Vulnerabilidades
Resumen — últimos 7 días
Vulnerabilidades nuevas2633▼ 304 respecto a la semana anterior
Críticas / altas1352▲ 80 respecto a la semana anterior
Nueva explotación activa (KEV)5▼ 3 respecto a la semana anterior
Sin puntuar (sin CVSS)58▼ 469 respecto a la semana anterior
277 resultados, ordenados por fecha de publicación (más recientes primero)
| CVE | Estado | Severidad | EPSS | Explotación activa | Tecnologías afectadas | Publicada ▼ | Modificada | Descripción |
|---|---|---|---|---|---|---|---|---|
| Recibida | Baja (2.3) | — | — | Mongodb Controllers FOR KubernetesAI | 5/10/2026 | 5/10/2026 | In MongoDB Controllers for Kubernetes, insufficient validation of Ops Manager backup configuration may allow a user who can modify an OpsManager custom resource to cause unintended administrative changes in Ops Manager. This affects deployments using Enterprise Ops Manager backup reconciliation. | |
| Recibida | Crítica (9.1) | 0.20% | — | Maclof Kubernetes ClientAI | 4/10/2026 | 5/10/2026 | maclof kubernetes-client 0.17.0 before 0.32.0 disables TLS certificate verification in parseKubeconfig() and parseKubeconfigFile() when a kubeconfig lacks certificate-authority-data, ignoring insecure-skip-tls-verify. On-path attackers can impersonate the Kubernetes API server to capture Bearer tokens or Basic… | |
| Pendiente de análisis | Alta (7.8) | 0.11% | — | Kubernetes Cri-oAI | 30/9/2026 | 30/9/2026 | A trust-boundary flaw in CRI-O's sandbox state persistence allows attacker-influenced pod metadata to overwrite CRI-O's own reserved sandbox bookkeeping; once reloaded as trusted after a restart, a later container recreate in that sandbox can expose a host-side runtime-management resource inside the container,… | |
| Pendiente de análisis | Media (6.5) | 0.20% | — | Kubernetes KubectlAI | 28/9/2026 | 29/9/2026 | A path traversal vulnerability was discovered in the Kubernetes kubectl client's kubectl cp command on Windows. When copying files from a container, kubectl runs tar inside the container to build a tar archive, transfers it over the network, and unpacks it on the local machine. If the tar binary in the container is… | |
| Pendiente de análisis | Alta (8.8) | 0.65% | — | Redhat Openshift Container PlatformAIKubernetes Cri-oAI | 21/9/2026 | 1/10/2026 | A vulnerability in CRI-O checkpoint restore allows a user who can create a pod from a malicious checkpointed container to bypass the destination Kubernetes security context. The restored process may retain credentials, Linux capabilities, no_new_privs, and seccomp state from the checkpoint instead of enforcing the… | |
| Pendiente de análisis | Alta (8) | 0.32% | — | Kubernetes Cri-oAI | 21/9/2026 | 22/9/2026 | A vulnerability was found in CRI-O related to the container checkpoint and restore feature. When CRI-O is configured to restore containers from checkpoint archives, insufficient validation of restore metadata may allow a user with sufficient privileges to perform unintended operations on the host filesystem.… | |
| Aplazada | Alta (7.6) | 0.14% | — | KubernetesAITalosAIEtcdAISiderolabs OmniAI | 17/9/2026 | 24/9/2026 | Omni manages Kubernetes on bare metal, virtual machines, or in a cloud. From 1.3.0 until 1.6.6 and 1.7.3, importing a standalone Talos cluster creates an ImportedClusterSecrets resource containing the cluster's complete CA secrets bundle. The access rules in internal/backend/runtime/omni/state_access.go allow an… | |
| Aplazada | Media (5.3) | 0.46% | — | Flux Source ControllerAIKubernetesAIFlux Kustomize ControllerAIFlux Helm ControllerAI | 8/9/2026 | 30/9/2026 | The source-controller is a Kubernetes operator, specialised in artifacts acquisition from external sources such as Git, OCI, Helm repositories and S3-compatible buckets. In versions 0.0.17 through 1.8.4, an actor with the ability to influence the contents of a bucket referenced by a `Bucket` resource can cause… | |
| Analizada | Media (5.4) | 0.15% | — | Elastic Cloud ON Kubernetes | 2/9/2026 | 4/9/2026 | Incorrect Authorization (CWE-863) in Elastic Cloud on Kubernetes (ECK) can lead to unauthorized modification of data via Metadata Spoofing (CAPEC-690). An actor holding limited Kubernetes permissions confined to a single namespace could cause attacker-controlled certificate material to be included in the Elasticsearch… | |
| Analizada | Baja (3.5) | 0.28% | — | Elastic Cloud ON Kubernetes | 2/9/2026 | 3/9/2026 | Incomplete Cleanup (CWE-459) in Elastic Cloud on Kubernetes (ECK) can lead to unauthorized access via Privilege Abuse (CAPEC-122). Authentication credentials persist after a cross-namespace association has been denied by RBAC enforcement, allowing a low-privileged tenant to retain unauthorized read access to the… | |
| Pendiente de análisis | Media (6) | 0.11% | — | Kubernetes Cri-oAI | 24/8/2026 | 28/8/2026 | A flaw was found in CRI-O's container-creation environment-variable handling (`mergeEnvs` in `server/utils.go`, consumed by `setupContainerEnvironmentAndWorkdir` in `server/container_create.go`). When a `CreateContainer` request supplies a `nil` CRI `Envs` field, CRI-O falls back to using the target OCI image's… | |
| Pendiente de análisis | Media (5.4) | 0.35% | — | Redhat Advanced Cluster Management FOR KubernetesAI | 20/8/2026 | 3/9/2026 | A flaw was found in the lighthouse component of Red Hat Advanced Cluster Management for Kubernetes. This vulnerability stems from insufficient validation of advertised IP addresses within EndpointSlice objects. A compromised spoke cluster can exploit this by creating EndpointSlices with attacker-controlled IP… | |
| Pendiente de análisis | Crítica (9.3) | 0.62% | — | Redhat Multicluster Engine FOR KubernetesAI | 19/8/2026 | 29/9/2026 | A flaw was found in the `cluster-proxy-addon` component of Multicluster Engine for Kubernetes. This vulnerability allows an unauthenticated attacker, who can access the user-facing route, to bypass authentication and authorization checks. By manipulating URL path segments, the attacker can proxy requests to arbitrary… | |
| Pendiente de análisis | Alta (8.4) | 1.0% | — | RenovateAIKubernetes KustomizeAIHelmAI | 19/8/2026 | 8/9/2026 | Renovate versions from 39.218.0 before 40.33.0 contain an arbitrary command injection vulnerability in the kustomize manager where user-provided chart names are appended to helm pull commands without proper sanitization. Attackers with repository write access can craft malicious kustomization.yaml files with specially… | |
| Pendiente de análisis | Alta (8.7) | 0.27% | — | Managed-serviceaccountAIKubernetes Addon-managerAI | 18/8/2026 | 20/8/2026 | A flaw was found in managed-serviceaccount. A compromised addon-manager pod, due to its ClusterRole granting excessive permissions, can read any secret across all namespaces. Additionally, it can approve arbitrary Certificate Signing Requests (CSRs), which could lead to information disclosure and privilege escalation… | |
| Pendiente de análisis | Media (4.4) | 0.35% | — | Submariner-operatorAIRedhat Advanced Cluster Management FOR KubernetesAI | 18/8/2026 | 3/9/2026 | A flaw was found in the `submariner-operator` component of Red Hat Advanced Cluster Management for Kubernetes. This vulnerability allows a cluster administrator, or any user with permissions to modify the Submariner Custom Resource (CR), to specify an unvalidated image path. This lack of validation enables an attacker… | |
| Pendiente de análisis | Media (5.5) | 0.19% | — | Redhat Advanced Cluster Management FOR KubernetesAI | 18/8/2026 | 5/9/2026 | A flaw was found in the must-gather component of Red Hat Advanced Cluster Management for Kubernetes. The cluster Proxy object is dumped in raw form, bypassing the oc inspect redaction that would normally sanitize sensitive fields. This exposes proxy basic-auth credentials in the must-gather archive, potentially… | |
| Pendiente de análisis | Media (5.5) | 0.11% | — | Redhat Advanced Cluster Management FOR KubernetesAI | 18/8/2026 | 5/9/2026 | A flaw was found in the must-gather component of Red Hat Advanced Cluster Management for Kubernetes. Certain ACM wrapper Custom Resources that embed Secret data are collected without redaction. When an administrator runs must-gather, credentials and tokens are captured in cleartext in the resulting archive,… | |
| Pendiente de análisis | Alta (8.8) | 0.81% | — | Redhat Advanced Cluster Management FOR KubernetesAIRedhat Governance Policy Addon ControllerAI | 18/8/2026 | 27/8/2026 | A flaw was found in the governance-policy-addon-controller component of Red Hat Advanced Cluster Management for Kubernetes. A user with permissions to annotate the namespaced ManagedClusterAddOn resource can override the governance-policy container image. This allows an attacker to run a controlled image with… | |
| Analizada | Media (6.5) | 0.43% | — | Elastic Cloud ON Kubernetes | 13/8/2026 | 4/9/2026 | Cleartext Storage of Sensitive Information in an Environment Variable (CWE-526) in Elastic Cloud on Kubernetes (ECK) can lead to information disclosure via Retrieve Embedded Sensitive Data (CAPEC-37). When ECK reconciles a Fleet Server resource that authenticates to Elasticsearch with a service account token, the… | |
| Analizada | Media (6.5) | 0.38% | — | Elastic Cloud ON Kubernetes | 13/8/2026 | 3/9/2026 | The Elastic Cloud on Kubernetes (ECK) operator reads a list of secret references from an annotation on secrets it manages, and it accepts the namespace recorded in each reference without validating that the reference is authorized for the resource being reconciled. A user whose Kubernetes permissions are limited to… | |
| Modificada | Media (6.5) | 0.16% | — | Redhat Advanced Cluster Management FOR KubernetesRedhat Insights-client | 12/8/2026 | 5/9/2026 | A flaw was found in insights-client. The component's ServiceAccount is bound to a ClusterRole granting cluster-wide secrets get, list, and watch permissions, while the code only requires access to a single specific Secret. This excessive privilege means that a compromise of the insights-client pod or ServiceAccount… | |
| Pendiente de análisis | Alta (8.8) | 0.20% | — | KubevirtAIKubernetes Cri-oAI | 12/8/2026 | 21/9/2026 | A symlink following vulnerability was found in KubeVirt's virt-handler migration proxy. During live migration, virt-handler dials Unix sockets inside the target virt-launcher pod via /proc/<pid>/root/ paths using net.Dial() without symlink protection. These socket paths reside in qemu-owned directories writable by the… | |
| Pendiente de análisis | Crítica (9.9) | 0.65% | — | ProwlerAIKubernetesAIGoogle Cloud Platform GCPAI | 12/8/2026 | 9/9/2026 | Prowler is a cloud security platform. Prior to 5.36.0, the Kubernetes provider connection test accepted kubeconfig_content containing a legacy gcp auth-provider with config.cmd-path and config.cmd-args because kubeconfig_contains_exec_auth in api/src/backend/api/v1/serializers.py checked only exec blocks, and POST… | |
| Modificada | Alta (7.7) | 0.50% | — | Redhat Advanced Cluster Management FOR KubernetesRedhat Insights-client | 11/8/2026 | 5/9/2026 | A flaw was found in insights-client. The setDefault() function logs the value of every environment variable it processes, including CCX_TOKEN, a bearer credential used in disconnected cluster deployments. When glog verbosity is set to level 2 or higher, the token is written in clear text to the pod log on every… |