← Back to browse · API

CVE-2025-59360

Severity
CRITICAL
CVSS
9.8
EPSS
0.02814
Risk score
40.18
CISA KEV
No
PoC
Yes
Published
2025-09-15
Modified
2025-09-15
First seen
2026-08-07
Aliases
EUVD-2025-29178, GHSA-XV9F-728H-9JGV
Products
linux, suse
Sources
packetstorm e760ebd193aaec6c0d4acb9c|CVE-2025-59360
euvd EUVD-2025-29178

Description

The killProcesses mutation in Chaos Controller Manager is vulnerable to OS command injection. In conjunction with CVE-2025-59358, this allows unauthenticated in-cluster attackers to perform remote code execution across the cluster.

References