CVE-2023-1943: Kubernetes Operations

High severity, CVSS 8.8. EPSS: 0.6% chance of exploitation in the next 30 days.

Privilege Escalation in kOps using GCE/GCP Provider in Gossip Mode.

Affected products

  • Kubernetes Operations: before 1.25.4 (fixed in 1.25.4); from 1.26.0, before 1.26.2 (fixed in 1.26.2)

Published 2023-10-12. Last modified 2026-06-17.