← back
CVE-2023-2727

Bypassing policies imposed by the ImagePolicyWebhook admission plugin

CVSS 6.5 MEDIUMEPSS 1.1%CWE-20
Users may be able to launch containers using images that are restricted by ImagePolicyWebhook when using ephemeral containers. Kubernetes clusters are only affected if the ImagePolicyWebhook admission plugin is used together with ephemeral containers.
CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:N
Affected products
Kubernetes · Kubernetes

Want to know if your infrastructure is exposed to this?

Talk to TrueHacking →