Vulnerabilities > Helm > Medium
DATE | CVE | VULNERABILITY TITLE | RISK |
---|---|---|---|
2023-02-08 | CVE-2023-25165 | Information Exposure vulnerability in Helm Helm is a tool that streamlines installing and managing Kubernetes applications.`getHostByName` is a Helm template function introduced in Helm v3. | 4.3 |
2022-09-01 | CVE-2022-36055 | Allocation of Resources Without Limits or Throttling vulnerability in Helm Helm is a tool for managing Charts. | 6.5 |
2021-02-05 | CVE-2021-21303 | Injection vulnerability in Helm Helm is open-source software which is essentially "The Kubernetes Package Manager". | 6.8 |
2020-09-17 | CVE-2020-15187 | Unspecified vulnerability in Helm In Helm before versions 2.16.11 and 3.3.2, a Helm plugin can contain duplicates of the same entry, with the last one always used. | 4.7 |
2020-06-16 | CVE-2020-4053 | Path Traversal vulnerability in Helm In Helm greater than or equal to 3.0.0 and less than 3.2.4, a path traversal attack is possible when installing Helm plugins from a tar archive over HTTP. | 6.8 |
2020-04-24 | CVE-2020-11013 | Information Exposure vulnerability in Helm Their is an information disclosure vulnerability in Helm from version 3.1.0 and before version 3.2.0. | 5.0 |
2019-02-04 | CVE-2019-1000009 | Path Traversal vulnerability in Helm Chartmuseum Helm ChartMuseum version >=0.1.0 and < 0.8.1 contains a CWE-22: Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') vulnerability in HTTP API to save charts that can result in a specially crafted chart could be uploaded and saved outside the intended location. | 6.5 |
2019-02-04 | CVE-2019-1000008 | Path Traversal vulnerability in Helm All versions of Helm between Helm >=2.0.0 and < 2.12.2 contains a CWE-22: Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') vulnerability in The commands `helm fetch --untar` and `helm lint some.tgz` that can result when chart archive files are unpacked a file may be unpacked outside of the target directory. | 6.5 |