CVE-2025-1767

CVSS 3.1 Score 6.5 of 10 (medium)

Details

Published Mar 13, 2025
CWE ID 20

Summary

CVE-2025-1767 affects Kubernetes clusters that utilize the deprecated in-tree gitRepo volume feature for cloning git repositories from other pods on the same node. The vulnerability arises due to the lack of security updates for this feature, which makes any cluster continuing to use it exposed. This issue only impacts clusters running this specific feature, and its deprecation is advised to mitigate the associated risks.

Ligh bulbPrevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.

Share