Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
Insecure permissions in cert-manager v1.14.4 allows attackers to access sensitive data and escalate privileges by obtaining the service account's token.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
cert-manager 安全漏洞
Vulnerability Description
cert-manager是cert-manager开源的一个证书管理器。将证书和证书颁发者添加为 Kubernetes 集群中的资源类型,并简化了这些证书的获取、续订和使用过程。 cert-manager v1.14.4及之前版本存在安全漏洞,该漏洞源于存在不安全权限允许攻击者访问敏感数据并通过获取服务帐户的令牌来提升权限。
CVSS Information
N/A
Vulnerability Type
N/A