📦 Kyverno

by Kyverno

🔍 What is Kyverno?

Description coming soon...

🛡️ Security Overview

Click on a severity to filter vulnerabilities

⚠️ Known Vulnerabilities

CVE-2025-47281

HIGH CVSS 7.7 Jul 23, 2025

This CVE describes a Denial of Service vulnerability in Kyverno policy engine versions 1.14.1 and below. Attackers with permissions to create or update Kyverno policies can craft malicious JMESPath ex...

CVE-2025-46342

HIGH CVSS 8.5 Apr 30, 2025

This vulnerability in Kyverno allows attackers with Kubernetes API access to bypass security-critical policy rules that use namespace selectors. The missing error propagation causes these policies to ...

CVE-2023-47630

HIGH CVSS 7.1 Nov 14, 2023

This vulnerability in Kyverno allows attackers who compromise image registries to control which image diggets Kyverno users receive, potentially delivering vulnerable or malicious images. Only users p...

CVE-2025-29778

MEDIUM CVSS 5.8 Mar 24, 2025

Kyverno versions before 1.14.0-alpha.1 ignore subjectRegExp and issuerRegExp validations when verifying artifacts in keyless mode, allowing attackers to deploy Kubernetes resources signed by unexpecte...