
CVE-2025-41240 - Critical Supply Chain Attack in Bitnami Helm charts. Kubernetes secrets exposed at predictable path /opt/bitnami/*/secrets within web root. CVSS 10. Unauthenticated access to sensitive credentials via HTTP/S. #CVE #CVEAlert Patch: https://www.valtersit.com/cve/CVE-2025-41240/
Post summary
CVE-2025-41240 is a critical vulnerability exposing Kubernetes secrets via predictable paths, enabling unauthenticated HTTP/S access, and a patch is available at the provided link.
