Sidero Labs Omni Information Leak Vulnerability via API

Vulnerability

A vulnerability in Sidero Labs Omni, prior to versions 1.1.5 and 1.0.2, may lead to the unintentional exposure of sensitive information through an API. This issue affects users managing Kubernetes on bare metal, virtual machines, or in the cloud.

Impact

This vulnerability has been rated high in severity, as it can result in the unauthorized disclosure of sensitive information.

Remediation

Users can upgrade to Omni versions 1.1.5, 1.0.2, or 1.2.0 to address this vulnerability.

Added: Oct 13, 2025, 9:22 PM
Updated: Oct 13, 2025, 9:22 PM

Vulnerability Rating

Custom Algorithm
spread
0.0
impact
2.5
exploitability
7.4
remediation
7.7
relevance
0.7
threat
0.0
urgency
2.9
incentive
5.8

Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.