Vulnerabilidades em cilium

35 resultados
CVE-2023-27595MEDIUMCilium eBPF filters may be temporarily removed during agent restartEPSS 0.7%CVE-2023-30851LOWPotential HTTP policy bypass when using header rules in CiliumEPSS 0.7%CVE-2024-28248HIGHCilium intermittent HTTP policy bypassEPSS 0.6%CVE-2024-42486MEDIUMCilium vulnerable to information leakage via incorrect ReferenceGrant update logic in Gateway APIEPSS 0.6%CVE-2023-27594MEDIUMCilium vulnerable to potential network policy bypass when routing IPv6 traffic EPSS 0.6%CVE-2024-42487MEDIUMCilium's Gateway API route matching order contradicts specificationEPSS 0.5%CVE-2024-52529MEDIUMLayer 7 policy enforcement may not occur in policies with wildcarded port ranges in CiliumEPSS 0.5%CVE-2024-42488MEDIUMCilium agent's race condition may lead to policy bypass for Host Firewall policyEPSS 0.5%CVE-2025-23047MEDIUMCilium vulnerable to information leakage via insecure default Hubble UI CORS headerEPSS 0.5%CVE-2023-39347HIGHCilium NetworkPolicy bypass via pod labelsEPSS 0.5%CVE-2023-41332LOWDenial of service via Kubernetes annotations in specific Cilium configurationsEPSS 0.4%CVE-2025-23028MEDIUMDoS in Cilium agent DNS proxy from crafted DNS responsesEPSS 0.4%CVE-2023-41333MEDIUMBypass of namespace restrictions in CiliumNetworkPolicy EPSS 0.4%CVE-2024-47825MEDIUMCIDR deny policies may not take effect when a more narrow CIDR allow is presentEPSS 0.4%CVE-2022-29179HIGHImproper Privilege Management in CiliumEPSS 0.4%CVE-2023-34242LOWCilium vulnerable to information leakage via incorrect ReferenceGrant handlingEPSS 0.3%CVE-2022-29178HIGHIncorrect Default Permissions in CiliumEPSS 0.3%CVE-2024-28249MEDIUMCilium has possible unencrypted traffic between nodes when using IPsec and L7 policiesEPSS 0.3%CVE-2025-48056MEDIUMHubble CLI vulnerable to character injectionEPSS 0.2%CVE-2026-33726MEDIUMCilium L7 proxy may bypass Kubernetes NetworkPolicy for same-node trafficEPSS 0.2%