Kubernetes Vulnerabilities and Affected Products
Vulnerabilities associated with kubelet.
Products
Clear product- Kubernetes51 vulnerabilities
- ingress-nginx17 vulnerabilities
- kubelet7 vulnerabilities
- Kubernetes ingress-nginx4 vulnerabilities
- Image Builder3 vulnerabilities
- minikube3 vulnerabilities
- image_builder2 vulnerabilities
- kube-apiserver2 vulnerabilities
- Kubernetes Java Client2 vulnerabilities
- Kubernetes Secrets Store CSI Driver2 vulnerabilities
- apiserver1 vulnerability
- argo-cd1 vulnerability
- aws-iam-authenticator1 vulnerability
- azure-file-csi-driver1 vulnerability
- CSI Driver for NFS1 vulnerability
- CSI Snapshotter1 vulnerability
- csi-proxy1 vulnerability
- devtron1 vulnerability
- k8s.gcr.io/defaultbackend1 vulnerability
- kops1 vulnerability
- Kubernetes CSharp Client1 vulnerability
- kubernetes-client/java1 vulnerability
- kubernetes-csi external-provisioner1 vulnerability
- kubernetes-csi external-resizer1 vulnerability
- kubernetes-csi external-snapshotter1 vulnerability
| Vulnerability | Title and context | CVSS | EPSS | PoCs | Signals | STIX action |
|---|---|---|---|---|---|---|
CVE-2025-1767MEDIUM | Kubernetes GitRepo Volume Inadvertent Local Repository AccessThis CVE only affects Kubernetes clusters that utilize the in-tree gitRepo volume to clone git repositories from other pods within the same node. Since the in-tree gitRepo volume feature has been deprecated and will not receive security updates upstream, any cluster still using this feature remains vulnerable. CWE-20Mar 13, 2025 | CVSS6.5v3.1 | EPSS0.539% | PoCs0 | SignalsNot listed in CISA KEVNo known ransomware useNo Nuclei templates | STIX |
CVE-2024-9042MEDIUM | Kubernetes allows Command Injection affecting Windows nodes via nodes/*/logs/query APIThis CVE affects only Windows worker nodes. Your worker node is vulnerable to this issue if it is running one of the affected versions listed below. | CVSS5.9v3.1 | EPSS1.4% | PoCs0 | SignalsNot listed in CISA KEVNo known ransomware useNo Nuclei templates | STIX |
CVE-2025-0426MEDIUM | Node Denial of Service via kubelet Checkpoint APIA security issue was discovered in Kubernetes where a large number of container checkpoint requests made to the unauthenticated kubelet read-only HTTP endpoint may cause a Node Denial of Service by filling the Node's disk. CWE-400Feb 13, 2025 | CVSS6.2v3.1 | EPSS0.364% | PoCs0 | SignalsNot listed in CISA KEVNo known ransomware useNo Nuclei templates | STIX |
Arbitrary command execution through gitRepo volumeThe Kubernetes kubelet component allows arbitrary command execution via specially crafted gitRepo volumes.This issue affects kubelet: through 1.28.11, from 1.29.0 through 1.29.6, from 1.30.0 through 1.30.2. CWE-22Nov 22, 2024 | CVSS-v4.0 | EPSS3% | PoCs7 | SignalsNot listed in CISA KEVNo known ransomware useNo Nuclei templates | STIX | |
CVE-2023-5528HIGH | Kubernetes - Windows nodes - Insufficient input sanitization in in-tree storage plugin leads to privilege escalationA security issue was discovered in Kubernetes where a user that can create pods and persistent volumes on Windows nodes may be able to escalate to admin privileges on those nodes. Kubernetes clusters are only affected if they are using an in-tree storage plugin for Windows nodes. CWE-20Nov 14, 2023 | CVSS7.2v3.1 | EPSS3.58% | PoCs0 | SignalsNot listed in CISA KEVNo known ransomware useNo Nuclei templates | STIX |
CVE-2023-3955HIGH | Kubernetes - Windows nodes - Insufficient input sanitization leads to privilege escalationA security issue was discovered in Kubernetes where a user that can create pods on Windows nodes may be able to escalate to admin privileges on those nodes. Kubernetes clusters are only affected if they include Windows nodes. CWE-20Oct 31, 2023 | CVSS8.8v3.1 | EPSS3.39% | PoCs0 | SignalsNot listed in CISA KEVNo known ransomware useNo Nuclei templates | STIX |
CVE-2023-3676HIGH | Kubernetes - Windows nodes - Insufficient input sanitization leads to privilege escalationA security issue was discovered in Kubernetes where a user that can create pods on Windows nodes may be able to escalate to admin privileges on those nodes. Kubernetes clusters are only affected if they include Windows nodes. CWE-20Oct 31, 2023 | CVSS8.8v3.1 | EPSS11.7% | PoCs0 | SignalsNot listed in CISA KEVNo known ransomware useNo Nuclei templates | STIX |