Vulnerabilities (CVE)

Filtered by vendor Mirantis Subscribe
Filtered by product Bored-agent
Total 1 CVE
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2022-0270 1 Mirantis 1 Bored-agent 2024-02-04 6.5 MEDIUM 8.8 HIGH
Prior to v0.6.1, bored-agent failed to sanitize incoming kubernetes impersonation headers allowing a user to override assigned user name and groups.