NIXPKGS-2026-0887
GitHub issue
published 2 months, 3 weeks ago
by @mweinelt Activity log
- Created suggestion
- @mweinelt ignored package kyverno-chainsaw
- @mweinelt accepted
- @mweinelt published on GitHub
CVE-2026-4789
Kyverno, versions 1.16.0 and later, are vulnerable to SSRF due to unrestricted CEL HTTP functions.
References
Affected products
Kyverno
- ==1.16.0
Matching in nixpkgs
Ignored packages (1)
pkgs.kyverno-chainsaw
Declarative approach to test Kubernetes operators and controllers