Known Vulnerabilities for Kubernetes by Vendor
Listed below are 10 of the newest known vulnerabilities associated with "Kubernetes" by "Vendor".
These CVEs are retrieved based on exact matches on listed software, hardware, and vendor information (CPE data) as well as a keyword search to ensure the newest vulnerabilities with no officially listed software information are still displayed.
Data on known vulnerable versions is also displayed based on information from known CPEs
Known Vulnerabilities
| CVE | Shortened Description | Severity | Publish Date | Last Modified |
|---|---|---|---|---|
| CVE-2026-67309 json | Traefik versions >= v3.7.0 and <= v3.7.7 contain a path traversal vulnerability in the Kubernetes Ingress NGINX provider's Re... | Not Provided | 2026-08-01 | 2026-08-01 |
| CVE-2026-65835 json | Capsule is a multi-tenancy and policy-based framework for Kubernetes. From 0.13.0 until 0.13.8, after the incomplete CVE-2026... | Not Provided | 2026-07-30 | 2026-07-31 |
| CVE-2026-65834 json | Capsule is a multi-tenancy and policy-based framework for Kubernetes. Prior to 0.13.8, CapsuleConfiguration.Spec.NodeMetadata... | Not Provided | 2026-07-30 | 2026-07-31 |
| CVE-2026-65602 json | Traefik 3.6.0 through 3.6.22 and 3.7.0 through 3.7.6 fail to enforce the crossProviderNamespaces allowlist for IngressRouteTC... | Not Provided | 2026-07-22 | 2026-07-22 |
| CVE-2026-65601 json | Traefik versions 3.7.0 through 3.7.6 contain a namespace confusion vulnerability in the Kubernetes Gateway API provider. When... | Not Provided | 2026-07-22 | 2026-07-23 |
| CVE-2026-62994 json | CoreDNS is a DNS server written in Go. From 1.9.4 until 1.14.5, a network DNS client allowed to request AXFR for a CoreDNS zo... | Not Provided | 2026-07-16 | 2026-07-17 |
| CVE-2026-62845 json | Kamaji is the Hosted Control Plane Manager for Kubernetes. Prior to 26.7.4-edge, the PostgreSQL and MySQL datastore drivers b... | Not Provided | 2026-07-30 | 2026-07-31 |
| CVE-2026-62290 json | cert-manager adds certificates and certificate issuers as resource types in Kubernetes clusters, and simplifies the process o... | Not Provided | 2026-07-16 | 2026-07-18 |
| CVE-2026-62246 json | Kamaji is the Hosted Control Plane Manager for Kubernetes. Prior to 26.7.4-edge, Kamaji derives a TenantControlPlane datastor... | Not Provided | 2026-07-30 | 2026-07-31 |
| CVE-2026-61459 json | MCP Server Kubernetes before 3.9.0 contains an argument injection vulnerability in structured tools (kubectl_get, kubectl_des... | Not Provided | 2026-07-10 | 2026-07-14 |