GHSA-h828-v5pv-33qx, CVE-2022-2837
go/github.com/coredns/coredns
coreDNS vulnerable to Improper Restriction of Communication Channel to Intended Endpoints
A flaw was found in coreDNS. This flaw allows a malicious user to redirect traffic intended for external top-level domains (TLD) to a pod they control by creating projects and namespaces that match the TLD.
All versions up to 1.9.3
Unfortunately, there is no solution available yet.
2023-03-07
source |