Kubernetes Kube-Apiserver vulnerabilities
2 known vulnerabilities affecting kubernetes/kube-apiserver.
Total CVEs
2
CISA KEV
0
Public exploits
0
Exploited in wild
0
Severity breakdown
HIGH1LOW1
Vulnerabilities
Page 1 of 1
CVE-2024-7598LOWCVSS 3.1v1.3.02025-03-20
CVE-2024-7598 [LOW] CWE-362 CVE-2024-7598: A security issue was discovered in Kubernetes where a malicious or compromised pod could bypass netw
A security issue was discovered in Kubernetes where a malicious or compromised pod could bypass network restrictions enforced by network policies during namespace deletion. The order in which objects are deleted during namespace termination is not defined, and it is possible for network policies to be deleted before the pods that they protect. This can l
cvelistv5nvd
CVE-2022-3172HIGHCVSS 8.2vv1.25.0≥ v1.24.0, ≤ v1.24.4+3 more2023-11-03
CVE-2022-3172 [HIGH] CWE-918 CVE-2022-3172: A security issue was discovered in kube-apiserver that allows an
aggregated API server to redirect
A security issue was discovered in kube-apiserver that allows an
aggregated API server to redirect client traffic to any URL. This could
lead to the client performing unexpected actions as well as forwarding
the client's API server credentials to third parties.
cvelistv5nvd