5 Total advisories
5 Vulnerabilities
0 Malware
Dependency scanning
Check whether k8s.io/client-go is in your codebase
Corgea flags malicious and compromised dependencies with reachability analysis, so you fix the packages that actually run in your application instead of working through the whole lockfile.
Vulnerabilities
MEDIUM 4.7
CVE-2020-8565
Kubernetes client-go vulnerable to Sensitive Information Leak via Log File
MEDIUM 6.5
CVE-2019-11250
Kubernetes client-go library logs may disclose credentials to unauthorized users
UNKNOWN
CVE-2019-11250
Unauthorized credential disclosure in k8s.io/kubernetes and k8s.io/client-go
UNKNOWN
CVE-2020-8565
Unauthorized credential disclosure via debug logs in k8s.io/kubernetes and k8s.io/client-go
MEDIUM 5.0
CVE-2019-11244
Kubernetes Unsafe Cacheing
Browse more Go advisories
Learn What is SAST?
Static Application Security Testing finds vulnerabilities like this one in source code before it ships. Read the guide →
Ready to move
Start Securing
Free, no credit card | First findings in minutes