3scale-sre/marin3r

3scale-sre/marin3r

Releases40
Frequency1 month 3 weeks
Last Release
Stars59
Lightweight, CRD based envoy control plane for kubernetes

CVE History

CVEPublishedCVSS v3CVSS v2

MARIN3R is a lightweight, CRD based envoy control plane for kubernetes. In versions 0.13.3 and below, there is a cross-namespace secret access vulnerability in the project's DiscoveryServiceCertificate which allows users to bypass RBAC and access secrets in unauthorized namespaces. This issue is fixed in version 0.13.4.