Description

The mirror-registry doesn't properly sanitize the host header HTTP header in HTTP request received, allowing an attacker to perform malicious redirects to attacker-controlled domains or phishing campaigns.

INFO

Published Date :

2025-08-20T11:38:59.459Z

Last Modified :

2026-02-27T16:38:55.806Z

Source :

redhat
AFFECTED PRODUCTS

The following products are affected by CVE-2025-7777 vulnerability.

Vendors Products
Redhat
  • Mirror Registry

CVSS Vulnerability Scoring System

Detailed values of each vector for above chart.
Attack Vector
Attack Complexity
Privileges Required
User Interaction
Scope
Confidentiality Impact
Integrity Impact
Availability Impact