Kubernetes Capsule Vulnerability Enables Attackers to Inject Arbitrary Labels

Vulnerability Disclosed in Kubernetes Capsule

Published: October 2023

Overview

Researchers have identified a significant vulnerability in Kubernetes Capsule, specifically in version v0.10.3 and earlier. This flaw poses a risk to authenticated tenant users.

Details of the Vulnerability

The vulnerability allows authenticated tenant users to inject arbitrary labels, which could lead to unauthorized access or manipulation of resources within the Kubernetes environment.

For further information