CVE-2023-32188Critical▾ MidnightJWT token compromise can allow malicious actions including Remote Code Execution (RCE)
▾ Midnight zone — Critical, or high with PoC / in-the-wild
impact 52.3 · likelihood 0.1 · exploitation 0
Need a working PoC? Pro members can cast a request and our team develops one — it lands right here.
Exploit-prediction probability, daily snapshots since Sep 12.
Disclosure to exploitation, from the record and what we observed since indexing it.
Disclosed via OSV
Last analysed / modified upstream
0.5%
A user can reverse engineer the JWT token (JSON Web Token) used in authentication for Manager and API access, forging a valid NeuVector Token to perform malicious activity in NeuVector. This can lead to an RCE.
Upgrade to NeuVector version 5.2.2 or later and latest Helm chart (2.6.3+).
Users can replace the Manager & Controller certificate manually by following the instructions in documented here. However, upgrading to 5.2.2 and replacing Manager/REST API certificate is recommended to provide additional security enhancements to prevent possible attempted exploit and resulting RCE. See release notes for additional details.
Thank you to Dejan Zelic at Offensive Security for responsibly reporting this vulnerability.
View the NeuVector Security Policy
General NeuVector documentation
github.com/neuvector/neuvector < 0.0.0-20231003121714-be746957ee7cUpgrade to a patched release:
github.com/neuvector/neuvector 0.0.0-20231003121714-be746957ee7cConnected by shared product, vendor, weakness, or advisory.
CVE-2025-66001High· 8.8NeuVector OpenID Connect is vulnerable to man-in-the-middle (MITM)
CVE-2026-78425High· 7.6Authorised users of outside applications behind the same corporate identity provider (IdP), for example, a wiki, a ticketing system, an expenses tool, or anything they legitimately hold an account on can log into their system via SAML SS…
CVE-2026-78427Medium· 4.3The NeuVector admission webhook silently excludes containers from policy evaluation when their image path matches one of three hardcoded service mesh sidecar images
CVE-2025-67860Low· 3.8NeuVector scanner insecurely handles passwords as command arguments