Metrics
Affected Vendors & Products
No advisories yet.
Solution
No solution given by the vendor.
Workaround
Mitigation for this issue is either not available or the currently available options do not meet the Red Hat Product Security criteria comprising ease of use and deployment, applicability to widespread installation base or stability.
Mon, 26 Jan 2026 19:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | No description is available for this CVE. | A flaw was found in github.com/go-viper/mapstructure/v2, in the field processing component using mapstructure.WeakDecode. This vulnerability allows information disclosure through detailed error messages that may leak sensitive input values via malformed user-supplied data processed in security-critical contexts. |
| Title | github.com/go-viper/mapstructure/v2: Go-viper's mapstructure May Leak Sensitive Information in Logs in github.com/go-viper/mapstructure | Github.com/go-viper/mapstructure/v2: go-viper's mapstructure may leak sensitive information in logs in github.com/go-viper/mapstructure |
| First Time appeared |
Redhat
Redhat acm Redhat advanced Cluster Security Redhat certifications Redhat enterprise Linux Redhat openshift Redhat openshift Ai Redhat openshift Devspaces Redhat openshift Distributed Tracing Redhat openshift Gitops Redhat openshift Pipelines Redhat trusted Application Pipeline Redhat trusted Artifact Signer Redhat zero Trust Workload Identity Manager |
|
| CPEs | cpe:/a:redhat:acm:2 cpe:/a:redhat:advanced_cluster_security:4 cpe:/a:redhat:certifications:1::el8 cpe:/a:redhat:certifications:9 cpe:/a:redhat:openshift:4 cpe:/a:redhat:openshift_ai cpe:/a:redhat:openshift_devspaces:3 cpe:/a:redhat:openshift_distributed_tracing:3 cpe:/a:redhat:openshift_gitops:1 cpe:/a:redhat:openshift_pipelines:1 cpe:/a:redhat:trusted_application_pipeline:1 cpe:/a:redhat:trusted_artifact_signer:1 cpe:/a:redhat:zero_trust_workload_identity_manager:0 cpe:/o:redhat:enterprise_linux:10 cpe:/o:redhat:enterprise_linux:9 |
|
| Vendors & Products |
Redhat
Redhat acm Redhat advanced Cluster Security Redhat certifications Redhat enterprise Linux Redhat openshift Redhat openshift Ai Redhat openshift Devspaces Redhat openshift Distributed Tracing Redhat openshift Gitops Redhat openshift Pipelines Redhat trusted Application Pipeline Redhat trusted Artifact Signer Redhat zero Trust Workload Identity Manager |
|
| References |
|
Sat, 27 Sep 2025 00:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | No description is available for this CVE. | |
| Title | github.com/go-viper/mapstructure/v2: Go-viper's mapstructure May Leak Sensitive Information in Logs in github.com/go-viper/mapstructure | |
| Weaknesses | CWE-209 | |
| References |
| |
| Metrics |
threat_severity
|
cvssV3_1
|
Projects
Sign in to view the affected projects.
Status: PUBLISHED
Assigner: redhat
Published:
Updated: 2026-01-26T19:36:28.900Z
Reserved: 2025-09-26T12:01:08.227Z
Link: CVE-2025-11065
No data.
Status : Awaiting Analysis
Published: 2026-01-26T20:16:06.840
Modified: 2026-01-27T14:59:34.073
Link: CVE-2025-11065
OpenCVE Enrichment
No data.