Due to a product misconfiguration in certain deployment types, it was possible from different pods in the same namespace to communicate with each other. This issue resulted in bypass of access control due to the presence of a vulnerable endpoint in Foundry Container Service that executed user-controlled commands locally.
Metrics
Affected Vendors & Products
References
History
Fri, 19 Dec 2025 09:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Palantir
Palantir foundry Palantir foundry Container Service |
|
| Vendors & Products |
Palantir
Palantir foundry Palantir foundry Container Service |
Thu, 18 Dec 2025 22:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Thu, 18 Dec 2025 21:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | Due to a product misconfiguration in certain deployment types, it was possible from different pods in the same namespace to communicate with each other. This issue resulted in bypass of access control due to the presence of a vulnerable endpoint in Foundry Container Service that executed user-controlled commands locally. | |
| Title | Network boundaries not respected in certain Foundry namespaces. | |
| Weaknesses | CWE-653 | |
| References |
| |
| Metrics |
cvssV3_1
|
Status: PUBLISHED
Assigner: Palantir
Published: 2025-12-18T21:05:51.588Z
Updated: 2025-12-18T21:39:48.276Z
Reserved: 2025-07-08T20:15:13.449Z
Link: CVE-2025-53710
Updated: 2025-12-18T21:39:45.446Z
Status : Received
Published: 2025-12-18T21:15:53.510
Modified: 2025-12-18T21:15:53.510
Link: CVE-2025-53710
No data.