GHSA-vw47-mr44-3jf9LowCVSS 3.1

Confused Deputy in Kubernetes

Published
September 21, 2021
Last Modified
June 9, 2026

🔗 CVE IDs covered (1)

📋 Description

A security issue was discovered with Kubernetes that could enable users to send network traffic to locations they would otherwise not have access to via a confused deputy attack.

🎯 Affected products1

  • go/k8s.io/kubernetes:<= 1.22.2

🔗 References (6)