CVE-2024-36540
24.07.2024, 17:15
Insecure permissions in external-secrets v0.9.16 allows attackers to access sensitive data and escalate privileges by obtaining the service account's token.Enginsight
Vendor | Product | Version |
---|---|---|
external-secrets | external_secrets_operator | 0.9.16 |
𝑥
= Vulnerable software versions
Common Weakness Enumeration