Search CVE reports


Toggle filters

1 – 10 of 63 results


CVE-2025-4563

Medium priority
Needs evaluation

A vulnerability exists in the NodeRestriction admission controller where nodes can bypass dynamic resource allocation authorization checks. When the DynamicResourceAllocation feature gate is enabled, the controller...

1 affected package

kubernetes

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
kubernetes Needs evaluation Needs evaluation Needs evaluation
Show less packages

CVE-2025-1767

Medium priority
Not affected

This CVE only affects Kubernetes clusters that utilize the in-tree gitRepo volume to clone git repositories from other pods within the same node. Since the in-tree gitRepo volume feature has been deprecated and will not receive...

1 affected package

kubernetes

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
kubernetes Not affected Not affected Not affected
Show less packages

CVE-2025-0426

Medium priority
Needs evaluation

A security issue was discovered in Kubernetes where a large number of container checkpoint requests made to the unauthenticated kubelet read-only HTTP endpoint may cause a Node Denial of Service by filling the Node’s disk.

1 affected package

kubernetes

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
kubernetes Needs evaluation Needs evaluation Needs evaluation
Show less packages

CVE-2024-9594

Medium priority
Needs evaluation

A security issue was discovered in the Kubernetes Image Builder versions <= v0.1.37 where default credentials are enabled during the image build process when using the Nutanix, OVA, QEMU or raw providers. The credentials can be...

1 affected package

kubernetes

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
kubernetes Needs evaluation Needs evaluation Needs evaluation
Show less packages

CVE-2024-9486

Medium priority
Not affected

A security issue was discovered in the Kubernetes Image Builder versions <= v0.1.37 where default credentials are enabled during the image build process. Virtual machine images built using the Proxmox provider do not disable these...

1 affected package

kubernetes

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
kubernetes Not affected Not affected Not affected
Show less packages

CVE-2024-9042

Medium priority
Not affected

This CVE affects only Windows worker nodes. Your worker node is vulnerable to this issue if it is running one of the affected versions listed below.

1 affected package

kubernetes

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
kubernetes Not affected Not affected Not affected
Show less packages

CVE-2024-7598

Medium priority
Needs evaluation

A security issue was discovered in Kubernetes where a malicious or compromised pod could bypass network restrictions enforced by network policies during namespace deletion. The order in which objects are deleted during namespace...

1 affected package

kubernetes

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
kubernetes Needs evaluation Needs evaluation Needs evaluation
Show less packages

CVE-2024-5321

Medium priority
Needs evaluation

A security issue was discovered in Kubernetes clusters with Windows nodes where BUILTIN\Users may be able to read container logs and NT AUTHORITY\Authenticated Users may be able to modify container logs.

1 affected package

kubernetes

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
kubernetes Needs evaluation Needs evaluation Needs evaluation
Show less packages

CVE-2024-3177

Medium priority
Needs evaluation

A security issue was discovered in Kubernetes where users may be able to launch containers that bypass the mountable secrets policy enforced by the ServiceAccount admission plugin when using containers, init containers,...

1 affected package

kubernetes

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
kubernetes Needs evaluation Needs evaluation Needs evaluation
Show less packages

CVE-2024-10220

Medium priority
Needs evaluation

The Kubernetes kubelet component allows arbitrary command execution via specially crafted gitRepo volumes.This issue affects kubelet: through 1.28.11, from 1.29.0 through 1.29.6, from 1.30.0 through 1.30.2.

1 affected package

kubernetes

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
kubernetes Needs evaluation Needs evaluation Needs evaluation
Show less packages