A flaw was found in the Submariner project. Due to unnecessary role-based access control permissions, a privileged attacker can run a malicious container on a node that may allow them to steal service account tokens and further compromise other nodes and potentially the entire cluster.
This Cyber News was published on www.tenable.com. Publication date: Sat, 18 May 2024 11:11:03 +0000