Search Results (Refine Search)
- Results Type: Overview
- Keyword (text search): cpe:2.3:a:kubernetes:java:3.0.0:beta1:*:*:*:*:*:*
- CPE Name Search: true
Vuln ID | Summary | CVSS Severity |
---|---|---|
CVE-2021-25738 |
Loading specially-crafted yaml with the Kubernetes Java Client library can lead to code execution. Published: October 11, 2021; 3:15:07 PM -0400 |
V4.0:(not available) V3.1: 6.7 MEDIUM V2.0: 4.6 MEDIUM |
CVE-2020-8570 |
Kubernetes Java client libraries in version 10.0.0 and versions prior to 9.0.1 allow writes to paths outside of the current directory when copying multiple files from a remote pod which sends a maliciously crafted archive. This can potentially overwrite any files on the system of the process executing the client code. Published: January 21, 2021; 12:15:14 PM -0500 |
V4.0:(not available) V3.1: 9.1 CRITICAL V2.0: 6.4 MEDIUM |