Security Advisories for github.com/projectcapsule/capsule in go
Moderate
17 days ago
Capsule has an incomplete fix of CVE-2026-22872: TenantResource RawItems and Generators still allow cluster-scoped resource creation (cross-tenant privilege escalation)
go
github.com/projectcapsule/capsule
Moderate
17 days ago
Capsule: CapsuleConfiguration NodeMetadata regex fields lack webhook validation, allowing MustCompile panic on all Node admission requests
go
github.com/projectcapsule/capsule
Moderate
2 months ago
Capsule: Incomplete fix of CVE-2026-30963: singular/plural typo leaves namespaces/finalize unprotected
go
github.com/projectcapsule/capsule
Moderate
3 months ago
Capsule TenantResource RawItems Cluster-Scoped Resource Creation Vulnerability
go
github.com/projectcapsule/capsule
Critical
12 months ago
Capsule tenant owners with "patch namespace" permission can hijack system namespaces label
go
github.com/projectcapsule/capsule
High
almost 2 years ago
Capsule tenant owner with "patch namespace" permission can hijack system namespaces
go
github.com/projectcapsule/capsule
Moderate
almost 3 years ago
capsule-proxy service discloses Namespaces of colliding tenants to owners of different tenants with the same ServiceAccount name
go
github.com/projectcapsule/capsule-proxy, github.com/projectcapsule/capsule