Apache Camel K是美国阿帕奇(Apache)基金会的一个面向Kubernetes与云原生环境的集成运行平台。 Apache Camel K 2.0.0至2.8.1之前版本、2.9.0至2.9.2之前版本和2.10.0至2.10.1之前版本存在安全漏洞,该漏洞源于外部控制资源引用和授权绕过问题,可能导致Kubernetes命名空间中授权用户创建Build资源,控制其选择的命名空间中的Pod生成,包括操作员命名空间。
| Vendor | Product | Version Range | Status |
|---|---|---|---|
| Apache Software Foundation | Apache Camel K | 2.0.0< 2.8.1 |
affected |
2.9.0< 2.9.2 |
affected | ||
2.10.0< 2.10.1 |
affected |
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| Vendor | Product | Affected Versions | CPE | Subscribe |
|---|---|---|---|---|
| Apache Software Foundation | Apache Camel K | 2.0.0 ~ 2.8.1 | - |
|
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POCNo comments yet