Value Statement
CVEs (and other vulnerabilities) flagged by the most recent continuous monitoring scan in FedRAMP must be acknowledged in order to ensure compliance with in boundary standards and continue offering the ROSA HCP service in boundary.
Definition of Done for Engineering Story Owner (Checklist)
- All CVEs are remediated in the images specified
- CVE-2025-6020, CVE-2025-8941, GHSA-mh63-6h87-95cp
in hive-rhel9
- CVE-2025-6020, CVE-2025-8941, GHSA-mh63-6h87-95cp