Vulnerabilidades em fluxcd
9 resultadosCVE-2021-41254HIGHPrivilege escalation to cluster admin on multi-tenant environmentsEPSS 1.8%CVE-2022-24877CRITICALImproper path handling in kustomization files allows path traversalEPSS 1.1%CVE-2022-24817CRITICALImproper kubeconfig validation allows arbitrary code executionEPSS 1.0%CVE-2022-36049HIGHFlux2 Helm Controller denial of serviceEPSS 1.0%CVE-2022-24878HIGHImproper path handling in Kustomization files allows for denial of serviceEPSS 0.9%CVE-2022-39272MEDIUMFlux2 vulnerable to Denial of Service due to Improper use of metav1.DurationEPSS 0.6%CVE-2022-36035HIGHFlux CLI Workload InjectionEPSS 0.3%CVE-2024-31216MEDIUMsource-controller leaks theAzure Storage SAS token into logs on connection errorsEPSS 0.2%CVE-2026-40109LOWFlux notification-controller GCR Receiver missing email validation allows unauthorized reconciliation triggeringEPSS 0.1%