pkg:Bitnami/kyverno
共 14 筆 CVECRITICAL1HIGH11MEDIUM2
✅ 檢查你的版本
所有已知漏洞
- from 0, < 1.15.3, >= 1.16.0, < 1.16.3
- HIGH8.5CVE-2026-4789Kyverno has SSRF via CEL http.Get/http.Post in NamespacedValidatingPolicy allows cross-namespace data access>= 1.16.0, < 1.17.2
- HIGH8.5CVE-2025-46342Kyverno vulnerable to bypass of policy rules that use namespace selectors in match statements in github.com/kyverno/kyvernofrom 0, < 1.13.5
- HIGH8.1CVE-2026-41323Kyverno: ServiceAccount token leaked to external servers via apiCall service URLfrom 0, < 1.16.4, >= 1.17.0, < 1.17.2
- HIGH8.1CVE-2026-40868kyverno apicall servicecall implicit bearer token injection leaks kyverno serviceaccount tokenfrom 0, < 1.16.4
- >= 1.8.3, <= 1.8.3, >= 1.8.4, <= 1.8.4
- from 0, < 1.16.4, >= 1.17.0, < 1.17.2
- HIGH7.7CVE-2026-41068Kyverno: Cross-Namespace Read Bypasses RBAC Isolation (CVE-2026-22039 Incomplete Fix)from 0, < 1.17.2
- from 0, < 1.15.3, >= 1.16.0, < 1.16.3
- HIGH7.7CVE-2025-47281Kyverno's Improper JMESPath Variable Evaluation Lead to Denial of Service in github.com/kyverno/kyvernofrom 0, < 1.14.2
- HIGH7.5CVE-2024-48921Kyverno's PolicyException objects can be created in any namespace by default in github.com/kyverno/kyvernofrom 0, < 1.13.0
- from 0, < 1.10.5
- MEDIUM6.1CVE-2026-44245Kyverno: [policy-reporter-ui] XSS via Stored Property Values in PropertyCard Componentfrom 0, < 2.5.2
- from 0, < 1.14.0