github.com/kubeoperator/kubepi
Activity
- Latest release
- 1y ago
- Total releases
- 20
- Cadence
- ~33 days
- Last 12 months
- 0
Reach
- Stars
- —
Details
- First release
- Nov 09, 2021
| Version | Released | |
|---|---|---|
v1.9.0
minor
|
v1.9.0
minor
Dependencies (30)
+ 22 more |
|
v1.8.0
minor
|
v1.8.0
minor
Dependencies (29)
+ 21 more |
|
v1.7.0
minor
|
v1.7.0
minor
Dependencies (27)
+ 19 more |
|
v1.6.5
patch
|
v1.6.5
patch
Dependencies (28)
+ 20 more |
|
v1.6.4
patch
2 CVEs
CVE-2023-37917
GO-2023-1956
GHSA-757p-vx43-fp9r
Aug 20, 2024
KubePi Privilege Escalation vulnerability in github.com/KubeOperator/kubepi KubePi Privilege Escalation vulnerability in github.com/KubeOperator/kubepi Fixed in
1.6.5
References Updated Mar 03, 2026 · Source: OSV.dev
CVE-2023-37916
GO-2023-1957
GHSA-87f6-8gr7-pc6h
Aug 20, 2024
KubePi may leak password hash of any user in github.com/KubeOperator/kubepi KubePi may leak password hash of any user in github.com/KubeOperator/kubepi Fixed in
1.6.5
References Updated Mar 03, 2026 · Source: OSV.dev |
v1.6.4
patch
Dependencies (28)
+ 20 more |
|
v1.6.3
patch
4 CVEs
CVE-2023-37917
GO-2023-1956
GHSA-757p-vx43-fp9r
Aug 20, 2024
KubePi Privilege Escalation vulnerability in github.com/KubeOperator/kubepi KubePi Privilege Escalation vulnerability in github.com/KubeOperator/kubepi Fixed in
1.6.5
References Updated Mar 03, 2026 · Source: OSV.dev
CVE-2023-37916
GO-2023-1957
GHSA-87f6-8gr7-pc6h
Aug 20, 2024
KubePi may leak password hash of any user in github.com/KubeOperator/kubepi KubePi may leak password hash of any user in github.com/KubeOperator/kubepi Fixed in
1.6.5
References Updated Mar 03, 2026 · Source: OSV.dev
CVE-2023-22479
GO-2023-1468
GHSA-v4w5-r2xc-7f8h
Aug 20, 2024
KubePi session fixation attack allows an attacker to hijack a legitimate user session. in github.com/KubeOperator/kubepi KubePi session fixation attack allows an attacker to hijack a legitimate user session. in github.com/KubeOperator/kubepi Fixed in
1.6.4
References
Updated Mar 03, 2026 · Source: OSV.dev
CVE-2023-22478
GO-2023-1463
GHSA-gqx8-hxmv-c4v4
Aug 20, 2024
KubePi may allow unauthorized access to system API in github.com/KubeOperator/kubepi KubePi may allow unauthorized access to system API in github.com/KubeOperator/kubepi Fixed in
1.6.4
References
Updated Mar 03, 2026 · Source: OSV.dev |
v1.6.3
patch
Dependencies (28)
+ 20 more |
|
v1.6.2
patch
5 CVEs
CVE-2023-37917
GO-2023-1956
GHSA-757p-vx43-fp9r
Aug 20, 2024
KubePi Privilege Escalation vulnerability in github.com/KubeOperator/kubepi KubePi Privilege Escalation vulnerability in github.com/KubeOperator/kubepi Fixed in
1.6.5
References Updated Mar 03, 2026 · Source: OSV.dev
CVE-2023-37916
GO-2023-1957
GHSA-87f6-8gr7-pc6h
Aug 20, 2024
KubePi may leak password hash of any user in github.com/KubeOperator/kubepi KubePi may leak password hash of any user in github.com/KubeOperator/kubepi Fixed in
1.6.5
References Updated Mar 03, 2026 · Source: OSV.dev
CVE-2023-22479
GO-2023-1468
GHSA-v4w5-r2xc-7f8h
Aug 20, 2024
KubePi session fixation attack allows an attacker to hijack a legitimate user session. in github.com/KubeOperator/kubepi KubePi session fixation attack allows an attacker to hijack a legitimate user session. in github.com/KubeOperator/kubepi Fixed in
1.6.4
References
Updated Mar 03, 2026 · Source: OSV.dev
CVE-2023-22463
GO-2023-1283
GHSA-vjhf-8vqx-vqpq
Aug 20, 2024
KubePi allows malicious actor to login with a forged JWT token via Hardcoded Jwtsigkeys in github.com/KubeOperator/kubepi KubePi allows malicious actor to login with a forged JWT token via Hardcoded Jwtsigkeys in github.com/KubeOperator/kubepi Fixed in
1.6.3
References
Updated Mar 03, 2026 · Source: OSV.dev
CVE-2023-22478
GO-2023-1463
GHSA-gqx8-hxmv-c4v4
Aug 20, 2024
KubePi may allow unauthorized access to system API in github.com/KubeOperator/kubepi KubePi may allow unauthorized access to system API in github.com/KubeOperator/kubepi Fixed in
1.6.4
References
Updated Mar 03, 2026 · Source: OSV.dev |
v1.6.2
patch
Dependencies (28)
+ 20 more |
|
v1.6.1
patch
5 CVEs
CVE-2023-37917
GO-2023-1956
GHSA-757p-vx43-fp9r
Aug 20, 2024
KubePi Privilege Escalation vulnerability in github.com/KubeOperator/kubepi KubePi Privilege Escalation vulnerability in github.com/KubeOperator/kubepi Fixed in
1.6.5
References Updated Mar 03, 2026 · Source: OSV.dev
CVE-2023-37916
GO-2023-1957
GHSA-87f6-8gr7-pc6h
Aug 20, 2024
KubePi may leak password hash of any user in github.com/KubeOperator/kubepi KubePi may leak password hash of any user in github.com/KubeOperator/kubepi Fixed in
1.6.5
References Updated Mar 03, 2026 · Source: OSV.dev
CVE-2023-22479
GO-2023-1468
GHSA-v4w5-r2xc-7f8h
Aug 20, 2024
KubePi session fixation attack allows an attacker to hijack a legitimate user session. in github.com/KubeOperator/kubepi KubePi session fixation attack allows an attacker to hijack a legitimate user session. in github.com/KubeOperator/kubepi Fixed in
1.6.4
References
Updated Mar 03, 2026 · Source: OSV.dev
CVE-2023-22463
GO-2023-1283
GHSA-vjhf-8vqx-vqpq
Aug 20, 2024
KubePi allows malicious actor to login with a forged JWT token via Hardcoded Jwtsigkeys in github.com/KubeOperator/kubepi KubePi allows malicious actor to login with a forged JWT token via Hardcoded Jwtsigkeys in github.com/KubeOperator/kubepi Fixed in
1.6.3
References
Updated Mar 03, 2026 · Source: OSV.dev
CVE-2023-22478
GO-2023-1463
GHSA-gqx8-hxmv-c4v4
Aug 20, 2024
KubePi may allow unauthorized access to system API in github.com/KubeOperator/kubepi KubePi may allow unauthorized access to system API in github.com/KubeOperator/kubepi Fixed in
1.6.4
References
Updated Mar 03, 2026 · Source: OSV.dev |
v1.6.1
patch
Dependencies (28)
+ 20 more |
|
v1.6.0
minor
5 CVEs
CVE-2023-37917
GO-2023-1956
GHSA-757p-vx43-fp9r
Aug 20, 2024
KubePi Privilege Escalation vulnerability in github.com/KubeOperator/kubepi KubePi Privilege Escalation vulnerability in github.com/KubeOperator/kubepi Fixed in
1.6.5
References Updated Mar 03, 2026 · Source: OSV.dev
CVE-2023-37916
GO-2023-1957
GHSA-87f6-8gr7-pc6h
Aug 20, 2024
KubePi may leak password hash of any user in github.com/KubeOperator/kubepi KubePi may leak password hash of any user in github.com/KubeOperator/kubepi Fixed in
1.6.5
References Updated Mar 03, 2026 · Source: OSV.dev
CVE-2023-22479
GO-2023-1468
GHSA-v4w5-r2xc-7f8h
Aug 20, 2024
KubePi session fixation attack allows an attacker to hijack a legitimate user session. in github.com/KubeOperator/kubepi KubePi session fixation attack allows an attacker to hijack a legitimate user session. in github.com/KubeOperator/kubepi Fixed in
1.6.4
References
Updated Mar 03, 2026 · Source: OSV.dev
CVE-2023-22463
GO-2023-1283
GHSA-vjhf-8vqx-vqpq
Aug 20, 2024
KubePi allows malicious actor to login with a forged JWT token via Hardcoded Jwtsigkeys in github.com/KubeOperator/kubepi KubePi allows malicious actor to login with a forged JWT token via Hardcoded Jwtsigkeys in github.com/KubeOperator/kubepi Fixed in
1.6.3
References
Updated Mar 03, 2026 · Source: OSV.dev
CVE-2023-22478
GO-2023-1463
GHSA-gqx8-hxmv-c4v4
Aug 20, 2024
KubePi may allow unauthorized access to system API in github.com/KubeOperator/kubepi KubePi may allow unauthorized access to system API in github.com/KubeOperator/kubepi Fixed in
1.6.4
References
Updated Mar 03, 2026 · Source: OSV.dev |
v1.6.0
minor
Dependencies (28)
+ 20 more |
|
v1.5.3
patch
5 CVEs
CVE-2023-37917
GO-2023-1956
GHSA-757p-vx43-fp9r
Aug 20, 2024
KubePi Privilege Escalation vulnerability in github.com/KubeOperator/kubepi KubePi Privilege Escalation vulnerability in github.com/KubeOperator/kubepi Fixed in
1.6.5
References Updated Mar 03, 2026 · Source: OSV.dev
CVE-2023-37916
GO-2023-1957
GHSA-87f6-8gr7-pc6h
Aug 20, 2024
KubePi may leak password hash of any user in github.com/KubeOperator/kubepi KubePi may leak password hash of any user in github.com/KubeOperator/kubepi Fixed in
1.6.5
References Updated Mar 03, 2026 · Source: OSV.dev
CVE-2023-22479
GO-2023-1468
GHSA-v4w5-r2xc-7f8h
Aug 20, 2024
KubePi session fixation attack allows an attacker to hijack a legitimate user session. in github.com/KubeOperator/kubepi KubePi session fixation attack allows an attacker to hijack a legitimate user session. in github.com/KubeOperator/kubepi Fixed in
1.6.4
References
Updated Mar 03, 2026 · Source: OSV.dev
CVE-2023-22463
GO-2023-1283
GHSA-vjhf-8vqx-vqpq
Aug 20, 2024
KubePi allows malicious actor to login with a forged JWT token via Hardcoded Jwtsigkeys in github.com/KubeOperator/kubepi KubePi allows malicious actor to login with a forged JWT token via Hardcoded Jwtsigkeys in github.com/KubeOperator/kubepi Fixed in
1.6.3
References
Updated Mar 03, 2026 · Source: OSV.dev
CVE-2023-22478
GO-2023-1463
GHSA-gqx8-hxmv-c4v4
Aug 20, 2024
KubePi may allow unauthorized access to system API in github.com/KubeOperator/kubepi KubePi may allow unauthorized access to system API in github.com/KubeOperator/kubepi Fixed in
1.6.4
References
Updated Mar 03, 2026 · Source: OSV.dev |
v1.5.3
patch
Dependencies (28)
+ 20 more |
|
v1.5.2
patch
5 CVEs
CVE-2023-37917
GO-2023-1956
GHSA-757p-vx43-fp9r
Aug 20, 2024
KubePi Privilege Escalation vulnerability in github.com/KubeOperator/kubepi KubePi Privilege Escalation vulnerability in github.com/KubeOperator/kubepi Fixed in
1.6.5
References Updated Mar 03, 2026 · Source: OSV.dev
CVE-2023-37916
GO-2023-1957
GHSA-87f6-8gr7-pc6h
Aug 20, 2024
KubePi may leak password hash of any user in github.com/KubeOperator/kubepi KubePi may leak password hash of any user in github.com/KubeOperator/kubepi Fixed in
1.6.5
References Updated Mar 03, 2026 · Source: OSV.dev
CVE-2023-22479
GO-2023-1468
GHSA-v4w5-r2xc-7f8h
Aug 20, 2024
KubePi session fixation attack allows an attacker to hijack a legitimate user session. in github.com/KubeOperator/kubepi KubePi session fixation attack allows an attacker to hijack a legitimate user session. in github.com/KubeOperator/kubepi Fixed in
1.6.4
References
Updated Mar 03, 2026 · Source: OSV.dev
CVE-2023-22463
GO-2023-1283
GHSA-vjhf-8vqx-vqpq
Aug 20, 2024
KubePi allows malicious actor to login with a forged JWT token via Hardcoded Jwtsigkeys in github.com/KubeOperator/kubepi KubePi allows malicious actor to login with a forged JWT token via Hardcoded Jwtsigkeys in github.com/KubeOperator/kubepi Fixed in
1.6.3
References
Updated Mar 03, 2026 · Source: OSV.dev
CVE-2023-22478
GO-2023-1463
GHSA-gqx8-hxmv-c4v4
Aug 20, 2024
KubePi may allow unauthorized access to system API in github.com/KubeOperator/kubepi KubePi may allow unauthorized access to system API in github.com/KubeOperator/kubepi Fixed in
1.6.4
References
Updated Mar 03, 2026 · Source: OSV.dev |
v1.5.2
patch
Dependencies (26)
+ 18 more |
|
v1.5.1
patch
5 CVEs
CVE-2023-37917
GO-2023-1956
GHSA-757p-vx43-fp9r
Aug 20, 2024
KubePi Privilege Escalation vulnerability in github.com/KubeOperator/kubepi KubePi Privilege Escalation vulnerability in github.com/KubeOperator/kubepi Fixed in
1.6.5
References Updated Mar 03, 2026 · Source: OSV.dev
CVE-2023-37916
GO-2023-1957
GHSA-87f6-8gr7-pc6h
Aug 20, 2024
KubePi may leak password hash of any user in github.com/KubeOperator/kubepi KubePi may leak password hash of any user in github.com/KubeOperator/kubepi Fixed in
1.6.5
References Updated Mar 03, 2026 · Source: OSV.dev
CVE-2023-22479
GO-2023-1468
GHSA-v4w5-r2xc-7f8h
Aug 20, 2024
KubePi session fixation attack allows an attacker to hijack a legitimate user session. in github.com/KubeOperator/kubepi KubePi session fixation attack allows an attacker to hijack a legitimate user session. in github.com/KubeOperator/kubepi Fixed in
1.6.4
References
Updated Mar 03, 2026 · Source: OSV.dev
CVE-2023-22463
GO-2023-1283
GHSA-vjhf-8vqx-vqpq
Aug 20, 2024
KubePi allows malicious actor to login with a forged JWT token via Hardcoded Jwtsigkeys in github.com/KubeOperator/kubepi KubePi allows malicious actor to login with a forged JWT token via Hardcoded Jwtsigkeys in github.com/KubeOperator/kubepi Fixed in
1.6.3
References
Updated Mar 03, 2026 · Source: OSV.dev
CVE-2023-22478
GO-2023-1463
GHSA-gqx8-hxmv-c4v4
Aug 20, 2024
KubePi may allow unauthorized access to system API in github.com/KubeOperator/kubepi KubePi may allow unauthorized access to system API in github.com/KubeOperator/kubepi Fixed in
1.6.4
References
Updated Mar 03, 2026 · Source: OSV.dev |
v1.5.1
patch
Dependencies (26)
+ 18 more |
|
v1.5.0
minor
5 CVEs
CVE-2023-37917
GO-2023-1956
GHSA-757p-vx43-fp9r
Aug 20, 2024
KubePi Privilege Escalation vulnerability in github.com/KubeOperator/kubepi KubePi Privilege Escalation vulnerability in github.com/KubeOperator/kubepi Fixed in
1.6.5
References Updated Mar 03, 2026 · Source: OSV.dev
CVE-2023-37916
GO-2023-1957
GHSA-87f6-8gr7-pc6h
Aug 20, 2024
KubePi may leak password hash of any user in github.com/KubeOperator/kubepi KubePi may leak password hash of any user in github.com/KubeOperator/kubepi Fixed in
1.6.5
References Updated Mar 03, 2026 · Source: OSV.dev
CVE-2023-22479
GO-2023-1468
GHSA-v4w5-r2xc-7f8h
Aug 20, 2024
KubePi session fixation attack allows an attacker to hijack a legitimate user session. in github.com/KubeOperator/kubepi KubePi session fixation attack allows an attacker to hijack a legitimate user session. in github.com/KubeOperator/kubepi Fixed in
1.6.4
References
Updated Mar 03, 2026 · Source: OSV.dev
CVE-2023-22463
GO-2023-1283
GHSA-vjhf-8vqx-vqpq
Aug 20, 2024
KubePi allows malicious actor to login with a forged JWT token via Hardcoded Jwtsigkeys in github.com/KubeOperator/kubepi KubePi allows malicious actor to login with a forged JWT token via Hardcoded Jwtsigkeys in github.com/KubeOperator/kubepi Fixed in
1.6.3
References
Updated Mar 03, 2026 · Source: OSV.dev
CVE-2023-22478
GO-2023-1463
GHSA-gqx8-hxmv-c4v4
Aug 20, 2024
KubePi may allow unauthorized access to system API in github.com/KubeOperator/kubepi KubePi may allow unauthorized access to system API in github.com/KubeOperator/kubepi Fixed in
1.6.4
References
Updated Mar 03, 2026 · Source: OSV.dev |
v1.5.0
minor
Dependencies (26)
+ 18 more |
|
v1.4.2
patch
5 CVEs
CVE-2023-37917
GO-2023-1956
GHSA-757p-vx43-fp9r
Aug 20, 2024
KubePi Privilege Escalation vulnerability in github.com/KubeOperator/kubepi KubePi Privilege Escalation vulnerability in github.com/KubeOperator/kubepi Fixed in
1.6.5
References Updated Mar 03, 2026 · Source: OSV.dev
CVE-2023-37916
GO-2023-1957
GHSA-87f6-8gr7-pc6h
Aug 20, 2024
KubePi may leak password hash of any user in github.com/KubeOperator/kubepi KubePi may leak password hash of any user in github.com/KubeOperator/kubepi Fixed in
1.6.5
References Updated Mar 03, 2026 · Source: OSV.dev
CVE-2023-22479
GO-2023-1468
GHSA-v4w5-r2xc-7f8h
Aug 20, 2024
KubePi session fixation attack allows an attacker to hijack a legitimate user session. in github.com/KubeOperator/kubepi KubePi session fixation attack allows an attacker to hijack a legitimate user session. in github.com/KubeOperator/kubepi Fixed in
1.6.4
References
Updated Mar 03, 2026 · Source: OSV.dev
CVE-2023-22463
GO-2023-1283
GHSA-vjhf-8vqx-vqpq
Aug 20, 2024
KubePi allows malicious actor to login with a forged JWT token via Hardcoded Jwtsigkeys in github.com/KubeOperator/kubepi KubePi allows malicious actor to login with a forged JWT token via Hardcoded Jwtsigkeys in github.com/KubeOperator/kubepi Fixed in
1.6.3
References
Updated Mar 03, 2026 · Source: OSV.dev
CVE-2023-22478
GO-2023-1463
GHSA-gqx8-hxmv-c4v4
Aug 20, 2024
KubePi may allow unauthorized access to system API in github.com/KubeOperator/kubepi KubePi may allow unauthorized access to system API in github.com/KubeOperator/kubepi Fixed in
1.6.4
References
Updated Mar 03, 2026 · Source: OSV.dev |
v1.4.2
patch
Dependencies (24)
+ 16 more |
|
v1.4.1
patch
5 CVEs
CVE-2023-37917
GO-2023-1956
GHSA-757p-vx43-fp9r
Aug 20, 2024
KubePi Privilege Escalation vulnerability in github.com/KubeOperator/kubepi KubePi Privilege Escalation vulnerability in github.com/KubeOperator/kubepi Fixed in
1.6.5
References Updated Mar 03, 2026 · Source: OSV.dev
CVE-2023-37916
GO-2023-1957
GHSA-87f6-8gr7-pc6h
Aug 20, 2024
KubePi may leak password hash of any user in github.com/KubeOperator/kubepi KubePi may leak password hash of any user in github.com/KubeOperator/kubepi Fixed in
1.6.5
References Updated Mar 03, 2026 · Source: OSV.dev
CVE-2023-22479
GO-2023-1468
GHSA-v4w5-r2xc-7f8h
Aug 20, 2024
KubePi session fixation attack allows an attacker to hijack a legitimate user session. in github.com/KubeOperator/kubepi KubePi session fixation attack allows an attacker to hijack a legitimate user session. in github.com/KubeOperator/kubepi Fixed in
1.6.4
References
Updated Mar 03, 2026 · Source: OSV.dev
CVE-2023-22463
GO-2023-1283
GHSA-vjhf-8vqx-vqpq
Aug 20, 2024
KubePi allows malicious actor to login with a forged JWT token via Hardcoded Jwtsigkeys in github.com/KubeOperator/kubepi KubePi allows malicious actor to login with a forged JWT token via Hardcoded Jwtsigkeys in github.com/KubeOperator/kubepi Fixed in
1.6.3
References
Updated Mar 03, 2026 · Source: OSV.dev
CVE-2023-22478
GO-2023-1463
GHSA-gqx8-hxmv-c4v4
Aug 20, 2024
KubePi may allow unauthorized access to system API in github.com/KubeOperator/kubepi KubePi may allow unauthorized access to system API in github.com/KubeOperator/kubepi Fixed in
1.6.4
References
Updated Mar 03, 2026 · Source: OSV.dev |
v1.4.1
patch
Dependencies (24)
+ 16 more |
|
v1.4.0
minor
5 CVEs
CVE-2023-37917
GO-2023-1956
GHSA-757p-vx43-fp9r
Aug 20, 2024
KubePi Privilege Escalation vulnerability in github.com/KubeOperator/kubepi KubePi Privilege Escalation vulnerability in github.com/KubeOperator/kubepi Fixed in
1.6.5
References Updated Mar 03, 2026 · Source: OSV.dev
CVE-2023-37916
GO-2023-1957
GHSA-87f6-8gr7-pc6h
Aug 20, 2024
KubePi may leak password hash of any user in github.com/KubeOperator/kubepi KubePi may leak password hash of any user in github.com/KubeOperator/kubepi Fixed in
1.6.5
References Updated Mar 03, 2026 · Source: OSV.dev
CVE-2023-22479
GO-2023-1468
GHSA-v4w5-r2xc-7f8h
Aug 20, 2024
KubePi session fixation attack allows an attacker to hijack a legitimate user session. in github.com/KubeOperator/kubepi KubePi session fixation attack allows an attacker to hijack a legitimate user session. in github.com/KubeOperator/kubepi Fixed in
1.6.4
References
Updated Mar 03, 2026 · Source: OSV.dev
CVE-2023-22463
GO-2023-1283
GHSA-vjhf-8vqx-vqpq
Aug 20, 2024
KubePi allows malicious actor to login with a forged JWT token via Hardcoded Jwtsigkeys in github.com/KubeOperator/kubepi KubePi allows malicious actor to login with a forged JWT token via Hardcoded Jwtsigkeys in github.com/KubeOperator/kubepi Fixed in
1.6.3
References
Updated Mar 03, 2026 · Source: OSV.dev
CVE-2023-22478
GO-2023-1463
GHSA-gqx8-hxmv-c4v4
Aug 20, 2024
KubePi may allow unauthorized access to system API in github.com/KubeOperator/kubepi KubePi may allow unauthorized access to system API in github.com/KubeOperator/kubepi Fixed in
1.6.4
References
Updated Mar 03, 2026 · Source: OSV.dev |
v1.4.0
minor
Dependencies (24)
+ 16 more |
|
v1.3.0
minor
5 CVEs
CVE-2023-37917
GO-2023-1956
GHSA-757p-vx43-fp9r
Aug 20, 2024
KubePi Privilege Escalation vulnerability in github.com/KubeOperator/kubepi KubePi Privilege Escalation vulnerability in github.com/KubeOperator/kubepi Fixed in
1.6.5
References Updated Mar 03, 2026 · Source: OSV.dev
CVE-2023-37916
GO-2023-1957
GHSA-87f6-8gr7-pc6h
Aug 20, 2024
KubePi may leak password hash of any user in github.com/KubeOperator/kubepi KubePi may leak password hash of any user in github.com/KubeOperator/kubepi Fixed in
1.6.5
References Updated Mar 03, 2026 · Source: OSV.dev
CVE-2023-22479
GO-2023-1468
GHSA-v4w5-r2xc-7f8h
Aug 20, 2024
KubePi session fixation attack allows an attacker to hijack a legitimate user session. in github.com/KubeOperator/kubepi KubePi session fixation attack allows an attacker to hijack a legitimate user session. in github.com/KubeOperator/kubepi Fixed in
1.6.4
References
Updated Mar 03, 2026 · Source: OSV.dev
CVE-2023-22463
GO-2023-1283
GHSA-vjhf-8vqx-vqpq
Aug 20, 2024
KubePi allows malicious actor to login with a forged JWT token via Hardcoded Jwtsigkeys in github.com/KubeOperator/kubepi KubePi allows malicious actor to login with a forged JWT token via Hardcoded Jwtsigkeys in github.com/KubeOperator/kubepi Fixed in
1.6.3
References
Updated Mar 03, 2026 · Source: OSV.dev
CVE-2023-22478
GO-2023-1463
GHSA-gqx8-hxmv-c4v4
Aug 20, 2024
KubePi may allow unauthorized access to system API in github.com/KubeOperator/kubepi KubePi may allow unauthorized access to system API in github.com/KubeOperator/kubepi Fixed in
1.6.4
References
Updated Mar 03, 2026 · Source: OSV.dev |
v1.3.0
minor
Dependencies (24)
+ 16 more |
|
v1.2.2
patch
5 CVEs
CVE-2023-37917
GO-2023-1956
GHSA-757p-vx43-fp9r
Aug 20, 2024
KubePi Privilege Escalation vulnerability in github.com/KubeOperator/kubepi KubePi Privilege Escalation vulnerability in github.com/KubeOperator/kubepi Fixed in
1.6.5
References Updated Mar 03, 2026 · Source: OSV.dev
CVE-2023-37916
GO-2023-1957
GHSA-87f6-8gr7-pc6h
Aug 20, 2024
KubePi may leak password hash of any user in github.com/KubeOperator/kubepi KubePi may leak password hash of any user in github.com/KubeOperator/kubepi Fixed in
1.6.5
References Updated Mar 03, 2026 · Source: OSV.dev
CVE-2023-22479
GO-2023-1468
GHSA-v4w5-r2xc-7f8h
Aug 20, 2024
KubePi session fixation attack allows an attacker to hijack a legitimate user session. in github.com/KubeOperator/kubepi KubePi session fixation attack allows an attacker to hijack a legitimate user session. in github.com/KubeOperator/kubepi Fixed in
1.6.4
References
Updated Mar 03, 2026 · Source: OSV.dev
CVE-2023-22463
GO-2023-1283
GHSA-vjhf-8vqx-vqpq
Aug 20, 2024
KubePi allows malicious actor to login with a forged JWT token via Hardcoded Jwtsigkeys in github.com/KubeOperator/kubepi KubePi allows malicious actor to login with a forged JWT token via Hardcoded Jwtsigkeys in github.com/KubeOperator/kubepi Fixed in
1.6.3
References
Updated Mar 03, 2026 · Source: OSV.dev
CVE-2023-22478
GO-2023-1463
GHSA-gqx8-hxmv-c4v4
Aug 20, 2024
KubePi may allow unauthorized access to system API in github.com/KubeOperator/kubepi KubePi may allow unauthorized access to system API in github.com/KubeOperator/kubepi Fixed in
1.6.4
References
Updated Mar 03, 2026 · Source: OSV.dev |
v1.2.2
patch
Dependencies (21)
+ 13 more |
|
v1.2.1
patch
5 CVEs
CVE-2023-37917
GO-2023-1956
GHSA-757p-vx43-fp9r
Aug 20, 2024
KubePi Privilege Escalation vulnerability in github.com/KubeOperator/kubepi KubePi Privilege Escalation vulnerability in github.com/KubeOperator/kubepi Fixed in
1.6.5
References Updated Mar 03, 2026 · Source: OSV.dev
CVE-2023-37916
GO-2023-1957
GHSA-87f6-8gr7-pc6h
Aug 20, 2024
KubePi may leak password hash of any user in github.com/KubeOperator/kubepi KubePi may leak password hash of any user in github.com/KubeOperator/kubepi Fixed in
1.6.5
References Updated Mar 03, 2026 · Source: OSV.dev
CVE-2023-22479
GO-2023-1468
GHSA-v4w5-r2xc-7f8h
Aug 20, 2024
KubePi session fixation attack allows an attacker to hijack a legitimate user session. in github.com/KubeOperator/kubepi KubePi session fixation attack allows an attacker to hijack a legitimate user session. in github.com/KubeOperator/kubepi Fixed in
1.6.4
References
Updated Mar 03, 2026 · Source: OSV.dev
CVE-2023-22463
GO-2023-1283
GHSA-vjhf-8vqx-vqpq
Aug 20, 2024
KubePi allows malicious actor to login with a forged JWT token via Hardcoded Jwtsigkeys in github.com/KubeOperator/kubepi KubePi allows malicious actor to login with a forged JWT token via Hardcoded Jwtsigkeys in github.com/KubeOperator/kubepi Fixed in
1.6.3
References
Updated Mar 03, 2026 · Source: OSV.dev
CVE-2023-22478
GO-2023-1463
GHSA-gqx8-hxmv-c4v4
Aug 20, 2024
KubePi may allow unauthorized access to system API in github.com/KubeOperator/kubepi KubePi may allow unauthorized access to system API in github.com/KubeOperator/kubepi Fixed in
1.6.4
References
Updated Mar 03, 2026 · Source: OSV.dev |
v1.2.1
patch
Dependencies (18)
+ 10 more |
|
v1.2.0
initial
5 CVEs
CVE-2023-37917
GO-2023-1956
GHSA-757p-vx43-fp9r
Aug 20, 2024
KubePi Privilege Escalation vulnerability in github.com/KubeOperator/kubepi KubePi Privilege Escalation vulnerability in github.com/KubeOperator/kubepi Fixed in
1.6.5
References Updated Mar 03, 2026 · Source: OSV.dev
CVE-2023-37916
GO-2023-1957
GHSA-87f6-8gr7-pc6h
Aug 20, 2024
KubePi may leak password hash of any user in github.com/KubeOperator/kubepi KubePi may leak password hash of any user in github.com/KubeOperator/kubepi Fixed in
1.6.5
References Updated Mar 03, 2026 · Source: OSV.dev
CVE-2023-22479
GO-2023-1468
GHSA-v4w5-r2xc-7f8h
Aug 20, 2024
KubePi session fixation attack allows an attacker to hijack a legitimate user session. in github.com/KubeOperator/kubepi KubePi session fixation attack allows an attacker to hijack a legitimate user session. in github.com/KubeOperator/kubepi Fixed in
1.6.4
References
Updated Mar 03, 2026 · Source: OSV.dev
CVE-2023-22463
GO-2023-1283
GHSA-vjhf-8vqx-vqpq
Aug 20, 2024
KubePi allows malicious actor to login with a forged JWT token via Hardcoded Jwtsigkeys in github.com/KubeOperator/kubepi KubePi allows malicious actor to login with a forged JWT token via Hardcoded Jwtsigkeys in github.com/KubeOperator/kubepi Fixed in
1.6.3
References
Updated Mar 03, 2026 · Source: OSV.dev
CVE-2023-22478
GO-2023-1463
GHSA-gqx8-hxmv-c4v4
Aug 20, 2024
KubePi may allow unauthorized access to system API in github.com/KubeOperator/kubepi KubePi may allow unauthorized access to system API in github.com/KubeOperator/kubepi Fixed in
1.6.4
References
Updated Mar 03, 2026 · Source: OSV.dev |
v1.2.0
initial
Dependencies (18)
+ 10 more |