kyverno seccomp control can be circumvented
CVE-2023-33191
8.8HIGH
What is CVE-2023-33191?
A vulnerability in the Kyverno policy engine for Kubernetes allows the circumvention of seccomp controls. Users operating with the podSecurity validate.podSecurity subrule in versions 1.9.2 and 1.9.3 are exposed to potential security risks. This issue has been resolved in version 1.9.4, prompting users to perform necessary upgrades to protect their Kubernetes environments.
Affected Version(s)
kyverno >= 1.9.2, < 1.9.4
