A flaw was found in Ansible Automation Platform’s EDA component where user-supplied Git URLs are passed unsanitized to the git ls-remote command. This vulnerability allows an authenticated attacker to inject arguments and execute arbitrary commands on the EDA worker. In Kubernetes/OpenShift environments, this can lead to service account token theft and cluster access.
Metrics
Affected Vendors & Products
References
History
Tue, 01 Jul 2025 02:00:00 +0000
Type | Values Removed | Values Added |
---|---|---|
First Time appeared |
Redhat ansible Automation Platform Developer
Redhat ansible Automation Platform Inside |
|
CPEs | cpe:/a:redhat:ansible_automation_platform:2.5::el8 cpe:/a:redhat:ansible_automation_platform:2.5::el9 cpe:/a:redhat:ansible_automation_platform_developer:2.5::el8 cpe:/a:redhat:ansible_automation_platform_developer:2.5::el9 cpe:/a:redhat:ansible_automation_platform_inside:2.5::el8 cpe:/a:redhat:ansible_automation_platform_inside:2.5::el9 |
|
Vendors & Products |
Redhat ansible Automation Platform Developer
Redhat ansible Automation Platform Inside |
|
References |
|
Tue, 01 Jul 2025 00:30:00 +0000
Type | Values Removed | Values Added |
---|---|---|
References |
| |
Metrics |
threat_severity
|
threat_severity
|
Mon, 30 Jun 2025 21:00:00 +0000
Type | Values Removed | Values Added |
---|---|---|
Description | A flaw was found in Ansible Automation Platform’s EDA component where user-supplied Git URLs are passed unsanitized to the git ls-remote command. This vulnerability allows an authenticated attacker to inject arguments and execute arbitrary commands on the EDA worker. In Kubernetes/OpenShift environments, this can lead to service account token theft and cluster access. | |
Title | Event-driven-ansible: authenticated argument injection in git url in eda project creation | |
First Time appeared |
Redhat
Redhat ansible Automation Platform |
|
Weaknesses | CWE-88 | |
CPEs | cpe:/a:redhat:ansible_automation_platform:2 | |
Vendors & Products |
Redhat
Redhat ansible Automation Platform |
|
References |
| |
Metrics |
cvssV3_1
|

Status: PUBLISHED
Assigner: redhat
Published: 2025-06-30T20:45:28.706Z
Updated: 2025-07-01T01:53:36.401Z
Reserved: 2025-06-06T14:33:40.850Z
Link: CVE-2025-49520

No data.

Status : Received
Published: 2025-06-30T21:15:30.913
Modified: 2025-07-01T02:15:22.190
Link: CVE-2025-49520
