
benc-uk/kubeview
Releases22
Frequency3 months 4 weeks
Last Release
Stars1.2K
KubeView is a Kubernetes cluster visualization tool that provides a graphical representation of your cluster's resources and their relationships
CVE History
| CVE | Published | CVSS v3 | CVSS v2 |
|---|---|---|---|
| 9.8 CRITICAL | — | ||
KubeView through 0.1.31 allows attackers to obtain control of a Kubernetes cluster because api/scrape/kube-system does not require authentication, and retrieves certificate files that can be used for authentication as kube-admin. NOTE: the vendor's position is that KubeView was a "fun side project and a learning exercise," and not "very secure." | |||