CVE-2021-25735 Kubernetes Official CVE Feed 4 years 4 months ago Validating Admission Webhook does not observe some previous fields
CVE-2020-8554 Kubernetes Official CVE Feed 4 years 8 months ago Man in the middle using LoadBalancer or ExternalIPs
CVE-2020-8566 Kubernetes Official CVE Feed 4 years 9 months ago Ceph RBD adminSecrets exposed in logs when loglevel >= 4
CVE-2020-8565 Kubernetes Official CVE Feed 4 years 9 months ago Incomplete fix for CVE-2019-11250 allows for token leak in logs when logLevel >= 9
CVE-2020-8564 Kubernetes Official CVE Feed 4 years 9 months ago Docker config secrets leaked when file is malformed and log level >= 4
CVE-2020-8563 Kubernetes Official CVE Feed 4 years 9 months ago Secret leaks in kube-controller-manager when using vSphere provider
CVE-2020-8557 Kubernetes Official CVE Feed 5 years ago Node disk DOS by writing to container /etc/hosts
CVE-2020-8559 Kubernetes Official CVE Feed 5 years ago Privilege escalation from compromised node to cluster
CVE-2020-8558 Kubernetes Official CVE Feed 5 years 1 month ago Node setting allows for neighboring hosts to bypass localhost boundary
CVE-2020-8555 Kubernetes Official CVE Feed 5 years 2 months ago Half-Blind SSRF in kube-controller-manager
CVE-2020-10749 Kubernetes Official CVE Feed 5 years 2 months ago IPv4 only clusters susceptible to MitM attacks via IPv6 rogue router advertisements
CVE-2019-11254 Kubernetes Official CVE Feed 5 years 4 months ago kube-apiserver Denial of Service vulnerability from malicious YAML payloads
CVE-2020-8553 Kubernetes Official CVE Feed 5 years 5 months ago ingress-nginx auth-type basic annotation vulnerability
CVE-2019-11255 Kubernetes Official CVE Feed 5 years 8 months ago CSI volume snapshot, cloning and resizing features can result in unauthorized volume data access or mutation
CVE-2019-11253 Kubernetes Official CVE Feed 5 years 10 months ago Kubernetes API Server JSON/YAML parsing vulnerable to resource exhaustion attack