3.6.2
1 years ago
1 days ago
Known vulnerabilities in the mcp-server-kubernetes package. This does not include vulnerabilities belonging to this package’s dependencies.
Snyk's AI Trust Platform automatically finds the best upgrade path and integrates with your development workflows. Secure your code at zero cost.
Fix for free| Vulnerability | Vulnerable Version |
|---|---|
mcp-server-kubernetes is a MCP server for interacting with Kubernetes clusters via kubectl Affected versions of this package are vulnerable to Arbitrary Argument Injection through the How to fix Arbitrary Argument Injection? Upgrade | >=1.0.0 <3.5.0 |
mcp-server-kubernetes is a MCP server for interacting with Kubernetes clusters via kubectl Affected versions of this package are vulnerable to Arbitrary Command Injection via the Note: This can be exploited either directly by users with access to the tool interface or indirectly by embedding malicious instructions in pod logs that may be executed by AI agents. How to fix Arbitrary Command Injection? Upgrade | <2.9.8 |