go

github.com/kubeedge/kubeedge

View on go registry
20 Total advisories
20 Vulnerabilities
0 Malware

Dependency scanning

Check whether github.com/kubeedge/kubeedge is in your codebase

Corgea flags malicious and compromised dependencies with reachability analysis, so you fix the packages that actually run in your application instead of working through the whole lockfile.

Vulnerabilities

HIGH 8.8
Go

CVE-2026-62182

KubeEdge: ConfigUpdateJob updateFields enables remote shell injection and code execution on edge nodes

HIGH 8.1
Go

CVE-2026-62369

KubeEdge: keadm DecompressTarGz path traversal enables arbitrary file write on Windows during edge node join

HIGH 8.8
Go

CVE-2026-62371

KubeEdge: Command Injection in NodeUpgradeJob - RCE on edge nodes via v1alpha2 API

MEDIUM 6.5
Go

CVE-2026-62370

KubeEdge: Unbounded allocation in viaduct packer enables authenticated remote DoS against CloudHub

UNKNOWN
Go

CVE-2022-31079

KubeEdge Cloud Stream and Edge Stream DoS from large stream message in github.com/kubeedge/kubeedge

UNKNOWN
Go

CVE-2022-31077

CloudCore CSI Driver: Malicious response from KubeEdge can crash CSI Driver controller server in github.com/kubeedge/kubeedge

UNKNOWN
Go

CVE-2022-31074

KubeEdge Cloud AdmissionController component DoS in github.com/kubeedge/kubeedge

UNKNOWN
Go

CVE-2022-31080

DoS in KubeEdge's Websocket Client in package Viaduct in github.com/kubeedge/kubeedge

UNKNOWN
Go

CVE-2022-31073

KubeEdge Edge ServiceBus module DoS in github.com/kubeedge/kubeedge

UNKNOWN
Go

CVE-2022-31075

KubeEdge DoS when signing the CSR from EdgeCore in github.com/kubeedge/kubeedge

UNKNOWN
Go

CVE-2022-31076

CloudCore UDS Server: Malicious Message can crash CloudCore in github.com/kubeedge/kubeedge

UNKNOWN
Go

CVE-2022-31078

KubeEdge CloudCore Router memory exhaustion vulnerability in github.com/kubeedge/kubeedge

MEDIUM 4.2
Go

CVE-2022-31076

CloudCore UDS Server: Malicious Message can crash CloudCore

MEDIUM 4.0
Go

CVE-2022-31077

CloudCore CSI Driver: Malicious response from KubeEdge can crash CSI Driver controller server

MEDIUM 4.4
Go

CVE-2022-31080

DoS in KubeEdge's Websocket Client in package Viaduct

MEDIUM 6.5
Go

CVE-2022-31073

KubeEdge Edge ServiceBus module DoS

MEDIUM 4.4
Go

CVE-2022-31079

KubeEdge Cloud Stream and Edge Stream DoS from large stream message

MEDIUM 4.9
Go

CVE-2022-31075

KubeEdge DoS when signing the CSR from EdgeCore

MEDIUM 4.4
Go

CVE-2022-31078

KubeEdge CloudCore Router memory exhaustion vulnerability

MEDIUM 4.5
Go

CVE-2022-31074

KubeEdge Cloud AdmissionController component DoS

Learn What is SAST?

Static Application Security Testing finds vulnerabilities like this one in source code before it ships. Read the guide →

Ready to move

Start Securing

Free, no credit card | First findings in minutes