CRITICAL9.6CVE-2025-29922kcp allows unauthorized creation and deletion of objects in arbitrary workspaces through APIExport Virtual Workspace in github.com/kcp-dev/kcp
from 0, < 0.26.3
CRITICAL9.6CVE-2025-29922kcp allows unauthorized creation and deletion of objects in arbitrary workspaces through APIExport Virtual Workspace in github.com/kcp-dev/kcp
from 0, < 0.26.3
HIGH8.2CVE-2026-39429kcp's cache server is accessible without authentication or authorization checks