CVE-2016-1905: Kubernetes

High severity, CVSS 7.7. EPSS: 1.6% chance of exploitation in the next 30 days.

The API server in Kubernetes does not properly check admission control, which allows remote authenticated users to access additional resources via a crafted patched object.

Affected products

  • Kubernetes Kubernetes: affected versions not specified

Published 2016-02-03. Last modified 2026-06-17.