CVE-2025-13281

Upstream issue

This vulnerability is related to Portworx volume error handling. KLTS backport masks backend/internal error details in events and keeps details in controller logs only.

Scope

Affected range in upstream metadata: <= k8s1.31.14 on supported lines.

CVSS scores

This vulnerability is rated as medium-risk with a CVSS score of 5.8.

Fixed by official

Fixed by KLTS