7.7
CVSS V3
Access Restriction Bypass in kubernetes
The API server in Kubernetes does not properly check admission control, which allows remote authenticated users to access additional resources via a crafted patched object.
github.com/kubernetes/kubernetes/pkg/apiserver