CVE-2015-7561Low· 3.1▾ SunlitKubernetes in OpenShift3 Access Control Misconfiguration
▾ Sunlit zone — Low / medium · no exploitation signal
impact 17.1 · likelihood 0.3 · exploitation 0
Need a working PoC? Pro members can cast a request and our team develops one — it lands right here.
Exploit-prediction probability, daily snapshots since Sep 12.
Disclosure to exploitation, from the record and what we observed since indexing it.
Disclosed via OSV
Last analysed / modified upstream
1.2%
1.2% → 1.7%
Kubernetes in OpenShift3 allows remote authenticated users to use the private images of other users should they know the name of said image.
k8s.io/kubernetes < 1.2.0-alpha.6Upgrade to a patched release:
k8s.io/kubernetes 1.2.0-alpha.6Connected by shared product, vendor, weakness, or advisory.
CVE-2024-5321Medium· 6.1Kubernetes sets incorrect permissions on Windows containers logs
CVE-2023-3676High· 8.8Kubernetes privilege escalation vulnerability
CVE-2020-8561Medium· 4.1Confused Deputy in Kubernetes
CVE-2025-1767Medium· 6.5Kubernetes GitRepo Volume Inadvertent Local Repository Access
CVE-2021-25736Medium· 5.8Kube-proxy may unintentionally forward traffic
CVE-2024-10220High· 8.1Kubernetes kubelet arbitrary command execution