CVE-2016-1905: Kubernetes
High severity, CVSS 7.7. EPSS: 1.6% chance of exploitation in the next 30 days.
The API server in Kubernetes does not properly check admission control, which allows remote authenticated users to access additional resources via a crafted patched object.
Affected products
- Kubernetes Kubernetes: affected versions not specified
Published 2016-02-03. Last modified 2026-06-17.