github.com/cloudnativelabs/kube-router
Kube-router, a turnkey solution for Kubernetes networking.
Activity
- Latest release
- 2y ago
- Total releases
- 20
- Cadence
- ~35 days
- Last 12 months
- 0
Reach
- Stars
- 2.5k
Details
- First release
- Apr 20, 2021
| Version | Released | |
|---|---|---|
v1.6.1
patch
3 CVEs
GO-2026-5653
GHSA-v5mh-h5hx-7v92
Jun 25, 2026
kube-router: GoBGP gRPC Admin Port Exposed on Node Primary IP Without Authentication, Allowing Cluster-Wide BGP Route Injection in github.com/cloudnativelabs/kube-router kube-router: GoBGP gRPC Admin Port Exposed on Node Primary IP Without Authentication, Allowing Cluster-Wide BGP Route Injection in github.com/cloudnativelabs/kube-router Updated Jun 25, 2026 · Source: OSV.dev
GO-2026-5354
GHSA-fcmh-qfxc-w685
Jun 25, 2026
kube-router: BGP Peer Passwords Exposed in Logs at Verbose Logging Level in github.com/cloudnativelabs/kube-router kube-router: BGP Peer Passwords Exposed in Logs at Verbose Logging Level in github.com/cloudnativelabs/kube-router Updated Jun 25, 2026 · Source: OSV.dev
CVE-2026-32254
GO-2026-4724
GHSA-phqm-jgc3-qf8g
Mar 26, 2026
Kube-router Proxy Module Blindly Trusts ExternalIPs/LoadBalancer IPs Enabling Cluster-Wide Traffic Hijacking and DNS DoS in github.com/cloudnativelabs/kube-router Kube-router Proxy Module Blindly Trusts ExternalIPs/LoadBalancer IPs Enabling Cluster-Wide Traffic Hijacking and DNS DoS in github.com/cloudnativelabs/kube-router References Updated Mar 26, 2026 · Source: OSV.dev |
v1.6.1
patch
Dependencies (22)
+ 14 more |
|
v1.6.0
minor
3 CVEs
GO-2026-5653
GHSA-v5mh-h5hx-7v92
Jun 25, 2026
kube-router: GoBGP gRPC Admin Port Exposed on Node Primary IP Without Authentication, Allowing Cluster-Wide BGP Route Injection in github.com/cloudnativelabs/kube-router kube-router: GoBGP gRPC Admin Port Exposed on Node Primary IP Without Authentication, Allowing Cluster-Wide BGP Route Injection in github.com/cloudnativelabs/kube-router Updated Jun 25, 2026 · Source: OSV.dev
GO-2026-5354
GHSA-fcmh-qfxc-w685
Jun 25, 2026
kube-router: BGP Peer Passwords Exposed in Logs at Verbose Logging Level in github.com/cloudnativelabs/kube-router kube-router: BGP Peer Passwords Exposed in Logs at Verbose Logging Level in github.com/cloudnativelabs/kube-router Updated Jun 25, 2026 · Source: OSV.dev
CVE-2026-32254
GO-2026-4724
GHSA-phqm-jgc3-qf8g
Mar 26, 2026
Kube-router Proxy Module Blindly Trusts ExternalIPs/LoadBalancer IPs Enabling Cluster-Wide Traffic Hijacking and DNS DoS in github.com/cloudnativelabs/kube-router Kube-router Proxy Module Blindly Trusts ExternalIPs/LoadBalancer IPs Enabling Cluster-Wide Traffic Hijacking and DNS DoS in github.com/cloudnativelabs/kube-router References Updated Mar 26, 2026 · Source: OSV.dev |
v1.6.0
minor
Dependencies (22)
+ 14 more |
|
v1.5.4
patch
3 CVEs
GO-2026-5653
GHSA-v5mh-h5hx-7v92
Jun 25, 2026
kube-router: GoBGP gRPC Admin Port Exposed on Node Primary IP Without Authentication, Allowing Cluster-Wide BGP Route Injection in github.com/cloudnativelabs/kube-router kube-router: GoBGP gRPC Admin Port Exposed on Node Primary IP Without Authentication, Allowing Cluster-Wide BGP Route Injection in github.com/cloudnativelabs/kube-router Updated Jun 25, 2026 · Source: OSV.dev
GO-2026-5354
GHSA-fcmh-qfxc-w685
Jun 25, 2026
kube-router: BGP Peer Passwords Exposed in Logs at Verbose Logging Level in github.com/cloudnativelabs/kube-router kube-router: BGP Peer Passwords Exposed in Logs at Verbose Logging Level in github.com/cloudnativelabs/kube-router Updated Jun 25, 2026 · Source: OSV.dev
CVE-2026-32254
GO-2026-4724
GHSA-phqm-jgc3-qf8g
Mar 26, 2026
Kube-router Proxy Module Blindly Trusts ExternalIPs/LoadBalancer IPs Enabling Cluster-Wide Traffic Hijacking and DNS DoS in github.com/cloudnativelabs/kube-router Kube-router Proxy Module Blindly Trusts ExternalIPs/LoadBalancer IPs Enabling Cluster-Wide Traffic Hijacking and DNS DoS in github.com/cloudnativelabs/kube-router References Updated Mar 26, 2026 · Source: OSV.dev |
v1.5.4
patch
Dependencies (22)
+ 14 more |
|
v1.5.3
patch
3 CVEs
GO-2026-5653
GHSA-v5mh-h5hx-7v92
Jun 25, 2026
kube-router: GoBGP gRPC Admin Port Exposed on Node Primary IP Without Authentication, Allowing Cluster-Wide BGP Route Injection in github.com/cloudnativelabs/kube-router kube-router: GoBGP gRPC Admin Port Exposed on Node Primary IP Without Authentication, Allowing Cluster-Wide BGP Route Injection in github.com/cloudnativelabs/kube-router Updated Jun 25, 2026 · Source: OSV.dev
GO-2026-5354
GHSA-fcmh-qfxc-w685
Jun 25, 2026
kube-router: BGP Peer Passwords Exposed in Logs at Verbose Logging Level in github.com/cloudnativelabs/kube-router kube-router: BGP Peer Passwords Exposed in Logs at Verbose Logging Level in github.com/cloudnativelabs/kube-router Updated Jun 25, 2026 · Source: OSV.dev
CVE-2026-32254
GO-2026-4724
GHSA-phqm-jgc3-qf8g
Mar 26, 2026
Kube-router Proxy Module Blindly Trusts ExternalIPs/LoadBalancer IPs Enabling Cluster-Wide Traffic Hijacking and DNS DoS in github.com/cloudnativelabs/kube-router Kube-router Proxy Module Blindly Trusts ExternalIPs/LoadBalancer IPs Enabling Cluster-Wide Traffic Hijacking and DNS DoS in github.com/cloudnativelabs/kube-router References Updated Mar 26, 2026 · Source: OSV.dev |
v1.5.3
patch
Dependencies (22)
+ 14 more |
|
v1.5.2
patch
3 CVEs
GO-2026-5653
GHSA-v5mh-h5hx-7v92
Jun 25, 2026
kube-router: GoBGP gRPC Admin Port Exposed on Node Primary IP Without Authentication, Allowing Cluster-Wide BGP Route Injection in github.com/cloudnativelabs/kube-router kube-router: GoBGP gRPC Admin Port Exposed on Node Primary IP Without Authentication, Allowing Cluster-Wide BGP Route Injection in github.com/cloudnativelabs/kube-router Updated Jun 25, 2026 · Source: OSV.dev
GO-2026-5354
GHSA-fcmh-qfxc-w685
Jun 25, 2026
kube-router: BGP Peer Passwords Exposed in Logs at Verbose Logging Level in github.com/cloudnativelabs/kube-router kube-router: BGP Peer Passwords Exposed in Logs at Verbose Logging Level in github.com/cloudnativelabs/kube-router Updated Jun 25, 2026 · Source: OSV.dev
CVE-2026-32254
GO-2026-4724
GHSA-phqm-jgc3-qf8g
Mar 26, 2026
Kube-router Proxy Module Blindly Trusts ExternalIPs/LoadBalancer IPs Enabling Cluster-Wide Traffic Hijacking and DNS DoS in github.com/cloudnativelabs/kube-router Kube-router Proxy Module Blindly Trusts ExternalIPs/LoadBalancer IPs Enabling Cluster-Wide Traffic Hijacking and DNS DoS in github.com/cloudnativelabs/kube-router References Updated Mar 26, 2026 · Source: OSV.dev |
v1.5.2
patch
Dependencies (22)
+ 14 more |
|
v1.5.1
patch
3 CVEs
GO-2026-5653
GHSA-v5mh-h5hx-7v92
Jun 25, 2026
kube-router: GoBGP gRPC Admin Port Exposed on Node Primary IP Without Authentication, Allowing Cluster-Wide BGP Route Injection in github.com/cloudnativelabs/kube-router kube-router: GoBGP gRPC Admin Port Exposed on Node Primary IP Without Authentication, Allowing Cluster-Wide BGP Route Injection in github.com/cloudnativelabs/kube-router Updated Jun 25, 2026 · Source: OSV.dev
GO-2026-5354
GHSA-fcmh-qfxc-w685
Jun 25, 2026
kube-router: BGP Peer Passwords Exposed in Logs at Verbose Logging Level in github.com/cloudnativelabs/kube-router kube-router: BGP Peer Passwords Exposed in Logs at Verbose Logging Level in github.com/cloudnativelabs/kube-router Updated Jun 25, 2026 · Source: OSV.dev
CVE-2026-32254
GO-2026-4724
GHSA-phqm-jgc3-qf8g
Mar 26, 2026
Kube-router Proxy Module Blindly Trusts ExternalIPs/LoadBalancer IPs Enabling Cluster-Wide Traffic Hijacking and DNS DoS in github.com/cloudnativelabs/kube-router Kube-router Proxy Module Blindly Trusts ExternalIPs/LoadBalancer IPs Enabling Cluster-Wide Traffic Hijacking and DNS DoS in github.com/cloudnativelabs/kube-router References Updated Mar 26, 2026 · Source: OSV.dev |
v1.5.1
patch
Dependencies (22)
+ 14 more |
|
v1.5.0
minor
3 CVEs
GO-2026-5653
GHSA-v5mh-h5hx-7v92
Jun 25, 2026
kube-router: GoBGP gRPC Admin Port Exposed on Node Primary IP Without Authentication, Allowing Cluster-Wide BGP Route Injection in github.com/cloudnativelabs/kube-router kube-router: GoBGP gRPC Admin Port Exposed on Node Primary IP Without Authentication, Allowing Cluster-Wide BGP Route Injection in github.com/cloudnativelabs/kube-router Updated Jun 25, 2026 · Source: OSV.dev
GO-2026-5354
GHSA-fcmh-qfxc-w685
Jun 25, 2026
kube-router: BGP Peer Passwords Exposed in Logs at Verbose Logging Level in github.com/cloudnativelabs/kube-router kube-router: BGP Peer Passwords Exposed in Logs at Verbose Logging Level in github.com/cloudnativelabs/kube-router Updated Jun 25, 2026 · Source: OSV.dev
CVE-2026-32254
GO-2026-4724
GHSA-phqm-jgc3-qf8g
Mar 26, 2026
Kube-router Proxy Module Blindly Trusts ExternalIPs/LoadBalancer IPs Enabling Cluster-Wide Traffic Hijacking and DNS DoS in github.com/cloudnativelabs/kube-router Kube-router Proxy Module Blindly Trusts ExternalIPs/LoadBalancer IPs Enabling Cluster-Wide Traffic Hijacking and DNS DoS in github.com/cloudnativelabs/kube-router References Updated Mar 26, 2026 · Source: OSV.dev |
v1.5.0
minor
Dependencies (22)
+ 14 more |
|
v1.4.0
minor
3 CVEs
GO-2026-5653
GHSA-v5mh-h5hx-7v92
Jun 25, 2026
kube-router: GoBGP gRPC Admin Port Exposed on Node Primary IP Without Authentication, Allowing Cluster-Wide BGP Route Injection in github.com/cloudnativelabs/kube-router kube-router: GoBGP gRPC Admin Port Exposed on Node Primary IP Without Authentication, Allowing Cluster-Wide BGP Route Injection in github.com/cloudnativelabs/kube-router Updated Jun 25, 2026 · Source: OSV.dev
GO-2026-5354
GHSA-fcmh-qfxc-w685
Jun 25, 2026
kube-router: BGP Peer Passwords Exposed in Logs at Verbose Logging Level in github.com/cloudnativelabs/kube-router kube-router: BGP Peer Passwords Exposed in Logs at Verbose Logging Level in github.com/cloudnativelabs/kube-router Updated Jun 25, 2026 · Source: OSV.dev
CVE-2026-32254
GO-2026-4724
GHSA-phqm-jgc3-qf8g
Mar 26, 2026
Kube-router Proxy Module Blindly Trusts ExternalIPs/LoadBalancer IPs Enabling Cluster-Wide Traffic Hijacking and DNS DoS in github.com/cloudnativelabs/kube-router Kube-router Proxy Module Blindly Trusts ExternalIPs/LoadBalancer IPs Enabling Cluster-Wide Traffic Hijacking and DNS DoS in github.com/cloudnativelabs/kube-router References Updated Mar 26, 2026 · Source: OSV.dev |
v1.4.0
minor
Dependencies (22)
+ 14 more |
|
v1.3.2
patch
3 CVEs
GO-2026-5653
GHSA-v5mh-h5hx-7v92
Jun 25, 2026
kube-router: GoBGP gRPC Admin Port Exposed on Node Primary IP Without Authentication, Allowing Cluster-Wide BGP Route Injection in github.com/cloudnativelabs/kube-router kube-router: GoBGP gRPC Admin Port Exposed on Node Primary IP Without Authentication, Allowing Cluster-Wide BGP Route Injection in github.com/cloudnativelabs/kube-router Updated Jun 25, 2026 · Source: OSV.dev
GO-2026-5354
GHSA-fcmh-qfxc-w685
Jun 25, 2026
kube-router: BGP Peer Passwords Exposed in Logs at Verbose Logging Level in github.com/cloudnativelabs/kube-router kube-router: BGP Peer Passwords Exposed in Logs at Verbose Logging Level in github.com/cloudnativelabs/kube-router Updated Jun 25, 2026 · Source: OSV.dev
CVE-2026-32254
GO-2026-4724
GHSA-phqm-jgc3-qf8g
Mar 26, 2026
Kube-router Proxy Module Blindly Trusts ExternalIPs/LoadBalancer IPs Enabling Cluster-Wide Traffic Hijacking and DNS DoS in github.com/cloudnativelabs/kube-router Kube-router Proxy Module Blindly Trusts ExternalIPs/LoadBalancer IPs Enabling Cluster-Wide Traffic Hijacking and DNS DoS in github.com/cloudnativelabs/kube-router References Updated Mar 26, 2026 · Source: OSV.dev |
v1.3.2
patch
Dependencies (22)
+ 14 more |
|
v1.3.1
patch
3 CVEs
GO-2026-5653
GHSA-v5mh-h5hx-7v92
Jun 25, 2026
kube-router: GoBGP gRPC Admin Port Exposed on Node Primary IP Without Authentication, Allowing Cluster-Wide BGP Route Injection in github.com/cloudnativelabs/kube-router kube-router: GoBGP gRPC Admin Port Exposed on Node Primary IP Without Authentication, Allowing Cluster-Wide BGP Route Injection in github.com/cloudnativelabs/kube-router Updated Jun 25, 2026 · Source: OSV.dev
GO-2026-5354
GHSA-fcmh-qfxc-w685
Jun 25, 2026
kube-router: BGP Peer Passwords Exposed in Logs at Verbose Logging Level in github.com/cloudnativelabs/kube-router kube-router: BGP Peer Passwords Exposed in Logs at Verbose Logging Level in github.com/cloudnativelabs/kube-router Updated Jun 25, 2026 · Source: OSV.dev
CVE-2026-32254
GO-2026-4724
GHSA-phqm-jgc3-qf8g
Mar 26, 2026
Kube-router Proxy Module Blindly Trusts ExternalIPs/LoadBalancer IPs Enabling Cluster-Wide Traffic Hijacking and DNS DoS in github.com/cloudnativelabs/kube-router Kube-router Proxy Module Blindly Trusts ExternalIPs/LoadBalancer IPs Enabling Cluster-Wide Traffic Hijacking and DNS DoS in github.com/cloudnativelabs/kube-router References Updated Mar 26, 2026 · Source: OSV.dev |
v1.3.1
patch
Dependencies (22)
+ 14 more |
|
v1.3.0-rc7
pre
3 CVEs
GO-2026-5653
GHSA-v5mh-h5hx-7v92
Jun 25, 2026
kube-router: GoBGP gRPC Admin Port Exposed on Node Primary IP Without Authentication, Allowing Cluster-Wide BGP Route Injection in github.com/cloudnativelabs/kube-router kube-router: GoBGP gRPC Admin Port Exposed on Node Primary IP Without Authentication, Allowing Cluster-Wide BGP Route Injection in github.com/cloudnativelabs/kube-router Updated Jun 25, 2026 · Source: OSV.dev
GO-2026-5354
GHSA-fcmh-qfxc-w685
Jun 25, 2026
kube-router: BGP Peer Passwords Exposed in Logs at Verbose Logging Level in github.com/cloudnativelabs/kube-router kube-router: BGP Peer Passwords Exposed in Logs at Verbose Logging Level in github.com/cloudnativelabs/kube-router Updated Jun 25, 2026 · Source: OSV.dev
CVE-2026-32254
GO-2026-4724
GHSA-phqm-jgc3-qf8g
Mar 26, 2026
Kube-router Proxy Module Blindly Trusts ExternalIPs/LoadBalancer IPs Enabling Cluster-Wide Traffic Hijacking and DNS DoS in github.com/cloudnativelabs/kube-router Kube-router Proxy Module Blindly Trusts ExternalIPs/LoadBalancer IPs Enabling Cluster-Wide Traffic Hijacking and DNS DoS in github.com/cloudnativelabs/kube-router References Updated Mar 26, 2026 · Source: OSV.dev |
v1.3.0-rc7
pre
Dependencies (22)
+ 14 more |
|
v1.3.0
minor
3 CVEs
GO-2026-5653
GHSA-v5mh-h5hx-7v92
Jun 25, 2026
kube-router: GoBGP gRPC Admin Port Exposed on Node Primary IP Without Authentication, Allowing Cluster-Wide BGP Route Injection in github.com/cloudnativelabs/kube-router kube-router: GoBGP gRPC Admin Port Exposed on Node Primary IP Without Authentication, Allowing Cluster-Wide BGP Route Injection in github.com/cloudnativelabs/kube-router Updated Jun 25, 2026 · Source: OSV.dev
GO-2026-5354
GHSA-fcmh-qfxc-w685
Jun 25, 2026
kube-router: BGP Peer Passwords Exposed in Logs at Verbose Logging Level in github.com/cloudnativelabs/kube-router kube-router: BGP Peer Passwords Exposed in Logs at Verbose Logging Level in github.com/cloudnativelabs/kube-router Updated Jun 25, 2026 · Source: OSV.dev
CVE-2026-32254
GO-2026-4724
GHSA-phqm-jgc3-qf8g
Mar 26, 2026
Kube-router Proxy Module Blindly Trusts ExternalIPs/LoadBalancer IPs Enabling Cluster-Wide Traffic Hijacking and DNS DoS in github.com/cloudnativelabs/kube-router Kube-router Proxy Module Blindly Trusts ExternalIPs/LoadBalancer IPs Enabling Cluster-Wide Traffic Hijacking and DNS DoS in github.com/cloudnativelabs/kube-router References Updated Mar 26, 2026 · Source: OSV.dev |
v1.3.0
minor
Dependencies (22)
+ 14 more |
|
v1.3.0-rc5
pre
3 CVEs
GO-2026-5653
GHSA-v5mh-h5hx-7v92
Jun 25, 2026
kube-router: GoBGP gRPC Admin Port Exposed on Node Primary IP Without Authentication, Allowing Cluster-Wide BGP Route Injection in github.com/cloudnativelabs/kube-router kube-router: GoBGP gRPC Admin Port Exposed on Node Primary IP Without Authentication, Allowing Cluster-Wide BGP Route Injection in github.com/cloudnativelabs/kube-router Updated Jun 25, 2026 · Source: OSV.dev
GO-2026-5354
GHSA-fcmh-qfxc-w685
Jun 25, 2026
kube-router: BGP Peer Passwords Exposed in Logs at Verbose Logging Level in github.com/cloudnativelabs/kube-router kube-router: BGP Peer Passwords Exposed in Logs at Verbose Logging Level in github.com/cloudnativelabs/kube-router Updated Jun 25, 2026 · Source: OSV.dev
CVE-2026-32254
GO-2026-4724
GHSA-phqm-jgc3-qf8g
Mar 26, 2026
Kube-router Proxy Module Blindly Trusts ExternalIPs/LoadBalancer IPs Enabling Cluster-Wide Traffic Hijacking and DNS DoS in github.com/cloudnativelabs/kube-router Kube-router Proxy Module Blindly Trusts ExternalIPs/LoadBalancer IPs Enabling Cluster-Wide Traffic Hijacking and DNS DoS in github.com/cloudnativelabs/kube-router References Updated Mar 26, 2026 · Source: OSV.dev |
v1.3.0-rc5
pre
Dependencies (22)
+ 14 more |
|
v1.3.0-rc4
pre
3 CVEs
GO-2026-5653
GHSA-v5mh-h5hx-7v92
Jun 25, 2026
kube-router: GoBGP gRPC Admin Port Exposed on Node Primary IP Without Authentication, Allowing Cluster-Wide BGP Route Injection in github.com/cloudnativelabs/kube-router kube-router: GoBGP gRPC Admin Port Exposed on Node Primary IP Without Authentication, Allowing Cluster-Wide BGP Route Injection in github.com/cloudnativelabs/kube-router Updated Jun 25, 2026 · Source: OSV.dev
GO-2026-5354
GHSA-fcmh-qfxc-w685
Jun 25, 2026
kube-router: BGP Peer Passwords Exposed in Logs at Verbose Logging Level in github.com/cloudnativelabs/kube-router kube-router: BGP Peer Passwords Exposed in Logs at Verbose Logging Level in github.com/cloudnativelabs/kube-router Updated Jun 25, 2026 · Source: OSV.dev
CVE-2026-32254
GO-2026-4724
GHSA-phqm-jgc3-qf8g
Mar 26, 2026
Kube-router Proxy Module Blindly Trusts ExternalIPs/LoadBalancer IPs Enabling Cluster-Wide Traffic Hijacking and DNS DoS in github.com/cloudnativelabs/kube-router Kube-router Proxy Module Blindly Trusts ExternalIPs/LoadBalancer IPs Enabling Cluster-Wide Traffic Hijacking and DNS DoS in github.com/cloudnativelabs/kube-router References Updated Mar 26, 2026 · Source: OSV.dev |
v1.3.0-rc4
pre
Dependencies (22)
+ 14 more |
|
v1.3.0-rc3
pre
3 CVEs
GO-2026-5653
GHSA-v5mh-h5hx-7v92
Jun 25, 2026
kube-router: GoBGP gRPC Admin Port Exposed on Node Primary IP Without Authentication, Allowing Cluster-Wide BGP Route Injection in github.com/cloudnativelabs/kube-router kube-router: GoBGP gRPC Admin Port Exposed on Node Primary IP Without Authentication, Allowing Cluster-Wide BGP Route Injection in github.com/cloudnativelabs/kube-router Updated Jun 25, 2026 · Source: OSV.dev
GO-2026-5354
GHSA-fcmh-qfxc-w685
Jun 25, 2026
kube-router: BGP Peer Passwords Exposed in Logs at Verbose Logging Level in github.com/cloudnativelabs/kube-router kube-router: BGP Peer Passwords Exposed in Logs at Verbose Logging Level in github.com/cloudnativelabs/kube-router Updated Jun 25, 2026 · Source: OSV.dev
CVE-2026-32254
GO-2026-4724
GHSA-phqm-jgc3-qf8g
Mar 26, 2026
Kube-router Proxy Module Blindly Trusts ExternalIPs/LoadBalancer IPs Enabling Cluster-Wide Traffic Hijacking and DNS DoS in github.com/cloudnativelabs/kube-router Kube-router Proxy Module Blindly Trusts ExternalIPs/LoadBalancer IPs Enabling Cluster-Wide Traffic Hijacking and DNS DoS in github.com/cloudnativelabs/kube-router References Updated Mar 26, 2026 · Source: OSV.dev |
v1.3.0-rc3
pre
Dependencies (22)
+ 14 more |
|
v1.3.0-rc2
pre
3 CVEs
GO-2026-5653
GHSA-v5mh-h5hx-7v92
Jun 25, 2026
kube-router: GoBGP gRPC Admin Port Exposed on Node Primary IP Without Authentication, Allowing Cluster-Wide BGP Route Injection in github.com/cloudnativelabs/kube-router kube-router: GoBGP gRPC Admin Port Exposed on Node Primary IP Without Authentication, Allowing Cluster-Wide BGP Route Injection in github.com/cloudnativelabs/kube-router Updated Jun 25, 2026 · Source: OSV.dev
GO-2026-5354
GHSA-fcmh-qfxc-w685
Jun 25, 2026
kube-router: BGP Peer Passwords Exposed in Logs at Verbose Logging Level in github.com/cloudnativelabs/kube-router kube-router: BGP Peer Passwords Exposed in Logs at Verbose Logging Level in github.com/cloudnativelabs/kube-router Updated Jun 25, 2026 · Source: OSV.dev
CVE-2026-32254
GO-2026-4724
GHSA-phqm-jgc3-qf8g
Mar 26, 2026
Kube-router Proxy Module Blindly Trusts ExternalIPs/LoadBalancer IPs Enabling Cluster-Wide Traffic Hijacking and DNS DoS in github.com/cloudnativelabs/kube-router Kube-router Proxy Module Blindly Trusts ExternalIPs/LoadBalancer IPs Enabling Cluster-Wide Traffic Hijacking and DNS DoS in github.com/cloudnativelabs/kube-router References Updated Mar 26, 2026 · Source: OSV.dev |
v1.3.0-rc2
pre
Dependencies (22)
+ 14 more |
|
v1.3.0-rc6
pre
3 CVEs
GO-2026-5653
GHSA-v5mh-h5hx-7v92
Jun 25, 2026
kube-router: GoBGP gRPC Admin Port Exposed on Node Primary IP Without Authentication, Allowing Cluster-Wide BGP Route Injection in github.com/cloudnativelabs/kube-router kube-router: GoBGP gRPC Admin Port Exposed on Node Primary IP Without Authentication, Allowing Cluster-Wide BGP Route Injection in github.com/cloudnativelabs/kube-router Updated Jun 25, 2026 · Source: OSV.dev
GO-2026-5354
GHSA-fcmh-qfxc-w685
Jun 25, 2026
kube-router: BGP Peer Passwords Exposed in Logs at Verbose Logging Level in github.com/cloudnativelabs/kube-router kube-router: BGP Peer Passwords Exposed in Logs at Verbose Logging Level in github.com/cloudnativelabs/kube-router Updated Jun 25, 2026 · Source: OSV.dev
CVE-2026-32254
GO-2026-4724
GHSA-phqm-jgc3-qf8g
Mar 26, 2026
Kube-router Proxy Module Blindly Trusts ExternalIPs/LoadBalancer IPs Enabling Cluster-Wide Traffic Hijacking and DNS DoS in github.com/cloudnativelabs/kube-router Kube-router Proxy Module Blindly Trusts ExternalIPs/LoadBalancer IPs Enabling Cluster-Wide Traffic Hijacking and DNS DoS in github.com/cloudnativelabs/kube-router References Updated Mar 26, 2026 · Source: OSV.dev |
v1.3.0-rc6
pre
Dependencies (22)
+ 14 more |
|
v1.3.0-rc1
pre
3 CVEs
GO-2026-5653
GHSA-v5mh-h5hx-7v92
Jun 25, 2026
kube-router: GoBGP gRPC Admin Port Exposed on Node Primary IP Without Authentication, Allowing Cluster-Wide BGP Route Injection in github.com/cloudnativelabs/kube-router kube-router: GoBGP gRPC Admin Port Exposed on Node Primary IP Without Authentication, Allowing Cluster-Wide BGP Route Injection in github.com/cloudnativelabs/kube-router Updated Jun 25, 2026 · Source: OSV.dev
GO-2026-5354
GHSA-fcmh-qfxc-w685
Jun 25, 2026
kube-router: BGP Peer Passwords Exposed in Logs at Verbose Logging Level in github.com/cloudnativelabs/kube-router kube-router: BGP Peer Passwords Exposed in Logs at Verbose Logging Level in github.com/cloudnativelabs/kube-router Updated Jun 25, 2026 · Source: OSV.dev
CVE-2026-32254
GO-2026-4724
GHSA-phqm-jgc3-qf8g
Mar 26, 2026
Kube-router Proxy Module Blindly Trusts ExternalIPs/LoadBalancer IPs Enabling Cluster-Wide Traffic Hijacking and DNS DoS in github.com/cloudnativelabs/kube-router Kube-router Proxy Module Blindly Trusts ExternalIPs/LoadBalancer IPs Enabling Cluster-Wide Traffic Hijacking and DNS DoS in github.com/cloudnativelabs/kube-router References Updated Mar 26, 2026 · Source: OSV.dev |
v1.3.0-rc1
pre
Dependencies (22)
+ 14 more |
|
v1.2.3
patch
3 CVEs
GO-2026-5653
GHSA-v5mh-h5hx-7v92
Jun 25, 2026
kube-router: GoBGP gRPC Admin Port Exposed on Node Primary IP Without Authentication, Allowing Cluster-Wide BGP Route Injection in github.com/cloudnativelabs/kube-router kube-router: GoBGP gRPC Admin Port Exposed on Node Primary IP Without Authentication, Allowing Cluster-Wide BGP Route Injection in github.com/cloudnativelabs/kube-router Updated Jun 25, 2026 · Source: OSV.dev
GO-2026-5354
GHSA-fcmh-qfxc-w685
Jun 25, 2026
kube-router: BGP Peer Passwords Exposed in Logs at Verbose Logging Level in github.com/cloudnativelabs/kube-router kube-router: BGP Peer Passwords Exposed in Logs at Verbose Logging Level in github.com/cloudnativelabs/kube-router Updated Jun 25, 2026 · Source: OSV.dev
CVE-2026-32254
GO-2026-4724
GHSA-phqm-jgc3-qf8g
Mar 26, 2026
Kube-router Proxy Module Blindly Trusts ExternalIPs/LoadBalancer IPs Enabling Cluster-Wide Traffic Hijacking and DNS DoS in github.com/cloudnativelabs/kube-router Kube-router Proxy Module Blindly Trusts ExternalIPs/LoadBalancer IPs Enabling Cluster-Wide Traffic Hijacking and DNS DoS in github.com/cloudnativelabs/kube-router References Updated Mar 26, 2026 · Source: OSV.dev |
v1.2.3
patch
Dependencies (21)
+ 13 more |
|
v1.2.2
initial
3 CVEs
GO-2026-5653
GHSA-v5mh-h5hx-7v92
Jun 25, 2026
kube-router: GoBGP gRPC Admin Port Exposed on Node Primary IP Without Authentication, Allowing Cluster-Wide BGP Route Injection in github.com/cloudnativelabs/kube-router kube-router: GoBGP gRPC Admin Port Exposed on Node Primary IP Without Authentication, Allowing Cluster-Wide BGP Route Injection in github.com/cloudnativelabs/kube-router Updated Jun 25, 2026 · Source: OSV.dev
GO-2026-5354
GHSA-fcmh-qfxc-w685
Jun 25, 2026
kube-router: BGP Peer Passwords Exposed in Logs at Verbose Logging Level in github.com/cloudnativelabs/kube-router kube-router: BGP Peer Passwords Exposed in Logs at Verbose Logging Level in github.com/cloudnativelabs/kube-router Updated Jun 25, 2026 · Source: OSV.dev
CVE-2026-32254
GO-2026-4724
GHSA-phqm-jgc3-qf8g
Mar 26, 2026
Kube-router Proxy Module Blindly Trusts ExternalIPs/LoadBalancer IPs Enabling Cluster-Wide Traffic Hijacking and DNS DoS in github.com/cloudnativelabs/kube-router Kube-router Proxy Module Blindly Trusts ExternalIPs/LoadBalancer IPs Enabling Cluster-Wide Traffic Hijacking and DNS DoS in github.com/cloudnativelabs/kube-router References Updated Mar 26, 2026 · Source: OSV.dev |
v1.2.2
initial
Dependencies (21)
+ 13 more |