Product
fit2cloud kubepi
5 known vulnerabilities across versions
Vulnerabilities are listed by affected version. Select any CVE for the full briefing and its intelligence graph.
CVE-2023-37917
CVE-2023-37916
CVE-2023-22478
CVE-2023-22479
CVE-2023-22463
< 1.6.5
KubePi is an opensource kubernetes management panel. A normal user has permission to create/update users, they can become admin by
< 1.6.5
KubePi is an opensource kubernetes management panel. The endpoint /kubepi/api/v1/users/search?pageNum=1&&pageSize=10 leak password
< 1.6.4
KubePi is a modern Kubernetes panel. The API interfaces with unauthorized entities and may leak sensitive information. This issue
< 1.6.4
KubePi is a modern Kubernetes panel. A session fixation attack allows an attacker to hijack a legitimate user session, versions 1.
< 1.6.3
KubePi is a k8s panel. The jwt authentication function of KubePi through version 1.6.2 uses hard-coded Jwtsigkeys, resulting in th