CVE-2020-8559
ADVISORY - githubSummary
The Kubernetes kube-apiserver in versions v1.6-v1.15, and versions prior to v1.16.13, v1.17.9 and v1.18.7 are vulnerable to an unvalidated redirect on proxied upgrade requests that could allow an attacker to escalate privileges from a node compromise to a full cluster compromise.
Common Weakness Enumeration (CWE)
URL Redirection to Untrusted Site ('Open Redirect')
URL Redirection to Untrusted Site ('Open Redirect')
URL Redirection to Untrusted Site ('Open Redirect')
NIST
0.5
CVSS SCORE
6.4mediumGitHub
0.9
CVSS SCORE
6.8mediumAlpine
-
Debian
-
Ubuntu
0.9
CVSS SCORE
6.8mediumGoLang
-
Red Hat
0.5
CVSS SCORE
6.4mediumOracle
-
CVSS SCORE
N/AhighOracle
-
CVSS SCORE
N/AhighOracle
-
CVSS SCORE
N/AhighChainguard
CGA-24jr-c2wr-v9v4
-
Chainguard
CGA-27j2-fr8h-m4rr
-
Chainguard
CGA-29gv-v4ff-2fhg
-
Chainguard
CGA-2cg3-wp54-v4wj
-
Chainguard
CGA-2hgh-m3pr-qwwx
-
Chainguard
CGA-2hvx-v4fp-867c
-
Chainguard
CGA-2m9r-c673-8c58
-
Chainguard
CGA-2vhx-2xxj-4qph
-
Chainguard
CGA-2wmq-cpqh-vpvx
-
Chainguard
CGA-322p-4cgx-hw4q
-
Chainguard
CGA-32wc-gc6h-xjxr
-
Chainguard
CGA-35f2-jvg5-98rj
-
Chainguard
CGA-377g-jv94-6482
-
Chainguard
CGA-39g5-8gqm-5xx3
-
Chainguard
CGA-3mw8-5pv8-865q
-
Chainguard
CGA-3p56-759q-gjwx
-
Chainguard
CGA-44gx-9rc9-rrg4
-
Chainguard
CGA-4585-55cm-34x5
-
Chainguard
CGA-45g5-8v27-p2x7
-
Chainguard
CGA-4682-4jp9-j3f6
-
Chainguard
CGA-48gv-xf63-v6jh
-
Chainguard
CGA-4f4m-w88g-hq8j
-
Chainguard
CGA-4gx6-v639-6f2h
-
Chainguard
CGA-4px5-2w6c-xr28
-
Chainguard
CGA-4r8j-6qvj-jq9v
-
Chainguard
CGA-4v6h-4h5f-jqr4
-
Chainguard
CGA-4xjq-3qg3-ffrw
-
Chainguard
CGA-53vx-f55v-896m
-
Chainguard
CGA-57p4-c226-5w29
-
Chainguard
CGA-587w-7583-r4pq
-
Chainguard
CGA-5fwj-5h7j-6857
-
Chainguard
CGA-5h5v-hvc8-q5w8
-
Chainguard
CGA-5hq3-m8g5-668v
-
Chainguard
CGA-5hqg-v5c5-x88q
-
Chainguard
CGA-5j6c-g6h9-8xph
-
Chainguard
CGA-5m56-683f-4qfq
-
Chainguard
CGA-5rh2-r5cv-j4xh
-
Chainguard
CGA-62hv-5wg3-vq2v
-
Chainguard
CGA-652c-7jvv-fhp6
-
Chainguard
CGA-6688-9f49-cqqm
-
Chainguard
CGA-68jv-4q9r-v58q
-
Chainguard
CGA-6g8w-72fh-x3xx
-
Chainguard
CGA-6m63-6ghm-h5wf
-
Chainguard
CGA-7436-q5r6-7cvr
-
Chainguard
CGA-7ff4-f3mg-2m9x
-
Chainguard
CGA-7fvp-p2cq-9624
-
Chainguard
CGA-7qwq-52rr-hmmr
-
Chainguard
CGA-7wxh-hvjj-86jx
-
Chainguard
CGA-8272-r558-5rmv
-
Chainguard
CGA-84c7-6rh9-p6w4
-
Chainguard
CGA-87hm-r6hq-5mx5
-
Chainguard
CGA-88xv-6f4v-pvh7
-
Chainguard
CGA-89g2-9j3h-7j29
-
Chainguard
CGA-8frv-vqqv-wgfj
-
Chainguard
CGA-8jpw-3mpx-2c5c
-
Chainguard
CGA-8pqg-pmqf-65rc
-
Chainguard
CGA-8pw6-25g7-g5xx
-
Chainguard
CGA-8q6x-g4mj-m8qp
-
Chainguard
CGA-8vx5-rrq6-wxgv
-
Chainguard
CGA-92mx-r6p6-xj82
-
Chainguard
CGA-94cc-rc3r-qqgm
-
Chainguard
CGA-97hq-6g2g-w7xg
-
Chainguard
CGA-97x3-x78x-9cg8
-
Chainguard
CGA-988x-cg44-5r7h
-
Chainguard
CGA-9cm3-p48h-q366
-
Chainguard
CGA-9jqq-fh2r-vrqh
-
Chainguard
CGA-9pxw-9c48-xj6v
-
Chainguard
CGA-9vjv-vhrj-g7p3
-
Chainguard
CGA-9vw8-3w89-57gv
-
Chainguard
CGA-9xw5-84hx-x5h5
-
Chainguard
CGA-c459-q652-8fx4
-
Chainguard
CGA-c54p-5prw-g232
-
Chainguard
CGA-c5rp-wph6-f3fc
-
Chainguard
CGA-c87r-cv5q-rrqg
-
Chainguard
CGA-c9fp-8h4q-cx5q
-
Chainguard
CGA-ccqp-wfq4-jg85
-
Chainguard
CGA-cf65-hg4m-x47w
-
Chainguard
CGA-chg9-m27m-8x7m
-
Chainguard
CGA-f3jf-ph8p-rq3q
-
Chainguard
CGA-f6fw-c24c-hmhx
-
Chainguard
CGA-f6gq-wrqc-w46v
-
Chainguard
CGA-f6pj-7hx4-6jx7
-
Chainguard
CGA-fcm3-fwf2-v88r
-
Chainguard
CGA-fg45-fp7x-fcc7
-
Chainguard
CGA-fm77-3pch-c7fw
-
Chainguard
CGA-fvfg-v2gj-qp97
-
Chainguard
CGA-g2q5-xr5j-hxf2
-
Chainguard
CGA-g82q-pwcq-wxfv
-
Chainguard
CGA-ghq8-hwxr-rw35
-
Chainguard
CGA-h43j-vjr4-6p47
-
Chainguard
CGA-h4gh-h68f-vvwf
-
Chainguard
CGA-h5hm-9qrj-5gmv
-
Chainguard
CGA-h6h6-qj6x-5fvh
-
Chainguard
CGA-h7q4-8m4j-g4gr
-
Chainguard
CGA-h8mq-9rf3-q36g
-
Chainguard
CGA-hf7v-mm48-p3m9
-
Chainguard
CGA-hfh3-6ffg-qcqx
-
Chainguard
CGA-hgpm-8g92-qxf5
-
Chainguard
CGA-hh35-59v8-jxrf
-
Chainguard
CGA-hm39-4rf7-xg26
-
Chainguard
CGA-hpg3-cgw7-c26c
-
Chainguard
CGA-j37w-9p7g-v3pm
-
Chainguard
CGA-j42w-xr79-9hx3
-
Chainguard
CGA-jgq4-99jv-p293
-
Chainguard
CGA-jm2h-r8hf-893v
-
Chainguard
CGA-jrf3-hgqc-vf4h
-
Chainguard
CGA-m2cq-4q23-72h3
-
Chainguard
CGA-m2h9-qwj5-2qw4
-
Chainguard
CGA-m3c8-prmx-xr94
-
Chainguard
CGA-m57h-c6x8-q488
-
Chainguard
CGA-m7gr-2mxm-4q85
-
Chainguard
CGA-m8q8-mpp7-xxr2
-
Chainguard
CGA-mc4x-gh65-j53x
-
Chainguard
CGA-mfw8-525g-269m
-
Chainguard
CGA-mjq5-q76p-9mjw
-
Chainguard
CGA-mp3v-fc78-97rc
-
Chainguard
CGA-mpmg-4ccr-64v3
-
Chainguard
CGA-mqw3-w5r8-mjwm
-
Chainguard
CGA-mw4h-j4fp-jrhp
-
Chainguard
CGA-mxg2-79cg-7hjg
-
Chainguard
CGA-pfp9-cx5f-8xmg
-
Chainguard
CGA-pfpc-chrp-m7r5
-
Chainguard
CGA-pg6m-gc6g-hgj5
-
Chainguard
CGA-pgqx-frhj-2f4q
-
Chainguard
CGA-ph2j-9qwc-j6hg
-
Chainguard
CGA-pj4f-jgv2-g5hj
-
Chainguard
CGA-pmj8-qwpw-mc66
-
Chainguard
CGA-pr29-pjhm-3j9g
-
Chainguard
CGA-q5pq-mc8x-p7hq
-
Chainguard
CGA-q6c8-2hqp-grjx
-
Chainguard
CGA-q9w3-5277-53v5
-
Chainguard
CGA-qh2p-j356-h4xf
-
Chainguard
CGA-qh47-rxxr-598f
-
Chainguard
CGA-qj4p-7g8m-46c3
-
Chainguard
CGA-qm78-7mx6-pgh2
-
Chainguard
CGA-qp47-27c2-6fc3
-
Chainguard
CGA-qqfv-gj29-9ww2
-
Chainguard
CGA-qr5r-jp6g-fgmf
-
Chainguard
CGA-qv42-5vwq-chc6
-
Chainguard
CGA-r3j8-pp23-mg98
-
Chainguard
CGA-r438-49cm-xfm6
-
Chainguard
CGA-r7cv-8gcx-chj4
-
Chainguard
CGA-rc4v-mfj8-v876
-
Chainguard
CGA-rmph-c43c-7r6m
-
Chainguard
CGA-rp92-f9rp-gr4j
-
Chainguard
CGA-v4f6-f3jm-fw5f
-
Chainguard
CGA-v5h6-jj94-39jh
-
Chainguard
CGA-v824-h7v3-3h35
-
Chainguard
CGA-vcmx-h579-3v79
-
Chainguard
CGA-vgc5-r8x4-pg84
-
Chainguard
CGA-w2xp-8hw9-2593
-
Chainguard
CGA-w652-cm6g-7x8x
-
Chainguard
CGA-w7m5-p3v2-grjc
-
Chainguard
CGA-wc98-8p8c-25hr
-
Chainguard
CGA-wfgx-x98f-7jmq
-
Chainguard
CGA-wgxf-j575-2g8g
-
Chainguard
CGA-wh73-q275-p5qr
-
Chainguard
CGA-wjrr-fwwv-jg6h
-
Chainguard
CGA-wvj7-hvfj-2jgp
-
Chainguard
CGA-wx8q-hhgr-gmcm
-
Chainguard
CGA-x268-7xp2-j957
-
Chainguard
CGA-x39f-c65p-7jxp
-
Chainguard
CGA-xc85-3h8r-jjh9
-
Chainguard
CGA-xf6j-6f8g-69x3
-
Chainguard
CGA-xg9x-f4v9-ppcq
-
Chainguard
CGA-xhhw-6jmq-w8vc
-
Chainguard
CGA-xpqp-24gr-mwhj
-
Chainguard
CGA-xwcg-hgf2-9h79
-
Chainguard
CGA-xxr7-8r8q-28r5
-
intheWild
-
-