Home 1.16.0
affected
Description
Kyverno, versions 1.16.0 and later, are vulnerable to SSRF due to unrestricted CEL HTTP functions.
Problem types
CWE-918 Server-Side Request Forgery (SSRF)
Product status
References
www.kb.cert.org/vuls/id/655822
portswigger.net/web-security/ssrf