296,748
Total vulnerabilities in the database
The Chaos Controller Manager in Chaos Mesh exposes a GraphQL debugging server without authentication to the entire Kubernetes cluster, which provides an API to kill arbitrary processes in any Kubernetes pod, leading to cluster-wide denial of service.
| Software | From | Fixed in |
|---|---|---|
github.com/chaos-mesh/chaos-mesh
|
- | 2.7.3 |