Vulnerabilities (CVE)

Filtered by vendor Siderolabs
Filtered by product Talos Linux
Angry Yack Logo
Total 1 CVE
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2022-36103 1 Siderolabs 1 Talos Linux 2024-11-21 N/A 7.2 HIGH
Talos Linux is a Linux distribution built for Kubernetes deployments. Talos worker nodes use a join token to get accepted into the Talos cluster. Due to improper validation of the request while signing a worker node CSR (certificate signing request) Talos control plane node might issue Talos API certificate which allows full access to Talos API on a control plane node. Accessing Talos API with full level access on a control plane node might reveal sensitive information which allows full level ac ...

Show More