CVE-2024-5321Medium· 6.1▾ SunlitKubernetes sets incorrect permissions on Windows containers logs
▾ Sunlit zone — Low / medium · no exploitation signal
impact 33.6 · likelihood 0.1 · exploitation 0
Need a working PoC? Pro members can cast a request and our team develops one — it lands right here.
Exploit-prediction probability, daily snapshots since Sep 12.
Disclosure to exploitation, from the record and what we observed since indexing it.
Disclosed via OSV
Last analysed / modified upstream
0.3%
A security issue was discovered in Kubernetes clusters with Windows nodes where BUILTIN\Users may be able to read container logs and NT AUTHORITY\Authenticated Users may be able to modify container logs.
k8s.io/kubernetes < 1.27.16k8s.io/kubernetes >= 1.28.0, < 1.28.12k8s.io/kubernetes >= 1.29.0, < 1.29.7k8s.io/kubernetes >= 1.30.0, < 1.30.3Upgrade to a patched release:
k8s.io/kubernetes 1.27.16k8s.io/kubernetes 1.28.12k8s.io/kubernetes 1.29.7k8s.io/kubernetes 1.30.3Connected by shared product, vendor, weakness, or advisory.
CVE-2023-3676High· 8.8Kubernetes privilege escalation vulnerability
CVE-2020-8561Medium· 4.1Confused Deputy in Kubernetes
CVE-2025-1767Medium· 6.5Kubernetes GitRepo Volume Inadvertent Local Repository Access
CVE-2021-25736Medium· 5.8Kube-proxy may unintentionally forward traffic
CVE-2015-7561Low· 3.1Kubernetes in OpenShift3 Access Control Misconfiguration
CVE-2024-10220High· 8.1Kubernetes kubelet arbitrary command execution