CVE-2025-12977 exposes a critical tag‑handling vulnerability in Fluent Bit that can let unauthenticated remote actors manipulate, reroute, and corrupt logging pipelines by supplying crafted tag values.
Overview — the short story
What it is: a flaw in Fluent Bit’s input plugins (notably in_http...