CVE-2025-29314
CVSS 3.1 Score 8.1 of 10 (high)
Details
Published Mar 24, 2025
Updated: Mar 27, 2025
CWE ID 311
Summary
CVE-2025-29314 is a vulnerability affecting OpenDaylight Service Function Chaining (SFC) Subproject SFC Sodium-SR4 and below. The issue arises from insecure Shiro cookie configurations, enabling attackers to conduct man-in-the-middle assaults and gain unauthorized access to sensitive information. This vulnerability poses a significant risk to network security, particularly in environments where OpenDaylight is utilized. It is highly recommended that affected organizations update their configurations to mitigate this threat.
Prevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.