CVEs (9)
CVE VENDORS PRODUCTS UPDATED PUBLISHED CVSS |
|---|
Improper limitation of a pathname to a restricted directory ('path traversal') in Microsoft Azure Kubernetes Service allows an authorized attacker to execute code locally. |
1Microsoft 1Azure Kubernetes Service Jul 24, 2026 Apr 3, 2026 N/A· v4 9.8 CRITICAL· v3 N/A· v2 Improper authorization in Microsoft Azure Kubernetes Service allows an unauthorized attacker to elevate privileges over a network. |
1Microsoft 1Azure Kubernetes Service Jun 17, 2026 Feb 13, 2024 N/A· v4 9.0 CRITICAL· v3 N/A· v2 Microsoft Azure Kubernetes Service Confidential Container Elevation of Privilege Vulnerability |
1Microsoft 1Azure Kubernetes Service Jun 17, 2026 Feb 13, 2024 N/A· v4 9.0 CRITICAL· v3 N/A· v2 Microsoft Azure Kubernetes Service Confidential Container Remote Code Execution Vulnerability |
33Akka AmazonApache+30 more165.net 3scale Api Management PlatformAdvanced Cluster Management For Kubernetes+162 moreJun 17, 2026 Oct 10, 2023 N/A· v4 7.5 HIGH· v3 N/A· v2 The HTTP/2 protocol allows a denial of service (server resource consumption) because request cancellation can reset many streams quickly, as exploited in the wild in August through October 2023. |
1Microsoft 1Azure Kubernetes Service Jun 17, 2026 Sep 12, 2023 N/A· v4 9.8 CRITICAL· v3 N/A· v2 Microsoft Azure Kubernetes Service Elevation of Privilege Vulnerability |
1Microsoft 5Azure Container Instances Azure Container RegistryAzure Kubernetes Service+2 moreJun 17, 2026 Mar 11, 2021 N/A· v4 6.8 MEDIUM· v3 2.7 LOW· v2 Azure Virtual Machine Information Disclosure Vulnerability |
1Microsoft 1Azure Kubernetes Service Jun 17, 2026 Feb 25, 2021 N/A· v4 6.8 MEDIUM· v3 6.0 MEDIUM· v2 Microsoft Azure Kubernetes Service Elevation of Privilege Vulnerability |
1Microsoft 1Azure Kubernetes Service Jun 17, 2026 Jan 12, 2021 N/A· v4 5.5 MEDIUM· v3 2.1 LOW· v2 Azure Active Directory Pod Identity Spoofing Vulnerability |