Lucene search

K
veracodeVeracode Vulnerability DatabaseVERACODE:27617
HistoryOct 19, 2020 - 6:51 a.m.

Information Disclosure

2020-10-1906:51:57
Veracode Vulnerability Database
sca.analysiscenter.veracode.com
14
kubernetes
vulnerability
information disclosure
docker configuration
pull secrets
registry credentials

EPSS

0.001

Percentile

17.2%

github.com/kubernetes/kubernetes is vulnerable to information disclosure. When the logging level is to at least 4, processing a malicious docker configuration file will result in the contents of the docker configuration file being leaked, which can include pull secrets or other registry credentials.