Kubepi
This hub aggregates every CVE we track for Kubepi, a product in the cloud saas space. Use it to gauge the current risk picture and drill into individual advisories.
8
CVEs tracked
2
Critical
2
High
0
In CISA KEV
Severity distribution
HIGH2MEDIUM2CRITICAL2
Monthly trend
0
0
0
0
0
0
0
0
0
0
0
0
0
0
0
0
0
0
0
0
0
0
2
0
2024-102026-09
Latest CVEs
The 8 most recently published vulnerabilities affecting Kubepi.
- CVE-2026-65956KubePi: Unauthenticated SSO/OIDC configuration allows admin account takeover and SSRF
- CVE-2026-69129KubePi: Insufficient per-cluster authorization checks in cluster management APIs
- CVE-2024-36111KubePi's JWT token validation has a defect6.3
- CVE-2023-37916Leak password hash of any user6.5
- CVE-2023-37917Privilege Escalation in kubepi9.1
- CVE-2023-22478KubePi is vulnerable to missing authorization7.3
- CVE-2023-22479KubePi vulnerable to session fixation attack 7.5
- CVE-2023-22463KubePi's Hardcoded Jwtsigkeys allows malicious actor to login with a forged JWT token 9.8
Product normalization is registry-driven with AI assist and human review. How it works