rhosdt/tempo-query-rhel8 vulnerabilities
CVEs whose affected-version data names the rhosdt/tempo-query-rhel8 package. Each record lists the affected and patched versions; check a specific version with the dependency checker or POST /api/sbom.
2 CVEsRSS
CVE-2025-2842Medium· 4.3A flaw was found in the Tempo Operator
A flaw was found in the Tempo Operator. When the Jaeger UI Monitor Tab functionality is enabled in a Tempo instance managed by the Tempo Operator, the Operator creates a ClusterRoleBinding for the Service Account of the Tempo instance to…
▾ SunlitRed Hat · tempo-operatorEPSS 0.38%via NVD
CVE-2025-2786Medium· 4.3A flaw was found in Tempo Operator, where it creates a ServiceAccount, ClusterRole, and ClusterRoleBinding when a user deploys a TempoStack or TempoMonolithic instance
A flaw was found in Tempo Operator, where it creates a ServiceAccount, ClusterRole, and ClusterRoleBinding when a user deploys a TempoStack or TempoMonolithic instance. This flaw allows a user with full access to their namespace to extra…
▾ SunlitRed Hat · tempo-operatorEPSS 0.36%via NVD