HIGH 8.8 Go

Kubernetes Improper Input Validation vulnerability

GHSA-hq6q-c2x6-hmch · CVE-2023-5528 · GO-2023-2341

Published · Modified

AI SAST

Find this class of vulnerability in your own code

Corgea's AI-native static analysis detects vulnerabilities like this one across your repositories, ranks them by exploitability, and returns review-ready fixes.

Description

A security issue was discovered in Kubernetes where a user that can create pods and persistent volumes on Windows nodes may be able to escalate to admin privileges on those nodes. Kubernetes clusters are only affected if they are using an in-tree storage plugin for Windows nodes.

Ready to move

Start Securing

Free, no credit card | First findings in minutes