Количество 2
Количество 2
CVE-2025-64171
MARIN3R is a lightweight, CRD based envoy control plane for kubernetes. In versions 0.13.3 and below, there is a cross-namespace secret access vulnerability in the project's DiscoveryServiceCertificate which allows users to bypass RBAC and access secrets in unauthorized namespaces. This issue is fixed in version 0.13.4.
GHSA-gf93-xccm-5g6j
MARIN3R: Cross-Namespace Vulnerability in the Operator
Уязвимостей на страницу
Уязвимость | CVSS | EPSS | Опубликовано | |
|---|---|---|---|---|
CVE-2025-64171 MARIN3R is a lightweight, CRD based envoy control plane for kubernetes. In versions 0.13.3 and below, there is a cross-namespace secret access vulnerability in the project's DiscoveryServiceCertificate which allows users to bypass RBAC and access secrets in unauthorized namespaces. This issue is fixed in version 0.13.4. | 0% Низкий | 3 месяца назад | ||
GHSA-gf93-xccm-5g6j MARIN3R: Cross-Namespace Vulnerability in the Operator | 0% Низкий | 3 месяца назад |
Уязвимостей на страницу