Filtered by vendor Mirantis Subscriptions
Filtered by product Bored-agent Subscriptions
Total 1 CVE
CVE Vendors Products Updated CVSS v3.1
CVE-2022-0270 1 Mirantis 1 Bored-agent 2023-07-21 8.8 High
Prior to v0.6.1, bored-agent failed to sanitize incoming kubernetes impersonation headers allowing a user to override assigned user name and groups.