CVE-2025-62878Disclosure

LOWCVSS 9.9 · CRITICAL

Signal is active with 1 mentions in latest observed window

Immediate actions

  • Patch affected systems immediately

Recommended action window: Monitor and triage in normal cycle

NVD description

A malicious user can manipulate the parameters.pathPattern to create PersistentVolumes in arbitrary locations on the host node, potentially overwriting sensitive files or gaining access to unintended directories.

0.8/ 10 priority

Sources & remediation

Weakness type (CWE)
CWE-23

Priority

LOW

Exploitation

NONE

PoC

NONE

Patch

AVAILABLE

Momentum

STABLE

Threat summary

  • Patch or workaround signal is available
  • 12 mentions across 9 observed days
  • Momentum state: stable

What's happening

  • Patch or workaround mentioned in 4 signals
  • Technical details provided in 11 signals
  • Disclosure: 7 classified signals
  • General: 1 classified signal
  • Peaked 8d ago at 2 mentions (2026-02-05); latest day: 1
  • 12 total mentions across 9 days

Deep dive

Activity timeline12 mentions / 9d
01122Mentions · 2026-02-05: 2Mentions · 2026-02-09: 2Mentions · 2026-02-10: 1Mentions · 2026-02-11: 1Mentions · 2026-02-12: 1Mentions · 2026-02-25: 2Mentions · 2026-03-02: 1Mentions · 2026-03-17: 1Mentions · 2026-04-11: 1Patch / Workaround · 2026-02-05: 2Patch / Workaround · 2026-02-09: 1Patch / Workaround · 2026-02-11: 1Technical Details · 2026-02-05: 2Technical Details · 2026-02-09: 2Technical Details · 2026-02-10: 1Technical Details · 2026-02-11: 1Technical Details · 2026-02-12: 1Technical Details · 2026-02-25: 2Technical Details · 2026-03-02: 1Technical Details · 2026-03-17: 102-0502-0902-1002-1102-1202-2503-0203-1704-11
Signal classification3 categories
Disclosure
758.3%
Patch
433.3%
General
18.3%
Referenced assets7 URLs
Classification over time
DateTotalLabels
2026-02-052
Patch2
2026-02-092
Disclosure1Patch1
2026-02-101
Disclosure1
2026-02-111
Patch1
2026-02-121
Disclosure1
2026-02-252
Disclosure2
2026-03-021
Disclosure1
2026-03-171
Disclosure1
2026-04-111
General1
Full discourse12 posts
  • Gray Hats@the_yellow_fall
    Patch

    CVSS 10.0 Alert: Kubernetes Local Path Provisioner flaw (CVE-2025-62878) allows host file overwrites. Upgrade to v0.0.34 immediately. #Kubernetes #K8s #CyberSecurity #CVE202562878 #CloudSecurity #InfoSec #DevSecOps https://securityonline.info/cve-2025-62878-critical-10-0-vulnerability-found-in-kubernetes-local-path-provisioner/

    Post summary

    A new critical CVE‑2025‑62878 flaw in Kubernetes Local Path Provisioner that allows host file overwrites has been disclosed; users are advised to upgrade to v0.0.34 immediately.

    140132722
    10.4K followersView on X
  • Misbar | مسبار@MisbarSec
    Patch

    🚨 خطورة عالية في Kubernetes Local Path Provisioner تم اكتشاف ثغرة أمنية خطيرة جداً CVE-2025-62878، ذات تصنيف 10.0، في مكون أساسي لتخزين Kubernetes. تسمح هذه الثغرة بالوصول غير المصرح به والتلاعب بالملفات على العقد. فريق أمن SUSE Rancher يحذر بشدة من تبعات هذه الثغرة. 💡 خطوات الحماية: - قم بتحديث Kubernetes Local Path Provisioner فوراً. - راجع صلاحيات الوصول للمكونات الحساسة. - طبق مبدأ أقل امتيازات (least privilege). 🔗 https://securityonline.info/cve-2025-62878-critical-10-0-vulnerability-found-in-kubernetes-local-path-provisioner/ #الأمن_السيبراني #Kubernetes #CVE

    Post summary

    CVE‑2025‑62878 is a critical flaw in Kubernetes Local Path Provisioner that permits unauthorized access and file manipulation; SUSE Rancher advises immediate updates and least privilege controls.

    0003059
    51 followersView on X
  • Patryk Golabek@QuantumMentat
    General

    kinder doctor now runs 23 diagnostic checks, up from 18. Catches kernel limits, AppArmor interference, subnet clashes, version-skew drift, and a new CVE-2025-62878 check for local-path-provisioner. Before you break your afternoon debugging ↓ https://t.co/51WbVXWk5H

    Post summary

    The post notes that 'kinder doctor' now includes a check for CVE-2025-62878 in local‑path‑provisioner, but provides no additional exploitation or mitigation details.

    10000292
    53 followersView on X
  • Vulmon Vulnerability Feed@VulmonFeeds
    Disclosure

    CVE-2025-62878 Path Traversal in Local Path Provisioner Allows Arbitrary File Access via pathPattern Parameter https://vulmon.com/vulnerabilitydetails?qid=CVE-2025-62878

    Post summary

    The CVE-2025-62878 disclosure identifies a path traversal flaw in a local path provisioner that permits arbitrary file access through the pathPattern parameter, as reported on Vulmon.

    0001039
    4.0K followersView on X
  • キタきつね@foxbook
    Disclosure

    CVE-2025-62878: Kubernetes ローカルパスプロビジョナーに重大な 10.0 の脆弱性が発見されました CVE-2025-62878: Critical 10.0 Vulnerability Found in Kubernetes Local Path Provisioner #DailyCyberSecurity (Feb 9) https://securityonline.info/cve-2025-62878-critical-10-0-vulnerability-found-in-kubernetes-local-path-provisioner/

    Post summary

    The post announces the discovery of a critical (CVSS 10.0) vulnerability in the Kubernetes Local Path Provisioner, providing basic technical details but no PoC, exploit, or mitigation information.

    00010285
    4.7K followersView on X
  • PulsePatch.io@pulsepatchio
    Patch

    Rancher Local Path Provisioner has a critical path traversal vulnerability (CVE-2025-62878). Threat actors with cluster access may exploit this. Update to 0.0.34. #Kubernetes #CloudNative #Security https://www.pulsepatch.io/posts/cve-2025-62878-rancher-local-path-provisioner-path-traversal

    Post summary

    Rancher Local Path Provisioner CVE‑2025‑62878 is a critical path traversal flaw that could be exploited by cluster‑accessed threat actors; users are advised to update to version 0.0.34.

    1000071
    1 followersView on X
  • Komodo Cyber Security@Komodosec
    Disclosure

    #VulnerabilityReport #containersecurity CVE-2025-62878: Critical 10.0 Vulnerability Found in Kubernetes Local Path Provisioner https://securityonline.info/cve-2025-62878-critical-10-0-vulnerability-found-in-kubernetes-local-path-provisioner/?utm_source=dlvr.it&utm_medium=twitter

    Post summary

    The post announces CVE-2025-62878, a critical 10.0 vulnerability in Kubernetes Local Path Provisioner, linking to a detailed report but offering no PoC, exploit, or remediation details.

    00000114
    1.5K followersView on X
  • CRAC Learning - Tech@cracbot
    Disclosure

    CVE-2025-62878 (CVSS:9.9, CRITICAL) is Awaiting Analysis. A malicious user can manipulate the parameters.pathPattern to create PersistentVolumes in arbitrary locations on the hos..https://nvd.nist.gov/vuln/detail/CVE-2025-62878 #cybersecurityawareness #cybersecurity #CVE #infosec #hacker #nvd #mitre

    Post summary

    The post announces CVE-2025-62878, a critical vulnerability that allows manipulation of pathPattern to create PersistentVolumes in arbitrary locations, with no mention of PoC, exploit, or patch.

    0000055
    173 followersView on X
  • CVE@CVEnew
    Disclosure

    CVE-2025-62878 A malicious user can manipulate the parameters.pathPattern to create PersistentVolumes in arbitrary locations on the host node, potentially overwriting sensitive file… https://www.cve.org/CVERecord?id=CVE-2025-62878

    Post summary

    The CVE describes a path‑manipulation flaw that lets an attacker create PersistentVolumes at arbitrary host locations, potentially overwriting sensitive files.

    0000079
    56.6K followersView on X
  • CVETodo@CveTodo
    Disclosure

    **CVE-2025-62878** is a critical security flaw affecting systems that utilize a specific component responsible for managing PersistentVolumes (PVs). The vulnerability arises from the improper handling of the `parameters.pathPattern`, allowing a malicious user to manipulate this parameter to create PVs in arbitrary locations on the host node's filesystem. This manipulation can lead to overwriting sensitive files, unauthorized directory access, or potential code execution, depending on the environment. #Cybersecurity #CVE #CriticalCVE #CriticalVulnerability #RemoteCodeExecution #PrivilegeEscalation https://cvetodo.com/cve/CVE-2025-62878

    Post summary

    CVE-2025-62878 is a critical flaw in PersistentVolume management that allows manipulation of the `parameters.pathPattern` to create PVs at arbitrary host locations, potentially leading to file overwrite, unauthorized access, or code execution.

    0000034
    20 followersView on X
  • Karma-X@Karma_X_Inc
    Disclosure

    CVE-2025-62878: Critical 10.0 Vulnerability Found in Kubernetes Local Path Provisioner https://securityonline.info/cve-2025-62878-critical-10-0-vulnerability-found-in-kubernetes-local-path-provisioner/

    Post summary

    A critical (CVSS 10.0) vulnerability was identified in the Kubernetes Local Path Provisioner, but the brief text provides only its existence and severity, lacking detailed technical, exploit, or remediation information.

    0000057
    73 followersView on X
  • Soo Yoon | FailSafe Ecosystem@sooyoon_eth
    Patch

    @pulsepatchio path traversal in k8s provisioner is nasty. CVE-2025-62878 basically gives attackers cluster access if they already have some foothold. 0.0.34 patch is critical - this isn't optional

    Post summary

    The tweet alerts that CVE-2025-62878 is a path traversal flaw in a Kubernetes provisioner that could grant cluster access after a foothold, and stresses the necessity of installing the critical 0.0.34 patch.

    0000049
    23.7K followersView on X

Explore more