浏览 33+ 条来自 NVD 与 CNNVD 的 CVE 漏洞,配 AI 中文翻译、AI POC 生成、每日情报;可按厂商、产品、严重等级、CWE 检索。
| CVE ID | Title | Vendor | Product | Severity | CVSS Score | Published At | AI Analysis |
|---|---|---|---|---|---|---|---|
| CVE-2026-33726 | Cilium L7 proxy may bypass Kubernetes NetworkPolicy for same-node traffic | cilium | cilium | Medium | 5.4 | 2026-03-27 00:23:22 | Deep Dive |
| CVE-2026-26963 | Cilium may not enforce host firewall policies when Native Routing, WireGuard and Node Encryption are enabled | cilium | cilium | Medium | 6.1 | 2026-02-19 23:38:36 | Deep Dive |
| CVE-2025-64715 | Cilium with misconfigured toGroups in policies can lead to unrestricted egress traffic | cilium | cilium | Medium | 4.0 | 2025-11-29 00:11:27 | Deep Dive |
| CVE-2025-48056 | Hubble CLI vulnerable to character injection | cilium | hubble | Medium | 5.3 | 2025-05-20 19:55:58 | Deep Dive |
| CVE-2025-32793 | Cilium packets from terminating endpoints may not be encrypted in Wireguard-enabled clusters | cilium | cilium | Medium | 4.0 | 2025-04-21 15:34:14 | Deep Dive |
| CVE-2025-30163 | Node based network policies may incorrectly allow workload traffic | cilium | cilium | Low | 3.4 | 2025-03-24 18:46:35 | Deep Dive |
| CVE-2025-30162 | East-west traffic not subject to egress policy enforcement for requests via Gateway API load balancers | cilium | cilium | Low | 3.2 | 2025-03-24 18:44:08 | Deep Dive |
| CVE-2025-23047 | Cilium vulnerable to information leakage via insecure default Hubble UI CORS header | cilium | cilium | Medium | 6.5 | 2025-01-22 17:20:10 | Deep Dive |
| CVE-2025-23028 | DoS in Cilium agent DNS proxy from crafted DNS responses | cilium | cilium | Medium | 5.3 | 2025-01-22 16:48:20 | Deep Dive |
| CVE-2024-52529 | Layer 7 policy enforcement may not occur in policies with wildcarded port ranges in Cilium | cilium | cilium | Medium | 5.8 | 2024-11-25 18:49:16 | Deep Dive |
| CVE-2024-47825 | CIDR deny policies may not take effect when a more narrow CIDR allow is present | cilium | cilium | Medium | 4.0 | 2024-10-21 19:05:55 | Deep Dive |
| CVE-2024-42486 | Cilium vulnerable to information leakage via incorrect ReferenceGrant update logic in Gateway API | cilium | cilium | Medium | 5.4 | 2024-08-16 14:34:42 | Deep Dive |
| CVE-2024-42488 | Cilium agent's race condition may lead to policy bypass for Host Firewall policy | cilium | cilium | Medium | 6.8 | 2024-08-15 20:36:29 | Deep Dive |
| CVE-2024-42487 | Cilium's Gateway API route matching order contradicts specification | cilium | cilium | Medium | 4.0 | 2024-08-15 20:26:53 | Deep Dive |
| CVE-2024-37307 | Cilium leaks sensitive information in cilium-bugtool | cilium | cilium | High | 7.9 | 2024-06-13 16:09:22 | Deep Dive |
| CVE-2024-28860 | Insecure IPsec transport encryption in Cilium | cilium | cilium | High | 8.0 | 2024-03-27 18:34:23 | Deep Dive |
| CVE-2024-28250 | Cilium has possible unencrypted traffic between nodes when using WireGuard and L7 policies | cilium | cilium | Medium | 6.1 | 2024-03-18 21:42:22 | Deep Dive |
| CVE-2024-28249 | Cilium has possible unencrypted traffic between nodes when using IPsec and L7 policies | cilium | cilium | Medium | 6.1 | 2024-03-18 21:36:11 | Deep Dive |
| CVE-2024-28248 | Cilium intermittent HTTP policy bypass | cilium | cilium | High | 7.2 | 2024-03-18 21:31:51 | Deep Dive |
| CVE-2024-25631 | Unencrypted traffic between pods when using Wireguard and an external kvstore | cilium | cilium | Medium | 6.1 | 2024-02-20 18:08:57 | Deep Dive |