CVE-2025-0426: Kubernetes Kubelet
Medium severity, CVSS 6.2. EPSS: 0.4% chance of exploitation in the next 30 days.
A security issue was discovered in Kubernetes where a large number of container checkpoint requests made to the unauthenticated kubelet read-only HTTP endpoint may cause a Node Denial of Service by filling the Node's disk.
Affected products
- Kubernetes Kubelet: from 1.32.0, up to and including 1.32.1; from 1.31.0, up to and including 1.31.5; from 1.30.0, up to and including 1.30.9
Published 2025-02-13. Last modified 2026-06-17.