VYPR

DSPO

by Red Hat

CVEs (1)

  • CVE-2026-18617HigAug 10, 2026
    risk 0.57cvss 8.8epss 0.00

    A flaw was found in the Data Science Pipelines Operator (DSPO). A namespace editor can exploit a vulnerability in the spec.database.customExtraParams field, which allows for the injection of dangerous parameters into the MySQL Data Source Name (DSN) string. By manipulating these…