CVE-2024-48921
- EPSS 0.34%
- Veröffentlicht 29.10.2024 15:15:10
- Zuletzt bearbeitet 07.11.2024 17:20:34
Kyverno is a policy engine designed for Kubernetes. A kyverno ClusterPolicy, ie. "disallow-privileged-containers," can be overridden by the creation of a PolicyException in a random namespace. By design, PolicyExceptions are consumed from any namespa...
CVE-2023-42816
- EPSS 0.22%
- Veröffentlicht 13.11.2023 21:15:08
- Zuletzt bearbeitet 21.11.2024 08:23:16
Kyverno is a policy engine designed for Kubernetes. A security vulnerability was found in Kyverno where an attacker could cause denial of service of Kyverno. The vulnerability was in Kyvernos Notary verifier. An attacker would need control over the r...
CVE-2023-42813
- EPSS 0.33%
- Veröffentlicht 13.11.2023 21:15:07
- Zuletzt bearbeitet 21.11.2024 08:23:15
Kyverno is a policy engine designed for Kubernetes. A security vulnerability was found in Kyverno where an attacker could cause denial of service of Kyverno. The vulnerable component in Kyvernos Notary verifier. An attacker would need control over th...
CVE-2023-42814
- EPSS 0.13%
- Veröffentlicht 13.11.2023 21:15:07
- Zuletzt bearbeitet 21.11.2024 08:23:16
Kyverno is a policy engine designed for Kubernetes. A security vulnerability was found in Kyverno where an attacker could cause denial of service of Kyverno. The vulnerable component in Kyvernos Notary verifier. An attacker would need control over th...
CVE-2023-42815
- EPSS 0.13%
- Veröffentlicht 13.11.2023 21:15:07
- Zuletzt bearbeitet 21.11.2024 08:23:16
Kyverno is a policy engine designed for Kubernetes. A security vulnerability was found in Kyverno where an attacker could cause denial of service of Kyverno. The vulnerability was in Kyvernos Notary verifier. An attacker would need control over the r...
CVE-2023-34091
- EPSS 0.05%
- Veröffentlicht 01.06.2023 17:15:10
- Zuletzt bearbeitet 21.11.2024 08:06:31
Kyverno is a policy engine designed for Kubernetes. In versions of Kyverno prior to 1.10.0, resources which have the `deletionTimestamp` field defined can bypass validate, generate, or mutate-existing policies, even in cases where the `validationFail...
CVE-2023-33191
- EPSS 0.16%
- Veröffentlicht 30.05.2023 07:15:09
- Zuletzt bearbeitet 21.11.2024 08:05:05
Kyverno is a policy engine designed for Kubernetes. Kyverno seccomp control can be circumvented. Users of the podSecurity `validate.podSecurity` subrule in Kyverno 1.9.2 and 1.9.3 are vulnerable. This issue was patched in version 1.9.4.