Improper Input Validation vulnerability in sha.js allows Input Data Manipulation.This issue affects sha.js: through 2.4.11.
This issue has been addressed in the following products: multicluster engine for Kubernetes 2.7 for RHEL 8 multicluster engine for Kubernetes 2.7 for RHEL 9 Via RHSA-2025:18278 https://access.redhat.com/errata/RHSA-2025:18278
This issue has been addressed in the following products: Red Hat Advanced Cluster Management for Kubernetes 2.12 for RHEL 9 Via RHSA-2025:18744 https://access.redhat.com/errata/RHSA-2025:18744