All CVEs — page 115 of 242
The complete archive, 25 per page, newest first. 6034 records. Search instead.
The flaw allows an attacker to inject arbitrary commands via the scm_url field, leading to remote code execution on the control-plane task pod.
The flaw allows a minimally privileged or unauthenticated attacker to read a secret and launch job templates against arbitrary hosts, leading to privilege escalation and remote code execution.
Authenticated non-administrator users can write content that is later executed with elevated privileges, leading to remote code execution.
The flaw allows an authenticated actor to write a malicious setting that can execute arbitrary shell commands, leading to Remote Code Execution (RCE).