Lucene search

K
gitlabHttps://gitlab.com/gitlab-org/security-products/gemnasium-dbGITLAB-5EFFC804C3FC3D7DEDD64EF00D8C3F18
HistoryJun 05, 2020 - 12:00 a.m.

Server-Side Request Forgery (SSRF)

2020-06-0500:00:00
https://gitlab.com/gitlab-org/security-products/gemnasium-db
gitlab.com
35

0.001 Low

EPSS

Percentile

41.5%

The Kubernetes kube-controller-manager is vulnerable to a Server Side Request Forgery (SSRF) that allows certain authorized users to leak up to bytes of arbitrary information from unprotected endpoints within the masterโ€™s host network (such as link-local or loopback services).