Vulnerability index

Browse CVEs

8 matching
Filters 2 Clear all
Severity

Filters apply as you choose them.

Cri O HIGH 8.1
CVE-2024-5154

A flaw was found in cri-o. A malicious container can create a symbolic link to arbitrary files on the host via directory traversal (“../“). This flaw…

Mitigation only
Fix from $1,950 2024-06-12
Cri O HIGH 7.8
CVE-2022-4318

A vulnerability was found in cri-o. This issue allows the addition of arbitrary lines into /etc/passwd by use of a specially crafted environment vari…

Mitigation only
Fix from $1,950 2023-09-25
Kube Apiserver HIGH 8.0
CVE-2023-1260

An authentication bypass vulnerability was discovered in kube-apiserver. This issue could allow a remote, authenticated attacker who has been given p…

Mitigation only
Fix from $1,950 2023-09-24
Cri O MEDIUM 5.3
CVE-2022-3466

The version of cri-o as released for Red Hat OpenShift Container Platform 4.9.48, 4.10.31, and 4.11.6 via RHBA-2022:6316, RHBA-2022:6257, and RHBA-20…

Mitigation only
Fix from $1,600 2023-09-15
Minikube CRITICAL 9.8
CVE-2023-1174

This vulnerability exposes a network port in minikube running on macOS with Docker driver that could enable unexpected remote access to the minikube …

Mitigation only
Fix from $2,300 2023-05-24
Kube State Metrics MEDIUM 6.5
CVE-2019-10223

A security issue was discovered in the kube-state-metrics versions v1.7.0 and v1.7.1. An experimental feature was added to the v1.7.0 release that en…

No fix yet
Fix from $1,600 2019-11-05
Kubernetes CRITICAL 9.8
CVE-2017-1000056

Kubernetes version 1.5.0-1.5.4 is vulnerable to a privilege escalation in the PodSecurityPolicy admission plugin resulting in the ability to make use…

Mitigation only
Fix from $2,300 2017-07-17
Kubernetes HIGH 7.7
CVE-2016-1905

The API server in Kubernetes does not properly check admission control, which allows remote authenticated users to access additional resources via a …

Mitigation only
Fix from $1,950 2016-02-03