CVE-2025-0426: Kubernetes Kubelet

Medium severity, CVSS 6.2. EPSS: 0.4% chance of exploitation in the next 30 days.

A security issue was discovered in Kubernetes where a large number of container checkpoint requests made to the unauthenticated kubelet read-only HTTP endpoint may cause a Node Denial of Service by filling the Node's disk.

Affected products

  • Kubernetes Kubelet: from 1.32.0, up to and including 1.32.1; from 1.31.0, up to and including 1.31.5; from 1.30.0, up to and including 1.30.9

Published 2025-02-13. Last modified 2026-06-17.