CVE-2020-8555: Server-Side Request Forgery (SSRF)
(updated )
The Kubernetes kube-controller-manager is vulnerable to a Server Side Request Forgery (SSRF) that allows certain authorized users to leak up to bytes of arbitrary information from unprotected endpoints within the master’s host network (such as link-local or loopback services).
References
Detect and mitigate CVE-2020-8555 with GitLab Dependency Scanning
Secure your software supply chain by verifying that all open source dependencies used in your projects contain no disclosed vulnerabilities. Learn more about Dependency Scanning →