tag key vulnerability

  1. CVE-2025-12977: Critical Fluent Bit Tag Key Vulnerability and Mitigations

    CVE-2025-12977 exposes a critical tag‑handling vulnerability in Fluent Bit that can let unauthenticated remote actors manipulate, reroute, and corrupt logging pipelines by supplying crafted tag values. Overview — the short story What it is: a flaw in Fluent Bit’s input plugins (notably in_http...