GHSA-459x-q9hg-4gpq: Kyverno vulnerable to SSRF via Service Calls
(updated )
An attacker with the ability to create Kyverno policies in a Kubernetes cluster can use Service Call functionality to perform SSRF to a server under their control in order to exfiltrate data.
References
Code Behaviors & Features
Detect and mitigate GHSA-459x-q9hg-4gpq with GitLab Dependency Scanning
Secure your software supply chain by verifying that all open source dependencies used in your projects contain no disclosed vulnerabilities. Learn more about Dependency Scanning →