Impact
A tenant able to deploy a controller‑owned workload can annotate it with the openfeature.dev/featureflagsource annotation using NAMESPACE/NAME syntax. The OpenFeature Operator, in versions 0.9.2 and earlier, reads the referenced FeatureFlagSource or InProcessConfiguration resource from the target namespace and materializes its spec.envVars literal values, spec.httpSyncBearerToken, sync URIs and associated ConfigMaps directly into the tenant’s workload. This allows the tenant to learn sensitive configuration data, including bearer tokens and synchronization endpoints, that were intended to be confined to the target namespace.
Affected Systems
The vulnerability affects the OpenFeature Operator (open-feature:open-feature-operator) version 0.9.2 and earlier when deployed on multi‑tenant Kubernetes clusters that use namespaces as trust boundaries. Single‑tenant clusters are not impacted.
Risk and Exploitability
With a CVSS score of 4.3 and an EPSS score of < 1%, the risk is moderate but the likelihood of exploitation is low. The vulnerability is not listed in CISA’s KEV catalog. The likely attack vector is a tenant who has permission to create controller‑owned workloads; once such a workload is created, the cluster‑scoped operator reveals the referenced configuration to the tenant. No additional privileges or elevated access are required beyond the ability to create a workload.
OpenCVE Enrichment
Github GHSA