CVE-2021-25740

LOW3.1EPSS 0.52%

Confused Deputy in Kubernetes

Published: 9/21/2021Modified: 4/28/2026

Description

A security issue was discovered with Kubernetes that could enable users to send network traffic to locations they would otherwise not have access to via a confused deputy attack.

Affected packages (2)

CVSS scores

SourceVersionSeverityVector
osvCVSS 3.1LOW3.1CVSS:3.1/AV:N/AC:H/PR:L/UI:N/S:U/C:L/I:N/A:N

References (6)