Kyverno 在 v1.13.4 之前存在服务器端请求伪造(SSRF)漏洞,该漏洞源于其服务调用(Service Call)功能。拥有创建 Kyverno(Cluster)Policy 权限的攻击者可以在策略的 apiCall/service 配置中指定一个外部 URL;尽管 Service Call 功能在文档中说明是用于集群内服务,但它实际上也会解析外部地址,从而允许向攻击者控制的服务器发起请求。由于策略上下文数据(包括 Kubernetes 资源(如 secrets)的内容)会通过这些请求发送出去,攻击者因
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POC| CVE-2026-84200 | 9.0 CRITICAL | Kyverno before v1.13.0 Policy Bypass via Multiple Exceptions |
| CVE-2026-84199 | 7.7 HIGH | Kyverno before 1.16.2 SSRF via APICall Feature |
| CVE-2026-84195 | 7.7 HIGH | Kyverno before 1.16.4 Credential Leak via apiCall |
| CVE-2026-84196 | 7.7 HIGH | Kyverno before 1.18.0 Server-Side Request Forgery via apiCall |
| CVE-2023-54356 | 3.7 LOW | Kyverno before 1.9.5 Sweet32 Medium Strength Cipher Suites |
No comments yet