MEDIUMDescription
Incorrect configuration of replication security in the MariaDB component of the infra-operator in YAOOK Operator allows an on-path attacker to read database contents, potentially including credentials
Is your site exposed to CVE-2025-14758?
Run a free security scan — no signup, results in seconds.
CVSS v3.1 Score
Weakness Type (CWE)
References
Other References
Frequently Asked Questions
What is CVE-2025-14758? +
How severe is CVE-2025-14758? +
How do I check if I'm vulnerable to CVE-2025-14758? +
Related Vulnerabilities
A configuration weakness in the device’s remote management service allows an authenticated session to be established over a communication channel …
Kimai is an open-source time tracking application. Prior to 2.58.0, the official Docker image sets APP_SECRET to the public value …
SiYuan is an open-source personal knowledge management system. Prior to 3.7.0, he tooltip mouseover handler in app/src/block/popover.ts reads aria-label via …
P4 Server versions prior to 2026.1 are configured with insecure default settings that, when exposed to untrusted networks, allow unauthenticated …
oasdiff-action is a GitHub Action that detects breaking changes in OpenAPI specs and post a review on every pull request. …
SiYuan is an open-source personal knowledge management system. Prior to 3.7.0, the kernel stores Attribute View (AV / database) names …