VYPR

bpm-release

by Cloudfoundry

CVEs (1)

  • CVE-2026-47833MedJun 18, 2026
    risk 0.40cvss 6.1epss 0.00

    setupBpmLogs follows symlink for bpm.log open and chown — container-to-host privilege escalation via /etc/shadow. A compromised process inside a bpm container can cause root to chown an arbitrary host file to vcap and append bpm JSON log lines to it. The chown alone lets the…