QID 996040
Date Published: 2023-11-27
QID 996040: GO (Go) Security Update for github.com/clastix/capsule-proxy (GHSA-fpvw-6m5v-hqfp)
The privilege escalation is based on a missing check if the user is authenticated based on the TokenReview result.
Successful exploitation of this vulnerability could lead to a security breach or could affect integrity, availability, and confidentiality.
Solution
Refer to Github security advisory GHSA-fpvw-6m5v-hqfp for updates and patch information.
Vendor References
- GHSA-fpvw-6m5v-hqfp -
github.com/advisories/GHSA-fpvw-6m5v-hqfp
CVEs related to QID 996040
Software Advisories
| Advisory ID | Software | Component | Link |
|---|---|---|---|
| GHSA-fpvw-6m5v-hqfp | github.com/clastix/capsule-proxy |
|