CVE-2026-32254 PUBLISHED CVSS 7.099999904632568 HIGH

Kube-router Proxy Module Blindly Trusts ExternalIPs/LoadBalancer IPs Enabling Cluster-Wide Traffic Hijacking and DNS DoS

EPSS 0.05% · 14.6th percentile

Risk Scores

CVSS v3.1
7.099999904632568
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:L/A:H
EPSS Score
0.05%
14.6th percentile

Affected Products

VendorProductVersions
kube-routerkube-router0, 0
cloudnativelabskube-router*, < 2.8.0
github.comcloudnativelabs/kube-router/v20, 0

Timeline

References

Open in Interactive Console →