CVEs we hold for Kubernetes
Records whose assigning authority named Kubernetes as the affected vendor. Newest identifiers first, capped at 200.
CVE-2026-3864CSI Driver for NFS path traversal via subDir may delete unintended directories on the NFS serverKubernetes CSI Driver for NFS
CVE-2025-9708Kubernetes C# Client: improper certificate validation in custom CA mode may lead to man-in-the-middle attacksKubernetes CSharp Client
CVE-2025-7445Kubernetes secrets-store-sync-controller discloses service account tokens in logsKubernetes secrets-store-sync-controller
CVE-2025-7342VM images built with Kubernetes Image Builder Nutanix or OVA providers use default credentials for Windows images if…Kubernetes Image Builder
CVE-2025-53542Kubernetes Headlamp Allows Arbitrary Command Injection in macOS Process headlamp@codeSignkubernetes-sigs headlamp
CVE-2025-24514ingress-nginx controller - configuration injection via unsanitized auth-url annotationkubernetes ingress-nginx
CVE-2025-24513ingress-nginx controller - auth secret file path traversal vulnerabilitykubernetes ingress-nginx
CVE-2025-15566ingress-nginx auth-proxy-set-headers nginx configuration injectionKubernetes ingress-nginx
CVE-2025-1098ingress-nginx controller - configuration injection via unsanitized mirror annotationskubernetes ingress-nginx
CVE-2025-1097ingress-nginx controller - configuration injection via unsanitized auth-tls-match-cn annotationkubernetes ingress-nginx
CVE-2024-9594VM images built with Image Builder with some providers use default credentials during buildsKubernetes Image Builder
CVE-2024-9486VM images built with Image Builder and Proxmox provider use default credentialsKubernetes Image Builder
CVE-2024-7598Network restriction bypass via race condition during namespace terminationKubernetes kube-apiserver
CVE-2024-3744Kubernetes azure-file-csi-driver in versions before 1.29.4 and 1.30.1 discloses service account tokens in logsKubernetes azure-file-csi-driver
CVE-2024-3177Bypassing mountable secrets policy imposed by the ServiceAccount admission pluginKubernetes
CVE-2023-5528Kubernetes - Windows nodes - Insufficient input sanitization in in-tree storage plugin leads to privilege escalationKubernetes kubelet
CVE-2023-5044Code injection via nginx.ingress.kubernetes.io/permanent-redirect annotationKubernetes ingress-nginx
CVE-2023-5043Ingress nginx annotation injection causes arbitrary command executionKubernetes ingress-nginx
CVE-2023-3955Kubernetes - Windows nodes - Insufficient input sanitization leads to privilege escalationKubernetes kubelet
CVE-2023-3893Kubernetes - csi-proxy - Insufficient input sanitization leads to privilege escalationKubernetes csi-proxy
CVE-2023-3676Kubernetes - Windows nodes - Insufficient input sanitization leads to privilege escalationKubernetes kubelet
CVE-2023-2878Kubernetes secrets-store-csi-driver discloses service account tokens in logsKubernetes secrets-store-csi-driver
CVE-2023-2728Bypassing enforce mountable secrets policy imposed by the ServiceAccount admission pluginKubernetes
CVE-2023-1174[minikube] Network Port exposure in minikube running on macOS using Docker driverKubernetes minikube
CVE-2022-4886Ingress-nginx `path` sanitization can be bypassed with `log_format` directiveKubernetes ingress-nginx
CVE-2022-3248Openshift api admission checks does not enforce "custom-host" permissionsn/a kubernetes; Red Hat Advanced Cluster Management for…
CVE-2022-3172Kubernetes - API server - Aggregated API server can cause clients to be redirected (SSRF)Kubernetes kube-apiserver
CVE-2021-25748Ingress-nginx `path` sanitization can be bypassed with newline characterKubernetes ingress-nginx
CVE-2021-25745Ingress-nginx path can be pointed to service account token fileKubernetes ingress-nginx
CVE-2021-25742Ingress-nginx custom snippets allows retrieval of ingress-nginx serviceaccount token and secrets across all namespacesKubernetes ingress-nginx
CVE-2020-8570Kubernetes Java client libraries unvalidated path traversal in Copy implementationKubernetes Java Client
CVE-2020-8568Kubernetes Secrets Store CSI Driver sync/rotate directory traversalKubernetes Secrets Store CSI Driver
CVE-2020-8567Kubernetes Secrets Store CSI Driver plugin directory traversalsKubernetes Secrets Store CSI Driver
CVE-2020-8565Incomplete fix for CVE-2019-11250 allows for token leak in logs when logLevel >= 9Kubernetes
CVE-2020-8558Kubernetes node setting allows for neighboring hosts to bypass localhost boundaryKubernetes
CVE-2020-8553Kubernetes ingress-nginx Compromise of auth via subset/superset namespace namesKubernetes ingress-nginx
CVE-2019-11255Kubernetes CSI volume snapshot, cloning and resizing features can result in unauthorized volume data access or mutationkubernetes-csi external-resizer
CVE-2019-11254Kubernetes API Server denial of service vulnerability from malicious YAML payloadsKubernetes
CVE-2019-11253Kubernetes API Server JSON/YAML parsing vulnerable to resource exhaustion attackKubernetes
CVE-2019-11245kubelet-started container uid changes to root after first restart or if image is already pulled to the nodeKubernetes
CVE-2018-1002102Kubernetes API server follows unvalidated redirects from streaming Kubelet endpointsKubernetes
106 records, read from the index as it stood on 20 Sep 2026. Every row opens the record it names, and every value on that record opens its own receipt.
Everything on this page is free. Public data. Withholding it protects nothing.