CVE-2021-25743
EUVD-2022-057907.01.2022, 00:15
kubectl does not neutralize escape, meta or control sequences contained in the raw data it outputs to a terminal. This includes but is not limited to the unstructured string fields in objects such as Events.Enginsight
Affected Products (NVD)
| Vendor | Product | Version |
|---|---|---|
| kubernetes | kubernetes | 𝑥 ≤ 1.25.0 |
| kubernetes | kubernetes | 1.26.0:alpha0 |
| kubernetes | kubernetes | 1.26.0:alpha1 |
| kubernetes | kubernetes | 1.26.0:alpha2 |
𝑥
= Vulnerable software versions
Debian Releases
Ubuntu Releases