NeuVector Scanner Command-Line Credential Exposure Vulnerability

Vulnerability

A vulnerability exists in the NeuVector scanner where the scanner process can be launched with registry and controller credentials as command-line arguments. This practice may inadvertently expose sensitive credential information to local users.

Impact

Exposing registry and controller credentials to local users could lead to unauthorized access or actions within the NeuVector environment.

Added: Feb 25, 2026, 11:21 AM
Updated: Feb 25, 2026, 11:21 AM

Vulnerability Rating

Custom Algorithm
spread
1.4
impact
2.5
exploitability
3.1
remediation
0.0
relevance
3.5
threat
0.0
urgency
2.9
incentive
0.0

Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.