Known Vulnerabilities for Mcp-server-kubernetes by Flux159
Listed below are 10 of the newest known vulnerabilities associated with "Mcp-server-kubernetes" by "Flux159".
These CVEs are retrieved based on exact matches on listed software, hardware, and vendor information (CPE data) as well as a keyword search to ensure the newest vulnerabilities with no officially listed software information are still displayed.
Data on known vulnerable versions is also displayed based on information from known CPEs
Known Vulnerabilities
| CVE | Shortened Description | Severity | Publish Date | Last Modified |
|---|---|---|---|---|
| CVE-2026-92568 json | MLRun through 1.11.0 contains a server-side request forgery vulnerability in the WebhookNotification handler that allows auth... | Not Provided | 2026-09-16 | 2026-09-16 |
| CVE-2026-86590 json | In Eclipse Che versions 7.79.0 through 7.121.0, the dashboard backend's POST /dashboard/api/data/resolver endpoint passes a c... | Not Provided | 2026-09-08 | 2026-09-08 |
| CVE-2026-84721 json | A server-side request forgery flaw was found in the Ansible Automation Platform automation-controller email notification back... | Not Provided | 2026-09-23 | 2026-09-24 |
| CVE-2026-73843 json | OpenChoreo is a complete, open-source developer platform for Kubernetes. Prior to 1.0.2 and 1.1.2, internal/cluster-gateway/s... | Not Provided | 2026-08-13 | 2026-08-14 |
| CVE-2026-73842 json | OpenChoreo is a complete, open-source developer platform for Kubernetes. Prior to 1.0.3, 1.1.3, and 1.2.0-rc.2, internal/clus... | Not Provided | 2026-08-13 | 2026-08-18 |
| CVE-2026-72648 json | Cleartext Storage of Sensitive Information in an Environment Variable (CWE-526) in Elastic Cloud on Kubernetes (ECK) can lead... | Not Provided | 2026-08-13 | 2026-08-13 |
| CVE-2026-65956 json | KubePi is a Kubernetes multi-cluster management panel. In versions up to and including 1.6.15, the SSO configuration API endp... | Not Provided | 2026-08-26 | 2026-08-29 |
| CVE-2026-62994 json | CoreDNS is a DNS server written in Go. From 1.9.4 until 1.14.5, a network DNS client allowed to request AXFR for a CoreDNS zo... | Not Provided | 2026-07-16 | 2026-07-17 |
| CVE-2026-61459 json | MCP Server Kubernetes before 3.9.0 contains an argument injection vulnerability in structured tools (kubectl_get, kubectl_des... | Not Provided | 2026-07-10 | 2026-07-14 |
| CVE-2026-59269 json | A user authenticating to Kubernetes clusters via the Pinniped Supervisor could potentially gain elevated permissions in the c... | Not Provided | 2026-07-09 | 2026-07-09 |