Security Advisories for github.com/kcp-dev/kcp in go
Low
3 months ago
kcp is missing update validation allows arbitrary LogicalCluster status patches through initializingworkspaces Virtual Workspace
go
github.com/kcp-dev/kcp
Critical
10 months ago
kcp allows unauthorized creation and deletion of objects in arbitrary workspaces through APIExport Virtual Workspace
go
github.com/kcp-dev/kcp
Moderate
about 1 year ago
kcp's impersonation allows access to global administrative groups
go
github.com/kcp-dev/kcp