CVE-2022-28224Medium· 5.5▾ SunlitCalico vulnerable to pod route hijacking
▾ Sunlit zone — Low / medium · no exploitation signal
impact 30.3 · likelihood 0.1 · exploitation 0
Need a working PoC? Pro members can cast a request and our team develops one — it lands right here.
Exploit-prediction probability, daily snapshots since Aug 7.
Disclosure to exploitation, from the record and what we observed since indexing it.
Disclosed via OSV
Last analysed / modified upstream
0.6%
0.6% → 0.6%
Clusters using Calico (version 3.22.1 and below), Calico Enterprise (version 3.12.0 and below), may be vulnerable to route hijacking with the floating IP feature. Due to insufficient validation, a privileged attacker may be able to set a floating IP annotation to a pod even if the feature is not enabled. This may allow the attacker to intercept and reroute traffic to their compromised pod.
github.com/projectcalico/calico >= 3.22.0, < 3.22.2github.com/projectcalico/calico >= 3.21.0, < 3.21.5github.com/projectcalico/calico < 3.20.5Upgrade to a patched release:
github.com/projectcalico/calico 3.22.2github.com/projectcalico/calico 3.21.5github.com/projectcalico/calico 3.20.5Connected by shared product, vendor, weakness, or advisory.
CVE-2024-33522Medium· 6.7Calico privilege escalation vulnerability
CVE-2020-13597Medium· 6.0Exposure of Sensitive Information to an Unauthorized Actor and Insertion of Sensitive Information Into Sent Data in Calico
CVE-2023-41378High· 7.5Calico Typha denial of service vulnerability
CVE-2026-6720HighCalico Inserts Sensitive Information into Log File