Sidero Labs Omni Information Leak Vulnerability via API
Vulnerability
A vulnerability in Sidero Labs Omni, prior to versions 1.1.5 and 1.0.2, may lead to the unintentional exposure of sensitive information through an API. This issue affects users managing Kubernetes on bare metal, virtual machines, or in the cloud.
Impact
This vulnerability has been rated high in severity, as it can result in the unauthorized disclosure of sensitive information.
Remediation
Users can upgrade to Omni versions 1.1.5, 1.0.2, or 1.2.0 to address this vulnerability.
Added: Oct 13, 2025, 9:22 PM
Updated: Oct 13, 2025, 9:22 PM
Vulnerability Rating
Custom Algorithm
spread
0.0impact
2.5exploitability
7.4remediation
7.7relevance
0.7threat
0.0urgency
2.9incentive
5.8Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.
