Vulnerabilities > Fluxcd > Flux2 > High

DATE CVE VULNERABILITY TITLE RISK
2022-09-07 CVE-2022-36049 Allocation of Resources Without Limits or Throttling vulnerability in multiple products
Flux2 is a tool for keeping Kubernetes clusters in sync with sources of configuration, and Flux's helm-controller is a Kubernetes operator that allows one to declaratively manage Helm chart releases.
network
low complexity
helm fluxcd CWE-770
7.5
2022-08-31 CVE-2022-36035 Unspecified vulnerability in Fluxcd Flux2
Flux is a tool for keeping Kubernetes clusters in sync with sources of configuration (like Git repositories), and automating updates to configuration when there is new code to deploy.
local
low complexity
fluxcd
7.8
2022-05-06 CVE-2022-24877 Path Traversal vulnerability in Fluxcd Flux2
Flux is an open and extensible continuous delivery solution for Kubernetes.
network
low complexity
fluxcd CWE-22
8.8