Backstage 是一个用于构建开发者门户的开放框架。在版本 0.21.8 之前,@backstage/plugin-kubernetes-backend 包存在因在已弃用的 Kubernetes 服务端点中对实体进行不当验证而导致的安全问题。具有 Kubernetes 读取权限的已认证用户,可通过向该弃用的服务端点提供精心构造的实体数据,从而访问超出其预期范围的 Kubernetes 工作负载数据。该漏洞的影响仅限于对已配置集群中的 Kubernetes 对象元数据的只读访问。此问题已在版本 0.21.8 中得
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| Vendor | Product | Affected Versions | CPE | Subscribe |
|---|---|---|---|---|
| backstage | backstage | < 1.54.1 | - |
|
| @backstage | plugin-kubernetes-backend | < 0.21.8 | - |
|
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POC| CVE-2026-106558 | 8.8 HIGH | Backstage: Improper validation of TechDocs MkDocs configuration |
| CVE-2026-106510 | 7.7 HIGH | Backstage: Remote code execution via crafted markdown_extensions in TechDocs mkdocs.yml |
| CVE-2026-106556 | 7.7 HIGH | Backstage: Configuration bypass in TechDocs mkdocs.yml sanitization |
| CVE-2026-106560 | 7.1 HIGH | Backstage: Improper repository path validation in a Scaffolder backend module |
| CVE-2026-106559 | 6.3 MEDIUM | Backstage: Improper input validation in Confluence to Markdown scaffolder module |
| CVE-2026-106561 | 5.0 MEDIUM | Backstage: Sensitive information disclosure in Kubernetes resource queries |
| CVE-2026-106562 | 4.3 MEDIUM | Backstage: Incorrect authorization in search engine permission filtering |
No comments yet