kubeclient
A client for Kubernetes REST api
Activity
- Latest release
- 10mo ago
- Total releases
- 77
- Cadence
- ~28 days
- Last 12 months
- 1
Reach
- Stars
- —
Details
- License
- MIT
- First release
- Dec 30, 2014
| Version | Released | |
|---|---|---|
4.13.0
minor
|
4.13.0
minor
Dependencies (17)
+ 9 more
Changelog
Compare changes
|
|
4.12.0
minor
|
4.12.0
minor
Dependencies (16)
+ 8 more
Changelog
Compare changes
|
|
4.11.0
minor
|
4.11.0
minor
Dependencies (16)
+ 8 more
Changelog
Compare changes
|
|
4.10.1
patch
|
4.10.1
patch
Dependencies (16)
+ 8 more
Changelog
Compare changes
|
|
4.10.0
minor
|
4.10.0
minor
Dependencies (16)
+ 8 more
Changelog
Compare changes
|
|
4.9.3
patch
|
4.9.3
patch
Dependencies (15)
+ 7 more
Changelog
Compare changes
|
|
4.9.2
patch
1 CVE
CVE-2022-0759
GHSA-69p3-xp37-f692
Mar 26, 2022
Improper Certificate Validation in kubeclient
8.1
/ 10
High
Network
High
None
None
Unchanged
High
High
High
A flaw was found in all versions of kubeclient up to (but not including) v4.9.3, the Ruby client for Kubernetes REST API, in the way it parsed kubeconfig files. When the kubeconfig file does not configure custom CA to verify certs, kubeclient ends up accepting any certificate (it wrongly returns VERIFY_NONE). Ruby applications that leverage kubeclient to parse kubeconfig files are susceptible to Man-in-the-middle attacks (MITM). Affected versions
0.0.1
0.0.2
0.0.3
0.0.4
0.0.5
0.0.6
0.0.7
0.0.8
0.0.9
0.1.0
0.1.1
0.1.10
+ 59 more Show less
0.1.11
0.1.12
0.1.13
0.1.14
0.1.15
0.1.16
0.1.17
0.1.2
0.1.3
0.1.4
0.1.5
0.1.6
0.1.7
0.1.8
0.1.9
0.2.0
0.3.0
0.4.0
0.5.0
0.5.1
0.6.0
0.7.0
0.8.0
0.8.1
0.9.0
1.0.0
1.1.0
1.1.1
1.1.2
1.1.3
1.1.4
1.2.0
2.0.0
2.1.0
2.2.0
2.3.0
2.4.0
2.5.1
2.5.2
3.0.0
3.1.0
3.1.1
3.1.2
4.0.0
4.1.0
4.1.1
4.1.2
4.2.0
4.2.1
4.2.2
4.3.0
4.4.0
4.5.0
4.6.0
4.7.0
4.8.0
4.9.0
4.9.1
4.9.2
Fixed in
4.9.3
References
Updated Nov 08, 2023 · Source: OSV.dev |
4.9.2
patch
Dependencies (14)
+ 6 more
Changelog
Compare changes
|
|
4.9.1
patch
1 CVE
CVE-2022-0759
GHSA-69p3-xp37-f692
Mar 26, 2022
Improper Certificate Validation in kubeclient
8.1
/ 10
High
Network
High
None
None
Unchanged
High
High
High
A flaw was found in all versions of kubeclient up to (but not including) v4.9.3, the Ruby client for Kubernetes REST API, in the way it parsed kubeconfig files. When the kubeconfig file does not configure custom CA to verify certs, kubeclient ends up accepting any certificate (it wrongly returns VERIFY_NONE). Ruby applications that leverage kubeclient to parse kubeconfig files are susceptible to Man-in-the-middle attacks (MITM). Affected versions
0.0.1
0.0.2
0.0.3
0.0.4
0.0.5
0.0.6
0.0.7
0.0.8
0.0.9
0.1.0
0.1.1
0.1.10
+ 59 more Show less
0.1.11
0.1.12
0.1.13
0.1.14
0.1.15
0.1.16
0.1.17
0.1.2
0.1.3
0.1.4
0.1.5
0.1.6
0.1.7
0.1.8
0.1.9
0.2.0
0.3.0
0.4.0
0.5.0
0.5.1
0.6.0
0.7.0
0.8.0
0.8.1
0.9.0
1.0.0
1.1.0
1.1.1
1.1.2
1.1.3
1.1.4
1.2.0
2.0.0
2.1.0
2.2.0
2.3.0
2.4.0
2.5.1
2.5.2
3.0.0
3.1.0
3.1.1
3.1.2
4.0.0
4.1.0
4.1.1
4.1.2
4.2.0
4.2.1
4.2.2
4.3.0
4.4.0
4.5.0
4.6.0
4.7.0
4.8.0
4.9.0
4.9.1
4.9.2
Fixed in
4.9.3
References
Updated Nov 08, 2023 · Source: OSV.dev |
4.9.1
patch
Dependencies (14)
+ 6 more
Changelog
Compare changes
|
|
4.9.0
minor
1 CVE
CVE-2022-0759
GHSA-69p3-xp37-f692
Mar 26, 2022
Improper Certificate Validation in kubeclient
8.1
/ 10
High
Network
High
None
None
Unchanged
High
High
High
A flaw was found in all versions of kubeclient up to (but not including) v4.9.3, the Ruby client for Kubernetes REST API, in the way it parsed kubeconfig files. When the kubeconfig file does not configure custom CA to verify certs, kubeclient ends up accepting any certificate (it wrongly returns VERIFY_NONE). Ruby applications that leverage kubeclient to parse kubeconfig files are susceptible to Man-in-the-middle attacks (MITM). Affected versions
0.0.1
0.0.2
0.0.3
0.0.4
0.0.5
0.0.6
0.0.7
0.0.8
0.0.9
0.1.0
0.1.1
0.1.10
+ 59 more Show less
0.1.11
0.1.12
0.1.13
0.1.14
0.1.15
0.1.16
0.1.17
0.1.2
0.1.3
0.1.4
0.1.5
0.1.6
0.1.7
0.1.8
0.1.9
0.2.0
0.3.0
0.4.0
0.5.0
0.5.1
0.6.0
0.7.0
0.8.0
0.8.1
0.9.0
1.0.0
1.1.0
1.1.1
1.1.2
1.1.3
1.1.4
1.2.0
2.0.0
2.1.0
2.2.0
2.3.0
2.4.0
2.5.1
2.5.2
3.0.0
3.1.0
3.1.1
3.1.2
4.0.0
4.1.0
4.1.1
4.1.2
4.2.0
4.2.1
4.2.2
4.3.0
4.4.0
4.5.0
4.6.0
4.7.0
4.8.0
4.9.0
4.9.1
4.9.2
Fixed in
4.9.3
References
Updated Nov 08, 2023 · Source: OSV.dev |
4.9.0
minor
Dependencies (14)
+ 6 more
Changelog
Compare changes
|
|
4.8.0
minor
1 CVE
CVE-2022-0759
GHSA-69p3-xp37-f692
Mar 26, 2022
Improper Certificate Validation in kubeclient
8.1
/ 10
High
Network
High
None
None
Unchanged
High
High
High
A flaw was found in all versions of kubeclient up to (but not including) v4.9.3, the Ruby client for Kubernetes REST API, in the way it parsed kubeconfig files. When the kubeconfig file does not configure custom CA to verify certs, kubeclient ends up accepting any certificate (it wrongly returns VERIFY_NONE). Ruby applications that leverage kubeclient to parse kubeconfig files are susceptible to Man-in-the-middle attacks (MITM). Affected versions
0.0.1
0.0.2
0.0.3
0.0.4
0.0.5
0.0.6
0.0.7
0.0.8
0.0.9
0.1.0
0.1.1
0.1.10
+ 59 more Show less
0.1.11
0.1.12
0.1.13
0.1.14
0.1.15
0.1.16
0.1.17
0.1.2
0.1.3
0.1.4
0.1.5
0.1.6
0.1.7
0.1.8
0.1.9
0.2.0
0.3.0
0.4.0
0.5.0
0.5.1
0.6.0
0.7.0
0.8.0
0.8.1
0.9.0
1.0.0
1.1.0
1.1.1
1.1.2
1.1.3
1.1.4
1.2.0
2.0.0
2.1.0
2.2.0
2.3.0
2.4.0
2.5.1
2.5.2
3.0.0
3.1.0
3.1.1
3.1.2
4.0.0
4.1.0
4.1.1
4.1.2
4.2.0
4.2.1
4.2.2
4.3.0
4.4.0
4.5.0
4.6.0
4.7.0
4.8.0
4.9.0
4.9.1
4.9.2
Fixed in
4.9.3
References
Updated Nov 08, 2023 · Source: OSV.dev |
4.8.0
minor
Dependencies (14)
+ 6 more
Changelog
Compare changes
|
|
4.7.0
minor
1 CVE
CVE-2022-0759
GHSA-69p3-xp37-f692
Mar 26, 2022
Improper Certificate Validation in kubeclient
8.1
/ 10
High
Network
High
None
None
Unchanged
High
High
High
A flaw was found in all versions of kubeclient up to (but not including) v4.9.3, the Ruby client for Kubernetes REST API, in the way it parsed kubeconfig files. When the kubeconfig file does not configure custom CA to verify certs, kubeclient ends up accepting any certificate (it wrongly returns VERIFY_NONE). Ruby applications that leverage kubeclient to parse kubeconfig files are susceptible to Man-in-the-middle attacks (MITM). Affected versions
0.0.1
0.0.2
0.0.3
0.0.4
0.0.5
0.0.6
0.0.7
0.0.8
0.0.9
0.1.0
0.1.1
0.1.10
+ 59 more Show less
0.1.11
0.1.12
0.1.13
0.1.14
0.1.15
0.1.16
0.1.17
0.1.2
0.1.3
0.1.4
0.1.5
0.1.6
0.1.7
0.1.8
0.1.9
0.2.0
0.3.0
0.4.0
0.5.0
0.5.1
0.6.0
0.7.0
0.8.0
0.8.1
0.9.0
1.0.0
1.1.0
1.1.1
1.1.2
1.1.3
1.1.4
1.2.0
2.0.0
2.1.0
2.2.0
2.3.0
2.4.0
2.5.1
2.5.2
3.0.0
3.1.0
3.1.1
3.1.2
4.0.0
4.1.0
4.1.1
4.1.2
4.2.0
4.2.1
4.2.2
4.3.0
4.4.0
4.5.0
4.6.0
4.7.0
4.8.0
4.9.0
4.9.1
4.9.2
Fixed in
4.9.3
References
Updated Nov 08, 2023 · Source: OSV.dev |
4.7.0
minor
Dependencies (14)
+ 6 more
Changelog
Compare changes
|
|
4.6.0
minor
1 CVE
CVE-2022-0759
GHSA-69p3-xp37-f692
Mar 26, 2022
Improper Certificate Validation in kubeclient
8.1
/ 10
High
Network
High
None
None
Unchanged
High
High
High
A flaw was found in all versions of kubeclient up to (but not including) v4.9.3, the Ruby client for Kubernetes REST API, in the way it parsed kubeconfig files. When the kubeconfig file does not configure custom CA to verify certs, kubeclient ends up accepting any certificate (it wrongly returns VERIFY_NONE). Ruby applications that leverage kubeclient to parse kubeconfig files are susceptible to Man-in-the-middle attacks (MITM). Affected versions
0.0.1
0.0.2
0.0.3
0.0.4
0.0.5
0.0.6
0.0.7
0.0.8
0.0.9
0.1.0
0.1.1
0.1.10
+ 59 more Show less
0.1.11
0.1.12
0.1.13
0.1.14
0.1.15
0.1.16
0.1.17
0.1.2
0.1.3
0.1.4
0.1.5
0.1.6
0.1.7
0.1.8
0.1.9
0.2.0
0.3.0
0.4.0
0.5.0
0.5.1
0.6.0
0.7.0
0.8.0
0.8.1
0.9.0
1.0.0
1.1.0
1.1.1
1.1.2
1.1.3
1.1.4
1.2.0
2.0.0
2.1.0
2.2.0
2.3.0
2.4.0
2.5.1
2.5.2
3.0.0
3.1.0
3.1.1
3.1.2
4.0.0
4.1.0
4.1.1
4.1.2
4.2.0
4.2.1
4.2.2
4.3.0
4.4.0
4.5.0
4.6.0
4.7.0
4.8.0
4.9.0
4.9.1
4.9.2
Fixed in
4.9.3
References
Updated Nov 08, 2023 · Source: OSV.dev |
4.6.0
minor
Dependencies (14)
+ 6 more
Changelog
Compare changes
|
|
4.5.0
minor
1 CVE
CVE-2022-0759
GHSA-69p3-xp37-f692
Mar 26, 2022
Improper Certificate Validation in kubeclient
8.1
/ 10
High
Network
High
None
None
Unchanged
High
High
High
A flaw was found in all versions of kubeclient up to (but not including) v4.9.3, the Ruby client for Kubernetes REST API, in the way it parsed kubeconfig files. When the kubeconfig file does not configure custom CA to verify certs, kubeclient ends up accepting any certificate (it wrongly returns VERIFY_NONE). Ruby applications that leverage kubeclient to parse kubeconfig files are susceptible to Man-in-the-middle attacks (MITM). Affected versions
0.0.1
0.0.2
0.0.3
0.0.4
0.0.5
0.0.6
0.0.7
0.0.8
0.0.9
0.1.0
0.1.1
0.1.10
+ 59 more Show less
0.1.11
0.1.12
0.1.13
0.1.14
0.1.15
0.1.16
0.1.17
0.1.2
0.1.3
0.1.4
0.1.5
0.1.6
0.1.7
0.1.8
0.1.9
0.2.0
0.3.0
0.4.0
0.5.0
0.5.1
0.6.0
0.7.0
0.8.0
0.8.1
0.9.0
1.0.0
1.1.0
1.1.1
1.1.2
1.1.3
1.1.4
1.2.0
2.0.0
2.1.0
2.2.0
2.3.0
2.4.0
2.5.1
2.5.2
3.0.0
3.1.0
3.1.1
3.1.2
4.0.0
4.1.0
4.1.1
4.1.2
4.2.0
4.2.1
4.2.2
4.3.0
4.4.0
4.5.0
4.6.0
4.7.0
4.8.0
4.9.0
4.9.1
4.9.2
Fixed in
4.9.3
References
Updated Nov 08, 2023 · Source: OSV.dev |
4.5.0
minor
Dependencies (14)
+ 6 more
Changelog
Compare changes
|
|
4.4.0
minor
1 CVE
CVE-2022-0759
GHSA-69p3-xp37-f692
Mar 26, 2022
Improper Certificate Validation in kubeclient
8.1
/ 10
High
Network
High
None
None
Unchanged
High
High
High
A flaw was found in all versions of kubeclient up to (but not including) v4.9.3, the Ruby client for Kubernetes REST API, in the way it parsed kubeconfig files. When the kubeconfig file does not configure custom CA to verify certs, kubeclient ends up accepting any certificate (it wrongly returns VERIFY_NONE). Ruby applications that leverage kubeclient to parse kubeconfig files are susceptible to Man-in-the-middle attacks (MITM). Affected versions
0.0.1
0.0.2
0.0.3
0.0.4
0.0.5
0.0.6
0.0.7
0.0.8
0.0.9
0.1.0
0.1.1
0.1.10
+ 59 more Show less
0.1.11
0.1.12
0.1.13
0.1.14
0.1.15
0.1.16
0.1.17
0.1.2
0.1.3
0.1.4
0.1.5
0.1.6
0.1.7
0.1.8
0.1.9
0.2.0
0.3.0
0.4.0
0.5.0
0.5.1
0.6.0
0.7.0
0.8.0
0.8.1
0.9.0
1.0.0
1.1.0
1.1.1
1.1.2
1.1.3
1.1.4
1.2.0
2.0.0
2.1.0
2.2.0
2.3.0
2.4.0
2.5.1
2.5.2
3.0.0
3.1.0
3.1.1
3.1.2
4.0.0
4.1.0
4.1.1
4.1.2
4.2.0
4.2.1
4.2.2
4.3.0
4.4.0
4.5.0
4.6.0
4.7.0
4.8.0
4.9.0
4.9.1
4.9.2
Fixed in
4.9.3
References
Updated Nov 08, 2023 · Source: OSV.dev |
4.4.0
minor
Dependencies (14)
+ 6 more
Changelog
Compare changes
|
|
4.3.0
minor
1 CVE
CVE-2022-0759
GHSA-69p3-xp37-f692
Mar 26, 2022
Improper Certificate Validation in kubeclient
8.1
/ 10
High
Network
High
None
None
Unchanged
High
High
High
A flaw was found in all versions of kubeclient up to (but not including) v4.9.3, the Ruby client for Kubernetes REST API, in the way it parsed kubeconfig files. When the kubeconfig file does not configure custom CA to verify certs, kubeclient ends up accepting any certificate (it wrongly returns VERIFY_NONE). Ruby applications that leverage kubeclient to parse kubeconfig files are susceptible to Man-in-the-middle attacks (MITM). Affected versions
0.0.1
0.0.2
0.0.3
0.0.4
0.0.5
0.0.6
0.0.7
0.0.8
0.0.9
0.1.0
0.1.1
0.1.10
+ 59 more Show less
0.1.11
0.1.12
0.1.13
0.1.14
0.1.15
0.1.16
0.1.17
0.1.2
0.1.3
0.1.4
0.1.5
0.1.6
0.1.7
0.1.8
0.1.9
0.2.0
0.3.0
0.4.0
0.5.0
0.5.1
0.6.0
0.7.0
0.8.0
0.8.1
0.9.0
1.0.0
1.1.0
1.1.1
1.1.2
1.1.3
1.1.4
1.2.0
2.0.0
2.1.0
2.2.0
2.3.0
2.4.0
2.5.1
2.5.2
3.0.0
3.1.0
3.1.1
3.1.2
4.0.0
4.1.0
4.1.1
4.1.2
4.2.0
4.2.1
4.2.2
4.3.0
4.4.0
4.5.0
4.6.0
4.7.0
4.8.0
4.9.0
4.9.1
4.9.2
Fixed in
4.9.3
References
Updated Nov 08, 2023 · Source: OSV.dev |
4.3.0
minor
Dependencies (13)
+ 5 more
Changelog
Compare changes
|
|
4.2.2
patch
1 CVE
CVE-2022-0759
GHSA-69p3-xp37-f692
Mar 26, 2022
Improper Certificate Validation in kubeclient
8.1
/ 10
High
Network
High
None
None
Unchanged
High
High
High
A flaw was found in all versions of kubeclient up to (but not including) v4.9.3, the Ruby client for Kubernetes REST API, in the way it parsed kubeconfig files. When the kubeconfig file does not configure custom CA to verify certs, kubeclient ends up accepting any certificate (it wrongly returns VERIFY_NONE). Ruby applications that leverage kubeclient to parse kubeconfig files are susceptible to Man-in-the-middle attacks (MITM). Affected versions
0.0.1
0.0.2
0.0.3
0.0.4
0.0.5
0.0.6
0.0.7
0.0.8
0.0.9
0.1.0
0.1.1
0.1.10
+ 59 more Show less
0.1.11
0.1.12
0.1.13
0.1.14
0.1.15
0.1.16
0.1.17
0.1.2
0.1.3
0.1.4
0.1.5
0.1.6
0.1.7
0.1.8
0.1.9
0.2.0
0.3.0
0.4.0
0.5.0
0.5.1
0.6.0
0.7.0
0.8.0
0.8.1
0.9.0
1.0.0
1.1.0
1.1.1
1.1.2
1.1.3
1.1.4
1.2.0
2.0.0
2.1.0
2.2.0
2.3.0
2.4.0
2.5.1
2.5.2
3.0.0
3.1.0
3.1.1
3.1.2
4.0.0
4.1.0
4.1.1
4.1.2
4.2.0
4.2.1
4.2.2
4.3.0
4.4.0
4.5.0
4.6.0
4.7.0
4.8.0
4.9.0
4.9.1
4.9.2
Fixed in
4.9.3
References
Updated Nov 08, 2023 · Source: OSV.dev |
4.2.2
patch
Dependencies (11)
+ 3 more
Changelog
Compare changes
|
|
4.1.2
patch
1 CVE
CVE-2022-0759
GHSA-69p3-xp37-f692
Mar 26, 2022
Improper Certificate Validation in kubeclient
8.1
/ 10
High
Network
High
None
None
Unchanged
High
High
High
A flaw was found in all versions of kubeclient up to (but not including) v4.9.3, the Ruby client for Kubernetes REST API, in the way it parsed kubeconfig files. When the kubeconfig file does not configure custom CA to verify certs, kubeclient ends up accepting any certificate (it wrongly returns VERIFY_NONE). Ruby applications that leverage kubeclient to parse kubeconfig files are susceptible to Man-in-the-middle attacks (MITM). Affected versions
0.0.1
0.0.2
0.0.3
0.0.4
0.0.5
0.0.6
0.0.7
0.0.8
0.0.9
0.1.0
0.1.1
0.1.10
+ 59 more Show less
0.1.11
0.1.12
0.1.13
0.1.14
0.1.15
0.1.16
0.1.17
0.1.2
0.1.3
0.1.4
0.1.5
0.1.6
0.1.7
0.1.8
0.1.9
0.2.0
0.3.0
0.4.0
0.5.0
0.5.1
0.6.0
0.7.0
0.8.0
0.8.1
0.9.0
1.0.0
1.1.0
1.1.1
1.1.2
1.1.3
1.1.4
1.2.0
2.0.0
2.1.0
2.2.0
2.3.0
2.4.0
2.5.1
2.5.2
3.0.0
3.1.0
3.1.1
3.1.2
4.0.0
4.1.0
4.1.1
4.1.2
4.2.0
4.2.1
4.2.2
4.3.0
4.4.0
4.5.0
4.6.0
4.7.0
4.8.0
4.9.0
4.9.1
4.9.2
Fixed in
4.9.3
References
Updated Nov 08, 2023 · Source: OSV.dev |
4.1.2
patch
Dependencies (11)
+ 3 more
Changelog
Compare changes
|
|
4.2.1
patch
1 CVE
CVE-2022-0759
GHSA-69p3-xp37-f692
Mar 26, 2022
Improper Certificate Validation in kubeclient
8.1
/ 10
High
Network
High
None
None
Unchanged
High
High
High
A flaw was found in all versions of kubeclient up to (but not including) v4.9.3, the Ruby client for Kubernetes REST API, in the way it parsed kubeconfig files. When the kubeconfig file does not configure custom CA to verify certs, kubeclient ends up accepting any certificate (it wrongly returns VERIFY_NONE). Ruby applications that leverage kubeclient to parse kubeconfig files are susceptible to Man-in-the-middle attacks (MITM). Affected versions
0.0.1
0.0.2
0.0.3
0.0.4
0.0.5
0.0.6
0.0.7
0.0.8
0.0.9
0.1.0
0.1.1
0.1.10
+ 59 more Show less
0.1.11
0.1.12
0.1.13
0.1.14
0.1.15
0.1.16
0.1.17
0.1.2
0.1.3
0.1.4
0.1.5
0.1.6
0.1.7
0.1.8
0.1.9
0.2.0
0.3.0
0.4.0
0.5.0
0.5.1
0.6.0
0.7.0
0.8.0
0.8.1
0.9.0
1.0.0
1.1.0
1.1.1
1.1.2
1.1.3
1.1.4
1.2.0
2.0.0
2.1.0
2.2.0
2.3.0
2.4.0
2.5.1
2.5.2
3.0.0
3.1.0
3.1.1
3.1.2
4.0.0
4.1.0
4.1.1
4.1.2
4.2.0
4.2.1
4.2.2
4.3.0
4.4.0
4.5.0
4.6.0
4.7.0
4.8.0
4.9.0
4.9.1
4.9.2
Fixed in
4.9.3
References
Updated Nov 08, 2023 · Source: OSV.dev |
4.2.1
patch
Dependencies (11)
+ 3 more
Changelog
Compare changes
|
|
4.2.0
minor
1 CVE
CVE-2022-0759
GHSA-69p3-xp37-f692
Mar 26, 2022
Improper Certificate Validation in kubeclient
8.1
/ 10
High
Network
High
None
None
Unchanged
High
High
High
A flaw was found in all versions of kubeclient up to (but not including) v4.9.3, the Ruby client for Kubernetes REST API, in the way it parsed kubeconfig files. When the kubeconfig file does not configure custom CA to verify certs, kubeclient ends up accepting any certificate (it wrongly returns VERIFY_NONE). Ruby applications that leverage kubeclient to parse kubeconfig files are susceptible to Man-in-the-middle attacks (MITM). Affected versions
0.0.1
0.0.2
0.0.3
0.0.4
0.0.5
0.0.6
0.0.7
0.0.8
0.0.9
0.1.0
0.1.1
0.1.10
+ 59 more Show less
0.1.11
0.1.12
0.1.13
0.1.14
0.1.15
0.1.16
0.1.17
0.1.2
0.1.3
0.1.4
0.1.5
0.1.6
0.1.7
0.1.8
0.1.9
0.2.0
0.3.0
0.4.0
0.5.0
0.5.1
0.6.0
0.7.0
0.8.0
0.8.1
0.9.0
1.0.0
1.1.0
1.1.1
1.1.2
1.1.3
1.1.4
1.2.0
2.0.0
2.1.0
2.2.0
2.3.0
2.4.0
2.5.1
2.5.2
3.0.0
3.1.0
3.1.1
3.1.2
4.0.0
4.1.0
4.1.1
4.1.2
4.2.0
4.2.1
4.2.2
4.3.0
4.4.0
4.5.0
4.6.0
4.7.0
4.8.0
4.9.0
4.9.1
4.9.2
Fixed in
4.9.3
References
Updated Nov 08, 2023 · Source: OSV.dev |
4.2.0
minor
Dependencies (11)
+ 3 more
Changelog
Compare changes
|
|
4.1.1
patch
1 CVE
CVE-2022-0759
GHSA-69p3-xp37-f692
Mar 26, 2022
Improper Certificate Validation in kubeclient
8.1
/ 10
High
Network
High
None
None
Unchanged
High
High
High
A flaw was found in all versions of kubeclient up to (but not including) v4.9.3, the Ruby client for Kubernetes REST API, in the way it parsed kubeconfig files. When the kubeconfig file does not configure custom CA to verify certs, kubeclient ends up accepting any certificate (it wrongly returns VERIFY_NONE). Ruby applications that leverage kubeclient to parse kubeconfig files are susceptible to Man-in-the-middle attacks (MITM). Affected versions
0.0.1
0.0.2
0.0.3
0.0.4
0.0.5
0.0.6
0.0.7
0.0.8
0.0.9
0.1.0
0.1.1
0.1.10
+ 59 more Show less
0.1.11
0.1.12
0.1.13
0.1.14
0.1.15
0.1.16
0.1.17
0.1.2
0.1.3
0.1.4
0.1.5
0.1.6
0.1.7
0.1.8
0.1.9
0.2.0
0.3.0
0.4.0
0.5.0
0.5.1
0.6.0
0.7.0
0.8.0
0.8.1
0.9.0
1.0.0
1.1.0
1.1.1
1.1.2
1.1.3
1.1.4
1.2.0
2.0.0
2.1.0
2.2.0
2.3.0
2.4.0
2.5.1
2.5.2
3.0.0
3.1.0
3.1.1
3.1.2
4.0.0
4.1.0
4.1.1
4.1.2
4.2.0
4.2.1
4.2.2
4.3.0
4.4.0
4.5.0
4.6.0
4.7.0
4.8.0
4.9.0
4.9.1
4.9.2
Fixed in
4.9.3
References
Updated Nov 08, 2023 · Source: OSV.dev |
4.1.1
patch
Dependencies (11)
+ 3 more
Changelog
Compare changes
|
|
4.1.0
minor
1 CVE
CVE-2022-0759
GHSA-69p3-xp37-f692
Mar 26, 2022
Improper Certificate Validation in kubeclient
8.1
/ 10
High
Network
High
None
None
Unchanged
High
High
High
A flaw was found in all versions of kubeclient up to (but not including) v4.9.3, the Ruby client for Kubernetes REST API, in the way it parsed kubeconfig files. When the kubeconfig file does not configure custom CA to verify certs, kubeclient ends up accepting any certificate (it wrongly returns VERIFY_NONE). Ruby applications that leverage kubeclient to parse kubeconfig files are susceptible to Man-in-the-middle attacks (MITM). Affected versions
0.0.1
0.0.2
0.0.3
0.0.4
0.0.5
0.0.6
0.0.7
0.0.8
0.0.9
0.1.0
0.1.1
0.1.10
+ 59 more Show less
0.1.11
0.1.12
0.1.13
0.1.14
0.1.15
0.1.16
0.1.17
0.1.2
0.1.3
0.1.4
0.1.5
0.1.6
0.1.7
0.1.8
0.1.9
0.2.0
0.3.0
0.4.0
0.5.0
0.5.1
0.6.0
0.7.0
0.8.0
0.8.1
0.9.0
1.0.0
1.1.0
1.1.1
1.1.2
1.1.3
1.1.4
1.2.0
2.0.0
2.1.0
2.2.0
2.3.0
2.4.0
2.5.1
2.5.2
3.0.0
3.1.0
3.1.1
3.1.2
4.0.0
4.1.0
4.1.1
4.1.2
4.2.0
4.2.1
4.2.2
4.3.0
4.4.0
4.5.0
4.6.0
4.7.0
4.8.0
4.9.0
4.9.1
4.9.2
Fixed in
4.9.3
References
Updated Nov 08, 2023 · Source: OSV.dev |
4.1.0
minor
Dependencies (11)
+ 3 more
Changelog
Compare changes
|
|
4.0.0
major
1 CVE
CVE-2022-0759
GHSA-69p3-xp37-f692
Mar 26, 2022
Improper Certificate Validation in kubeclient
8.1
/ 10
High
Network
High
None
None
Unchanged
High
High
High
A flaw was found in all versions of kubeclient up to (but not including) v4.9.3, the Ruby client for Kubernetes REST API, in the way it parsed kubeconfig files. When the kubeconfig file does not configure custom CA to verify certs, kubeclient ends up accepting any certificate (it wrongly returns VERIFY_NONE). Ruby applications that leverage kubeclient to parse kubeconfig files are susceptible to Man-in-the-middle attacks (MITM). Affected versions
0.0.1
0.0.2
0.0.3
0.0.4
0.0.5
0.0.6
0.0.7
0.0.8
0.0.9
0.1.0
0.1.1
0.1.10
+ 59 more Show less
0.1.11
0.1.12
0.1.13
0.1.14
0.1.15
0.1.16
0.1.17
0.1.2
0.1.3
0.1.4
0.1.5
0.1.6
0.1.7
0.1.8
0.1.9
0.2.0
0.3.0
0.4.0
0.5.0
0.5.1
0.6.0
0.7.0
0.8.0
0.8.1
0.9.0
1.0.0
1.1.0
1.1.1
1.1.2
1.1.3
1.1.4
1.2.0
2.0.0
2.1.0
2.2.0
2.3.0
2.4.0
2.5.1
2.5.2
3.0.0
3.1.0
3.1.1
3.1.2
4.0.0
4.1.0
4.1.1
4.1.2
4.2.0
4.2.1
4.2.2
4.3.0
4.4.0
4.5.0
4.6.0
4.7.0
4.8.0
4.9.0
4.9.1
4.9.2
Fixed in
4.9.3
References
Updated Nov 08, 2023 · Source: OSV.dev |
4.0.0
major
Dependencies (11)
+ 3 more
Changelog
Compare changes
|
|
3.1.2
patch
1 CVE
CVE-2022-0759
GHSA-69p3-xp37-f692
Mar 26, 2022
Improper Certificate Validation in kubeclient
8.1
/ 10
High
Network
High
None
None
Unchanged
High
High
High
A flaw was found in all versions of kubeclient up to (but not including) v4.9.3, the Ruby client for Kubernetes REST API, in the way it parsed kubeconfig files. When the kubeconfig file does not configure custom CA to verify certs, kubeclient ends up accepting any certificate (it wrongly returns VERIFY_NONE). Ruby applications that leverage kubeclient to parse kubeconfig files are susceptible to Man-in-the-middle attacks (MITM). Affected versions
0.0.1
0.0.2
0.0.3
0.0.4
0.0.5
0.0.6
0.0.7
0.0.8
0.0.9
0.1.0
0.1.1
0.1.10
+ 59 more Show less
0.1.11
0.1.12
0.1.13
0.1.14
0.1.15
0.1.16
0.1.17
0.1.2
0.1.3
0.1.4
0.1.5
0.1.6
0.1.7
0.1.8
0.1.9
0.2.0
0.3.0
0.4.0
0.5.0
0.5.1
0.6.0
0.7.0
0.8.0
0.8.1
0.9.0
1.0.0
1.1.0
1.1.1
1.1.2
1.1.3
1.1.4
1.2.0
2.0.0
2.1.0
2.2.0
2.3.0
2.4.0
2.5.1
2.5.2
3.0.0
3.1.0
3.1.1
3.1.2
4.0.0
4.1.0
4.1.1
4.1.2
4.2.0
4.2.1
4.2.2
4.3.0
4.4.0
4.5.0
4.6.0
4.7.0
4.8.0
4.9.0
4.9.1
4.9.2
Fixed in
4.9.3
References
Updated Nov 08, 2023 · Source: OSV.dev |
3.1.2
patch
Dependencies (11)
+ 3 more
Changelog
Compare changes
|
|
3.1.1
patch
1 CVE
CVE-2022-0759
GHSA-69p3-xp37-f692
Mar 26, 2022
Improper Certificate Validation in kubeclient
8.1
/ 10
High
Network
High
None
None
Unchanged
High
High
High
A flaw was found in all versions of kubeclient up to (but not including) v4.9.3, the Ruby client for Kubernetes REST API, in the way it parsed kubeconfig files. When the kubeconfig file does not configure custom CA to verify certs, kubeclient ends up accepting any certificate (it wrongly returns VERIFY_NONE). Ruby applications that leverage kubeclient to parse kubeconfig files are susceptible to Man-in-the-middle attacks (MITM). Affected versions
0.0.1
0.0.2
0.0.3
0.0.4
0.0.5
0.0.6
0.0.7
0.0.8
0.0.9
0.1.0
0.1.1
0.1.10
+ 59 more Show less
0.1.11
0.1.12
0.1.13
0.1.14
0.1.15
0.1.16
0.1.17
0.1.2
0.1.3
0.1.4
0.1.5
0.1.6
0.1.7
0.1.8
0.1.9
0.2.0
0.3.0
0.4.0
0.5.0
0.5.1
0.6.0
0.7.0
0.8.0
0.8.1
0.9.0
1.0.0
1.1.0
1.1.1
1.1.2
1.1.3
1.1.4
1.2.0
2.0.0
2.1.0
2.2.0
2.3.0
2.4.0
2.5.1
2.5.2
3.0.0
3.1.0
3.1.1
3.1.2
4.0.0
4.1.0
4.1.1
4.1.2
4.2.0
4.2.1
4.2.2
4.3.0
4.4.0
4.5.0
4.6.0
4.7.0
4.8.0
4.9.0
4.9.1
4.9.2
Fixed in
4.9.3
References
Updated Nov 08, 2023 · Source: OSV.dev |
3.1.1
patch
Dependencies (11)
+ 3 more
Changelog
Compare changes
|
|
3.1.0
minor
1 CVE
CVE-2022-0759
GHSA-69p3-xp37-f692
Mar 26, 2022
Improper Certificate Validation in kubeclient
8.1
/ 10
High
Network
High
None
None
Unchanged
High
High
High
A flaw was found in all versions of kubeclient up to (but not including) v4.9.3, the Ruby client for Kubernetes REST API, in the way it parsed kubeconfig files. When the kubeconfig file does not configure custom CA to verify certs, kubeclient ends up accepting any certificate (it wrongly returns VERIFY_NONE). Ruby applications that leverage kubeclient to parse kubeconfig files are susceptible to Man-in-the-middle attacks (MITM). Affected versions
0.0.1
0.0.2
0.0.3
0.0.4
0.0.5
0.0.6
0.0.7
0.0.8
0.0.9
0.1.0
0.1.1
0.1.10
+ 59 more Show less
0.1.11
0.1.12
0.1.13
0.1.14
0.1.15
0.1.16
0.1.17
0.1.2
0.1.3
0.1.4
0.1.5
0.1.6
0.1.7
0.1.8
0.1.9
0.2.0
0.3.0
0.4.0
0.5.0
0.5.1
0.6.0
0.7.0
0.8.0
0.8.1
0.9.0
1.0.0
1.1.0
1.1.1
1.1.2
1.1.3
1.1.4
1.2.0
2.0.0
2.1.0
2.2.0
2.3.0
2.4.0
2.5.1
2.5.2
3.0.0
3.1.0
3.1.1
3.1.2
4.0.0
4.1.0
4.1.1
4.1.2
4.2.0
4.2.1
4.2.2
4.3.0
4.4.0
4.5.0
4.6.0
4.7.0
4.8.0
4.9.0
4.9.1
4.9.2
Fixed in
4.9.3
References
Updated Nov 08, 2023 · Source: OSV.dev |
3.1.0
minor
Dependencies (11)
+ 3 more
Changelog
Compare changes
|
|
3.0.0
major
1 CVE
CVE-2022-0759
GHSA-69p3-xp37-f692
Mar 26, 2022
Improper Certificate Validation in kubeclient
8.1
/ 10
High
Network
High
None
None
Unchanged
High
High
High
A flaw was found in all versions of kubeclient up to (but not including) v4.9.3, the Ruby client for Kubernetes REST API, in the way it parsed kubeconfig files. When the kubeconfig file does not configure custom CA to verify certs, kubeclient ends up accepting any certificate (it wrongly returns VERIFY_NONE). Ruby applications that leverage kubeclient to parse kubeconfig files are susceptible to Man-in-the-middle attacks (MITM). Affected versions
0.0.1
0.0.2
0.0.3
0.0.4
0.0.5
0.0.6
0.0.7
0.0.8
0.0.9
0.1.0
0.1.1
0.1.10
+ 59 more Show less
0.1.11
0.1.12
0.1.13
0.1.14
0.1.15
0.1.16
0.1.17
0.1.2
0.1.3
0.1.4
0.1.5
0.1.6
0.1.7
0.1.8
0.1.9
0.2.0
0.3.0
0.4.0
0.5.0
0.5.1
0.6.0
0.7.0
0.8.0
0.8.1
0.9.0
1.0.0
1.1.0
1.1.1
1.1.2
1.1.3
1.1.4
1.2.0
2.0.0
2.1.0
2.2.0
2.3.0
2.4.0
2.5.1
2.5.2
3.0.0
3.1.0
3.1.1
3.1.2
4.0.0
4.1.0
4.1.1
4.1.2
4.2.0
4.2.1
4.2.2
4.3.0
4.4.0
4.5.0
4.6.0
4.7.0
4.8.0
4.9.0
4.9.1
4.9.2
Fixed in
4.9.3
References
Updated Nov 08, 2023 · Source: OSV.dev |
3.0.0
major
Dependencies (10)
+ 2 more
Changelog
Compare changes
|
|
2.5.2
patch
1 CVE
CVE-2022-0759
GHSA-69p3-xp37-f692
Mar 26, 2022
Improper Certificate Validation in kubeclient
8.1
/ 10
High
Network
High
None
None
Unchanged
High
High
High
A flaw was found in all versions of kubeclient up to (but not including) v4.9.3, the Ruby client for Kubernetes REST API, in the way it parsed kubeconfig files. When the kubeconfig file does not configure custom CA to verify certs, kubeclient ends up accepting any certificate (it wrongly returns VERIFY_NONE). Ruby applications that leverage kubeclient to parse kubeconfig files are susceptible to Man-in-the-middle attacks (MITM). Affected versions
0.0.1
0.0.2
0.0.3
0.0.4
0.0.5
0.0.6
0.0.7
0.0.8
0.0.9
0.1.0
0.1.1
0.1.10
+ 59 more Show less
0.1.11
0.1.12
0.1.13
0.1.14
0.1.15
0.1.16
0.1.17
0.1.2
0.1.3
0.1.4
0.1.5
0.1.6
0.1.7
0.1.8
0.1.9
0.2.0
0.3.0
0.4.0
0.5.0
0.5.1
0.6.0
0.7.0
0.8.0
0.8.1
0.9.0
1.0.0
1.1.0
1.1.1
1.1.2
1.1.3
1.1.4
1.2.0
2.0.0
2.1.0
2.2.0
2.3.0
2.4.0
2.5.1
2.5.2
3.0.0
3.1.0
3.1.1
3.1.2
4.0.0
4.1.0
4.1.1
4.1.2
4.2.0
4.2.1
4.2.2
4.3.0
4.4.0
4.5.0
4.6.0
4.7.0
4.8.0
4.9.0
4.9.1
4.9.2
Fixed in
4.9.3
References
Updated Nov 08, 2023 · Source: OSV.dev |
2.5.2
patch
Dependencies (9)
+ 1 more
Changelog
Compare changes
|
|
2.5.1
minor
1 CVE
CVE-2022-0759
GHSA-69p3-xp37-f692
Mar 26, 2022
Improper Certificate Validation in kubeclient
8.1
/ 10
High
Network
High
None
None
Unchanged
High
High
High
A flaw was found in all versions of kubeclient up to (but not including) v4.9.3, the Ruby client for Kubernetes REST API, in the way it parsed kubeconfig files. When the kubeconfig file does not configure custom CA to verify certs, kubeclient ends up accepting any certificate (it wrongly returns VERIFY_NONE). Ruby applications that leverage kubeclient to parse kubeconfig files are susceptible to Man-in-the-middle attacks (MITM). Affected versions
0.0.1
0.0.2
0.0.3
0.0.4
0.0.5
0.0.6
0.0.7
0.0.8
0.0.9
0.1.0
0.1.1
0.1.10
+ 59 more Show less
0.1.11
0.1.12
0.1.13
0.1.14
0.1.15
0.1.16
0.1.17
0.1.2
0.1.3
0.1.4
0.1.5
0.1.6
0.1.7
0.1.8
0.1.9
0.2.0
0.3.0
0.4.0
0.5.0
0.5.1
0.6.0
0.7.0
0.8.0
0.8.1
0.9.0
1.0.0
1.1.0
1.1.1
1.1.2
1.1.3
1.1.4
1.2.0
2.0.0
2.1.0
2.2.0
2.3.0
2.4.0
2.5.1
2.5.2
3.0.0
3.1.0
3.1.1
3.1.2
4.0.0
4.1.0
4.1.1
4.1.2
4.2.0
4.2.1
4.2.2
4.3.0
4.4.0
4.5.0
4.6.0
4.7.0
4.8.0
4.9.0
4.9.1
4.9.2
Fixed in
4.9.3
References
Updated Nov 08, 2023 · Source: OSV.dev |
2.5.1
minor
Dependencies (9)
+ 1 more
Changelog
Compare changes
|
|
2.4.0
minor
1 CVE
CVE-2022-0759
GHSA-69p3-xp37-f692
Mar 26, 2022
Improper Certificate Validation in kubeclient
8.1
/ 10
High
Network
High
None
None
Unchanged
High
High
High
A flaw was found in all versions of kubeclient up to (but not including) v4.9.3, the Ruby client for Kubernetes REST API, in the way it parsed kubeconfig files. When the kubeconfig file does not configure custom CA to verify certs, kubeclient ends up accepting any certificate (it wrongly returns VERIFY_NONE). Ruby applications that leverage kubeclient to parse kubeconfig files are susceptible to Man-in-the-middle attacks (MITM). Affected versions
0.0.1
0.0.2
0.0.3
0.0.4
0.0.5
0.0.6
0.0.7
0.0.8
0.0.9
0.1.0
0.1.1
0.1.10
+ 59 more Show less
0.1.11
0.1.12
0.1.13
0.1.14
0.1.15
0.1.16
0.1.17
0.1.2
0.1.3
0.1.4
0.1.5
0.1.6
0.1.7
0.1.8
0.1.9
0.2.0
0.3.0
0.4.0
0.5.0
0.5.1
0.6.0
0.7.0
0.8.0
0.8.1
0.9.0
1.0.0
1.1.0
1.1.1
1.1.2
1.1.3
1.1.4
1.2.0
2.0.0
2.1.0
2.2.0
2.3.0
2.4.0
2.5.1
2.5.2
3.0.0
3.1.0
3.1.1
3.1.2
4.0.0
4.1.0
4.1.1
4.1.2
4.2.0
4.2.1
4.2.2
4.3.0
4.4.0
4.5.0
4.6.0
4.7.0
4.8.0
4.9.0
4.9.1
4.9.2
Fixed in
4.9.3
References
Updated Nov 08, 2023 · Source: OSV.dev |
2.4.0
minor
Dependencies (9)
+ 1 more
Changelog
Compare changes
|
|
2.3.0
minor
1 CVE
CVE-2022-0759
GHSA-69p3-xp37-f692
Mar 26, 2022
Improper Certificate Validation in kubeclient
8.1
/ 10
High
Network
High
None
None
Unchanged
High
High
High
A flaw was found in all versions of kubeclient up to (but not including) v4.9.3, the Ruby client for Kubernetes REST API, in the way it parsed kubeconfig files. When the kubeconfig file does not configure custom CA to verify certs, kubeclient ends up accepting any certificate (it wrongly returns VERIFY_NONE). Ruby applications that leverage kubeclient to parse kubeconfig files are susceptible to Man-in-the-middle attacks (MITM). Affected versions
0.0.1
0.0.2
0.0.3
0.0.4
0.0.5
0.0.6
0.0.7
0.0.8
0.0.9
0.1.0
0.1.1
0.1.10
+ 59 more Show less
0.1.11
0.1.12
0.1.13
0.1.14
0.1.15
0.1.16
0.1.17
0.1.2
0.1.3
0.1.4
0.1.5
0.1.6
0.1.7
0.1.8
0.1.9
0.2.0
0.3.0
0.4.0
0.5.0
0.5.1
0.6.0
0.7.0
0.8.0
0.8.1
0.9.0
1.0.0
1.1.0
1.1.1
1.1.2
1.1.3
1.1.4
1.2.0
2.0.0
2.1.0
2.2.0
2.3.0
2.4.0
2.5.1
2.5.2
3.0.0
3.1.0
3.1.1
3.1.2
4.0.0
4.1.0
4.1.1
4.1.2
4.2.0
4.2.1
4.2.2
4.3.0
4.4.0
4.5.0
4.6.0
4.7.0
4.8.0
4.9.0
4.9.1
4.9.2
Fixed in
4.9.3
References
Updated Nov 08, 2023 · Source: OSV.dev |
2.3.0
minor
Dependencies (9)
+ 1 more
Changelog
Compare changes
|
|
2.2.0
minor
1 CVE
CVE-2022-0759
GHSA-69p3-xp37-f692
Mar 26, 2022
Improper Certificate Validation in kubeclient
8.1
/ 10
High
Network
High
None
None
Unchanged
High
High
High
A flaw was found in all versions of kubeclient up to (but not including) v4.9.3, the Ruby client for Kubernetes REST API, in the way it parsed kubeconfig files. When the kubeconfig file does not configure custom CA to verify certs, kubeclient ends up accepting any certificate (it wrongly returns VERIFY_NONE). Ruby applications that leverage kubeclient to parse kubeconfig files are susceptible to Man-in-the-middle attacks (MITM). Affected versions
0.0.1
0.0.2
0.0.3
0.0.4
0.0.5
0.0.6
0.0.7
0.0.8
0.0.9
0.1.0
0.1.1
0.1.10
+ 59 more Show less
0.1.11
0.1.12
0.1.13
0.1.14
0.1.15
0.1.16
0.1.17
0.1.2
0.1.3
0.1.4
0.1.5
0.1.6
0.1.7
0.1.8
0.1.9
0.2.0
0.3.0
0.4.0
0.5.0
0.5.1
0.6.0
0.7.0
0.8.0
0.8.1
0.9.0
1.0.0
1.1.0
1.1.1
1.1.2
1.1.3
1.1.4
1.2.0
2.0.0
2.1.0
2.2.0
2.3.0
2.4.0
2.5.1
2.5.2
3.0.0
3.1.0
3.1.1
3.1.2
4.0.0
4.1.0
4.1.1
4.1.2
4.2.0
4.2.1
4.2.2
4.3.0
4.4.0
4.5.0
4.6.0
4.7.0
4.8.0
4.9.0
4.9.1
4.9.2
Fixed in
4.9.3
References
Updated Nov 08, 2023 · Source: OSV.dev |
2.2.0
minor
Dependencies (9)
+ 1 more
Changelog
Compare changes
|
|
2.1.0
minor
1 CVE
CVE-2022-0759
GHSA-69p3-xp37-f692
Mar 26, 2022
Improper Certificate Validation in kubeclient
8.1
/ 10
High
Network
High
None
None
Unchanged
High
High
High
A flaw was found in all versions of kubeclient up to (but not including) v4.9.3, the Ruby client for Kubernetes REST API, in the way it parsed kubeconfig files. When the kubeconfig file does not configure custom CA to verify certs, kubeclient ends up accepting any certificate (it wrongly returns VERIFY_NONE). Ruby applications that leverage kubeclient to parse kubeconfig files are susceptible to Man-in-the-middle attacks (MITM). Affected versions
0.0.1
0.0.2
0.0.3
0.0.4
0.0.5
0.0.6
0.0.7
0.0.8
0.0.9
0.1.0
0.1.1
0.1.10
+ 59 more Show less
0.1.11
0.1.12
0.1.13
0.1.14
0.1.15
0.1.16
0.1.17
0.1.2
0.1.3
0.1.4
0.1.5
0.1.6
0.1.7
0.1.8
0.1.9
0.2.0
0.3.0
0.4.0
0.5.0
0.5.1
0.6.0
0.7.0
0.8.0
0.8.1
0.9.0
1.0.0
1.1.0
1.1.1
1.1.2
1.1.3
1.1.4
1.2.0
2.0.0
2.1.0
2.2.0
2.3.0
2.4.0
2.5.1
2.5.2
3.0.0
3.1.0
3.1.1
3.1.2
4.0.0
4.1.0
4.1.1
4.1.2
4.2.0
4.2.1
4.2.2
4.3.0
4.4.0
4.5.0
4.6.0
4.7.0
4.8.0
4.9.0
4.9.1
4.9.2
Fixed in
4.9.3
References
Updated Nov 08, 2023 · Source: OSV.dev |
2.1.0
minor
Dependencies (9)
+ 1 more
Changelog
Compare changes
|
|
2.0.0
major
1 CVE
CVE-2022-0759
GHSA-69p3-xp37-f692
Mar 26, 2022
Improper Certificate Validation in kubeclient
8.1
/ 10
High
Network
High
None
None
Unchanged
High
High
High
A flaw was found in all versions of kubeclient up to (but not including) v4.9.3, the Ruby client for Kubernetes REST API, in the way it parsed kubeconfig files. When the kubeconfig file does not configure custom CA to verify certs, kubeclient ends up accepting any certificate (it wrongly returns VERIFY_NONE). Ruby applications that leverage kubeclient to parse kubeconfig files are susceptible to Man-in-the-middle attacks (MITM). Affected versions
0.0.1
0.0.2
0.0.3
0.0.4
0.0.5
0.0.6
0.0.7
0.0.8
0.0.9
0.1.0
0.1.1
0.1.10
+ 59 more Show less
0.1.11
0.1.12
0.1.13
0.1.14
0.1.15
0.1.16
0.1.17
0.1.2
0.1.3
0.1.4
0.1.5
0.1.6
0.1.7
0.1.8
0.1.9
0.2.0
0.3.0
0.4.0
0.5.0
0.5.1
0.6.0
0.7.0
0.8.0
0.8.1
0.9.0
1.0.0
1.1.0
1.1.1
1.1.2
1.1.3
1.1.4
1.2.0
2.0.0
2.1.0
2.2.0
2.3.0
2.4.0
2.5.1
2.5.2
3.0.0
3.1.0
3.1.1
3.1.2
4.0.0
4.1.0
4.1.1
4.1.2
4.2.0
4.2.1
4.2.2
4.3.0
4.4.0
4.5.0
4.6.0
4.7.0
4.8.0
4.9.0
4.9.1
4.9.2
Fixed in
4.9.3
References
Updated Nov 08, 2023 · Source: OSV.dev |
2.0.0
major
Dependencies (9)
+ 1 more
Changelog
Compare changes
|
|
1.2.0
minor
1 CVE
CVE-2022-0759
GHSA-69p3-xp37-f692
Mar 26, 2022
Improper Certificate Validation in kubeclient
8.1
/ 10
High
Network
High
None
None
Unchanged
High
High
High
A flaw was found in all versions of kubeclient up to (but not including) v4.9.3, the Ruby client for Kubernetes REST API, in the way it parsed kubeconfig files. When the kubeconfig file does not configure custom CA to verify certs, kubeclient ends up accepting any certificate (it wrongly returns VERIFY_NONE). Ruby applications that leverage kubeclient to parse kubeconfig files are susceptible to Man-in-the-middle attacks (MITM). Affected versions
0.0.1
0.0.2
0.0.3
0.0.4
0.0.5
0.0.6
0.0.7
0.0.8
0.0.9
0.1.0
0.1.1
0.1.10
+ 59 more Show less
0.1.11
0.1.12
0.1.13
0.1.14
0.1.15
0.1.16
0.1.17
0.1.2
0.1.3
0.1.4
0.1.5
0.1.6
0.1.7
0.1.8
0.1.9
0.2.0
0.3.0
0.4.0
0.5.0
0.5.1
0.6.0
0.7.0
0.8.0
0.8.1
0.9.0
1.0.0
1.1.0
1.1.1
1.1.2
1.1.3
1.1.4
1.2.0
2.0.0
2.1.0
2.2.0
2.3.0
2.4.0
2.5.1
2.5.2
3.0.0
3.1.0
3.1.1
3.1.2
4.0.0
4.1.0
4.1.1
4.1.2
4.2.0
4.2.1
4.2.2
4.3.0
4.4.0
4.5.0
4.6.0
4.7.0
4.8.0
4.9.0
4.9.1
4.9.2
Fixed in
4.9.3
References
Updated Nov 08, 2023 · Source: OSV.dev |
1.2.0
minor
Dependencies (10)
+ 2 more
Changelog
Compare changes
|
|
1.1.4
patch
1 CVE
CVE-2022-0759
GHSA-69p3-xp37-f692
Mar 26, 2022
Improper Certificate Validation in kubeclient
8.1
/ 10
High
Network
High
None
None
Unchanged
High
High
High
A flaw was found in all versions of kubeclient up to (but not including) v4.9.3, the Ruby client for Kubernetes REST API, in the way it parsed kubeconfig files. When the kubeconfig file does not configure custom CA to verify certs, kubeclient ends up accepting any certificate (it wrongly returns VERIFY_NONE). Ruby applications that leverage kubeclient to parse kubeconfig files are susceptible to Man-in-the-middle attacks (MITM). Affected versions
0.0.1
0.0.2
0.0.3
0.0.4
0.0.5
0.0.6
0.0.7
0.0.8
0.0.9
0.1.0
0.1.1
0.1.10
+ 59 more Show less
0.1.11
0.1.12
0.1.13
0.1.14
0.1.15
0.1.16
0.1.17
0.1.2
0.1.3
0.1.4
0.1.5
0.1.6
0.1.7
0.1.8
0.1.9
0.2.0
0.3.0
0.4.0
0.5.0
0.5.1
0.6.0
0.7.0
0.8.0
0.8.1
0.9.0
1.0.0
1.1.0
1.1.1
1.1.2
1.1.3
1.1.4
1.2.0
2.0.0
2.1.0
2.2.0
2.3.0
2.4.0
2.5.1
2.5.2
3.0.0
3.1.0
3.1.1
3.1.2
4.0.0
4.1.0
4.1.1
4.1.2
4.2.0
4.2.1
4.2.2
4.3.0
4.4.0
4.5.0
4.6.0
4.7.0
4.8.0
4.9.0
4.9.1
4.9.2
Fixed in
4.9.3
References
Updated Nov 08, 2023 · Source: OSV.dev |
1.1.4
patch
Dependencies (10)
+ 2 more
Changelog
Compare changes
|
|
1.1.3
patch
1 CVE
CVE-2022-0759
GHSA-69p3-xp37-f692
Mar 26, 2022
Improper Certificate Validation in kubeclient
8.1
/ 10
High
Network
High
None
None
Unchanged
High
High
High
A flaw was found in all versions of kubeclient up to (but not including) v4.9.3, the Ruby client for Kubernetes REST API, in the way it parsed kubeconfig files. When the kubeconfig file does not configure custom CA to verify certs, kubeclient ends up accepting any certificate (it wrongly returns VERIFY_NONE). Ruby applications that leverage kubeclient to parse kubeconfig files are susceptible to Man-in-the-middle attacks (MITM). Affected versions
0.0.1
0.0.2
0.0.3
0.0.4
0.0.5
0.0.6
0.0.7
0.0.8
0.0.9
0.1.0
0.1.1
0.1.10
+ 59 more Show less
0.1.11
0.1.12
0.1.13
0.1.14
0.1.15
0.1.16
0.1.17
0.1.2
0.1.3
0.1.4
0.1.5
0.1.6
0.1.7
0.1.8
0.1.9
0.2.0
0.3.0
0.4.0
0.5.0
0.5.1
0.6.0
0.7.0
0.8.0
0.8.1
0.9.0
1.0.0
1.1.0
1.1.1
1.1.2
1.1.3
1.1.4
1.2.0
2.0.0
2.1.0
2.2.0
2.3.0
2.4.0
2.5.1
2.5.2
3.0.0
3.1.0
3.1.1
3.1.2
4.0.0
4.1.0
4.1.1
4.1.2
4.2.0
4.2.1
4.2.2
4.3.0
4.4.0
4.5.0
4.6.0
4.7.0
4.8.0
4.9.0
4.9.1
4.9.2
Fixed in
4.9.3
References
Updated Nov 08, 2023 · Source: OSV.dev |
1.1.3
patch
Dependencies (10)
+ 2 more
Changelog
Compare changes
|
|
1.1.2
patch
1 CVE
CVE-2022-0759
GHSA-69p3-xp37-f692
Mar 26, 2022
Improper Certificate Validation in kubeclient
8.1
/ 10
High
Network
High
None
None
Unchanged
High
High
High
A flaw was found in all versions of kubeclient up to (but not including) v4.9.3, the Ruby client for Kubernetes REST API, in the way it parsed kubeconfig files. When the kubeconfig file does not configure custom CA to verify certs, kubeclient ends up accepting any certificate (it wrongly returns VERIFY_NONE). Ruby applications that leverage kubeclient to parse kubeconfig files are susceptible to Man-in-the-middle attacks (MITM). Affected versions
0.0.1
0.0.2
0.0.3
0.0.4
0.0.5
0.0.6
0.0.7
0.0.8
0.0.9
0.1.0
0.1.1
0.1.10
+ 59 more Show less
0.1.11
0.1.12
0.1.13
0.1.14
0.1.15
0.1.16
0.1.17
0.1.2
0.1.3
0.1.4
0.1.5
0.1.6
0.1.7
0.1.8
0.1.9
0.2.0
0.3.0
0.4.0
0.5.0
0.5.1
0.6.0
0.7.0
0.8.0
0.8.1
0.9.0
1.0.0
1.1.0
1.1.1
1.1.2
1.1.3
1.1.4
1.2.0
2.0.0
2.1.0
2.2.0
2.3.0
2.4.0
2.5.1
2.5.2
3.0.0
3.1.0
3.1.1
3.1.2
4.0.0
4.1.0
4.1.1
4.1.2
4.2.0
4.2.1
4.2.2
4.3.0
4.4.0
4.5.0
4.6.0
4.7.0
4.8.0
4.9.0
4.9.1
4.9.2
Fixed in
4.9.3
References
Updated Nov 08, 2023 · Source: OSV.dev |
1.1.2
patch
Dependencies (10)
+ 2 more
Changelog
Compare changes
|
|
0.8.1
patch
1 CVE
CVE-2022-0759
GHSA-69p3-xp37-f692
Mar 26, 2022
Improper Certificate Validation in kubeclient
8.1
/ 10
High
Network
High
None
None
Unchanged
High
High
High
A flaw was found in all versions of kubeclient up to (but not including) v4.9.3, the Ruby client for Kubernetes REST API, in the way it parsed kubeconfig files. When the kubeconfig file does not configure custom CA to verify certs, kubeclient ends up accepting any certificate (it wrongly returns VERIFY_NONE). Ruby applications that leverage kubeclient to parse kubeconfig files are susceptible to Man-in-the-middle attacks (MITM). Affected versions
0.0.1
0.0.2
0.0.3
0.0.4
0.0.5
0.0.6
0.0.7
0.0.8
0.0.9
0.1.0
0.1.1
0.1.10
+ 59 more Show less
0.1.11
0.1.12
0.1.13
0.1.14
0.1.15
0.1.16
0.1.17
0.1.2
0.1.3
0.1.4
0.1.5
0.1.6
0.1.7
0.1.8
0.1.9
0.2.0
0.3.0
0.4.0
0.5.0
0.5.1
0.6.0
0.7.0
0.8.0
0.8.1
0.9.0
1.0.0
1.1.0
1.1.1
1.1.2
1.1.3
1.1.4
1.2.0
2.0.0
2.1.0
2.2.0
2.3.0
2.4.0
2.5.1
2.5.2
3.0.0
3.1.0
3.1.1
3.1.2
4.0.0
4.1.0
4.1.1
4.1.2
4.2.0
4.2.1
4.2.2
4.3.0
4.4.0
4.5.0
4.6.0
4.7.0
4.8.0
4.9.0
4.9.1
4.9.2
Fixed in
4.9.3
References
Updated Nov 08, 2023 · Source: OSV.dev |
0.8.1
patch
Dependencies (10)
+ 2 more
Changelog
Compare changes
|
|
1.1.1
patch
1 CVE
CVE-2022-0759
GHSA-69p3-xp37-f692
Mar 26, 2022
Improper Certificate Validation in kubeclient
8.1
/ 10
High
Network
High
None
None
Unchanged
High
High
High
A flaw was found in all versions of kubeclient up to (but not including) v4.9.3, the Ruby client for Kubernetes REST API, in the way it parsed kubeconfig files. When the kubeconfig file does not configure custom CA to verify certs, kubeclient ends up accepting any certificate (it wrongly returns VERIFY_NONE). Ruby applications that leverage kubeclient to parse kubeconfig files are susceptible to Man-in-the-middle attacks (MITM). Affected versions
0.0.1
0.0.2
0.0.3
0.0.4
0.0.5
0.0.6
0.0.7
0.0.8
0.0.9
0.1.0
0.1.1
0.1.10
+ 59 more Show less
0.1.11
0.1.12
0.1.13
0.1.14
0.1.15
0.1.16
0.1.17
0.1.2
0.1.3
0.1.4
0.1.5
0.1.6
0.1.7
0.1.8
0.1.9
0.2.0
0.3.0
0.4.0
0.5.0
0.5.1
0.6.0
0.7.0
0.8.0
0.8.1
0.9.0
1.0.0
1.1.0
1.1.1
1.1.2
1.1.3
1.1.4
1.2.0
2.0.0
2.1.0
2.2.0
2.3.0
2.4.0
2.5.1
2.5.2
3.0.0
3.1.0
3.1.1
3.1.2
4.0.0
4.1.0
4.1.1
4.1.2
4.2.0
4.2.1
4.2.2
4.3.0
4.4.0
4.5.0
4.6.0
4.7.0
4.8.0
4.9.0
4.9.1
4.9.2
Fixed in
4.9.3
References
Updated Nov 08, 2023 · Source: OSV.dev |
1.1.1
patch
Dependencies (11)
+ 3 more
Changelog
Compare changes
|
|
1.1.0
minor
1 CVE
CVE-2022-0759
GHSA-69p3-xp37-f692
Mar 26, 2022
Improper Certificate Validation in kubeclient
8.1
/ 10
High
Network
High
None
None
Unchanged
High
High
High
A flaw was found in all versions of kubeclient up to (but not including) v4.9.3, the Ruby client for Kubernetes REST API, in the way it parsed kubeconfig files. When the kubeconfig file does not configure custom CA to verify certs, kubeclient ends up accepting any certificate (it wrongly returns VERIFY_NONE). Ruby applications that leverage kubeclient to parse kubeconfig files are susceptible to Man-in-the-middle attacks (MITM). Affected versions
0.0.1
0.0.2
0.0.3
0.0.4
0.0.5
0.0.6
0.0.7
0.0.8
0.0.9
0.1.0
0.1.1
0.1.10
+ 59 more Show less
0.1.11
0.1.12
0.1.13
0.1.14
0.1.15
0.1.16
0.1.17
0.1.2
0.1.3
0.1.4
0.1.5
0.1.6
0.1.7
0.1.8
0.1.9
0.2.0
0.3.0
0.4.0
0.5.0
0.5.1
0.6.0
0.7.0
0.8.0
0.8.1
0.9.0
1.0.0
1.1.0
1.1.1
1.1.2
1.1.3
1.1.4
1.2.0
2.0.0
2.1.0
2.2.0
2.3.0
2.4.0
2.5.1
2.5.2
3.0.0
3.1.0
3.1.1
3.1.2
4.0.0
4.1.0
4.1.1
4.1.2
4.2.0
4.2.1
4.2.2
4.3.0
4.4.0
4.5.0
4.6.0
4.7.0
4.8.0
4.9.0
4.9.1
4.9.2
Fixed in
4.9.3
References
Updated Nov 08, 2023 · Source: OSV.dev |
1.1.0
minor
Dependencies (11)
+ 3 more
Changelog
Compare changes
|
|
1.0.0
major
1 CVE
CVE-2022-0759
GHSA-69p3-xp37-f692
Mar 26, 2022
Improper Certificate Validation in kubeclient
8.1
/ 10
High
Network
High
None
None
Unchanged
High
High
High
A flaw was found in all versions of kubeclient up to (but not including) v4.9.3, the Ruby client for Kubernetes REST API, in the way it parsed kubeconfig files. When the kubeconfig file does not configure custom CA to verify certs, kubeclient ends up accepting any certificate (it wrongly returns VERIFY_NONE). Ruby applications that leverage kubeclient to parse kubeconfig files are susceptible to Man-in-the-middle attacks (MITM). Affected versions
0.0.1
0.0.2
0.0.3
0.0.4
0.0.5
0.0.6
0.0.7
0.0.8
0.0.9
0.1.0
0.1.1
0.1.10
+ 59 more Show less
0.1.11
0.1.12
0.1.13
0.1.14
0.1.15
0.1.16
0.1.17
0.1.2
0.1.3
0.1.4
0.1.5
0.1.6
0.1.7
0.1.8
0.1.9
0.2.0
0.3.0
0.4.0
0.5.0
0.5.1
0.6.0
0.7.0
0.8.0
0.8.1
0.9.0
1.0.0
1.1.0
1.1.1
1.1.2
1.1.3
1.1.4
1.2.0
2.0.0
2.1.0
2.2.0
2.3.0
2.4.0
2.5.1
2.5.2
3.0.0
3.1.0
3.1.1
3.1.2
4.0.0
4.1.0
4.1.1
4.1.2
4.2.0
4.2.1
4.2.2
4.3.0
4.4.0
4.5.0
4.6.0
4.7.0
4.8.0
4.9.0
4.9.1
4.9.2
Fixed in
4.9.3
References
Updated Nov 08, 2023 · Source: OSV.dev |
1.0.0
major
Dependencies (10)
+ 2 more
Changelog
Compare changes
|
|
0.9.0
minor
1 CVE
CVE-2022-0759
GHSA-69p3-xp37-f692
Mar 26, 2022
Improper Certificate Validation in kubeclient
8.1
/ 10
High
Network
High
None
None
Unchanged
High
High
High
A flaw was found in all versions of kubeclient up to (but not including) v4.9.3, the Ruby client for Kubernetes REST API, in the way it parsed kubeconfig files. When the kubeconfig file does not configure custom CA to verify certs, kubeclient ends up accepting any certificate (it wrongly returns VERIFY_NONE). Ruby applications that leverage kubeclient to parse kubeconfig files are susceptible to Man-in-the-middle attacks (MITM). Affected versions
0.0.1
0.0.2
0.0.3
0.0.4
0.0.5
0.0.6
0.0.7
0.0.8
0.0.9
0.1.0
0.1.1
0.1.10
+ 59 more Show less
0.1.11
0.1.12
0.1.13
0.1.14
0.1.15
0.1.16
0.1.17
0.1.2
0.1.3
0.1.4
0.1.5
0.1.6
0.1.7
0.1.8
0.1.9
0.2.0
0.3.0
0.4.0
0.5.0
0.5.1
0.6.0
0.7.0
0.8.0
0.8.1
0.9.0
1.0.0
1.1.0
1.1.1
1.1.2
1.1.3
1.1.4
1.2.0
2.0.0
2.1.0
2.2.0
2.3.0
2.4.0
2.5.1
2.5.2
3.0.0
3.1.0
3.1.1
3.1.2
4.0.0
4.1.0
4.1.1
4.1.2
4.2.0
4.2.1
4.2.2
4.3.0
4.4.0
4.5.0
4.6.0
4.7.0
4.8.0
4.9.0
4.9.1
4.9.2
Fixed in
4.9.3
References
Updated Nov 08, 2023 · Source: OSV.dev |
0.9.0
minor
Dependencies (10)
+ 2 more
Changelog
Compare changes
|
|
0.8.0
minor
1 CVE
CVE-2022-0759
GHSA-69p3-xp37-f692
Mar 26, 2022
Improper Certificate Validation in kubeclient
8.1
/ 10
High
Network
High
None
None
Unchanged
High
High
High
A flaw was found in all versions of kubeclient up to (but not including) v4.9.3, the Ruby client for Kubernetes REST API, in the way it parsed kubeconfig files. When the kubeconfig file does not configure custom CA to verify certs, kubeclient ends up accepting any certificate (it wrongly returns VERIFY_NONE). Ruby applications that leverage kubeclient to parse kubeconfig files are susceptible to Man-in-the-middle attacks (MITM). Affected versions
0.0.1
0.0.2
0.0.3
0.0.4
0.0.5
0.0.6
0.0.7
0.0.8
0.0.9
0.1.0
0.1.1
0.1.10
+ 59 more Show less
0.1.11
0.1.12
0.1.13
0.1.14
0.1.15
0.1.16
0.1.17
0.1.2
0.1.3
0.1.4
0.1.5
0.1.6
0.1.7
0.1.8
0.1.9
0.2.0
0.3.0
0.4.0
0.5.0
0.5.1
0.6.0
0.7.0
0.8.0
0.8.1
0.9.0
1.0.0
1.1.0
1.1.1
1.1.2
1.1.3
1.1.4
1.2.0
2.0.0
2.1.0
2.2.0
2.3.0
2.4.0
2.5.1
2.5.2
3.0.0
3.1.0
3.1.1
3.1.2
4.0.0
4.1.0
4.1.1
4.1.2
4.2.0
4.2.1
4.2.2
4.3.0
4.4.0
4.5.0
4.6.0
4.7.0
4.8.0
4.9.0
4.9.1
4.9.2
Fixed in
4.9.3
References
Updated Nov 08, 2023 · Source: OSV.dev |
0.8.0
minor
Dependencies (10)
+ 2 more
Changelog
Compare changes
|
|
0.7.0
minor
1 CVE
CVE-2022-0759
GHSA-69p3-xp37-f692
Mar 26, 2022
Improper Certificate Validation in kubeclient
8.1
/ 10
High
Network
High
None
None
Unchanged
High
High
High
A flaw was found in all versions of kubeclient up to (but not including) v4.9.3, the Ruby client for Kubernetes REST API, in the way it parsed kubeconfig files. When the kubeconfig file does not configure custom CA to verify certs, kubeclient ends up accepting any certificate (it wrongly returns VERIFY_NONE). Ruby applications that leverage kubeclient to parse kubeconfig files are susceptible to Man-in-the-middle attacks (MITM). Affected versions
0.0.1
0.0.2
0.0.3
0.0.4
0.0.5
0.0.6
0.0.7
0.0.8
0.0.9
0.1.0
0.1.1
0.1.10
+ 59 more Show less
0.1.11
0.1.12
0.1.13
0.1.14
0.1.15
0.1.16
0.1.17
0.1.2
0.1.3
0.1.4
0.1.5
0.1.6
0.1.7
0.1.8
0.1.9
0.2.0
0.3.0
0.4.0
0.5.0
0.5.1
0.6.0
0.7.0
0.8.0
0.8.1
0.9.0
1.0.0
1.1.0
1.1.1
1.1.2
1.1.3
1.1.4
1.2.0
2.0.0
2.1.0
2.2.0
2.3.0
2.4.0
2.5.1
2.5.2
3.0.0
3.1.0
3.1.1
3.1.2
4.0.0
4.1.0
4.1.1
4.1.2
4.2.0
4.2.1
4.2.2
4.3.0
4.4.0
4.5.0
4.6.0
4.7.0
4.8.0
4.9.0
4.9.1
4.9.2
Fixed in
4.9.3
References
Updated Nov 08, 2023 · Source: OSV.dev |
0.7.0
minor
Dependencies (10)
+ 2 more
Changelog
Compare changes
|
|
0.6.0
minor
1 CVE
CVE-2022-0759
GHSA-69p3-xp37-f692
Mar 26, 2022
Improper Certificate Validation in kubeclient
8.1
/ 10
High
Network
High
None
None
Unchanged
High
High
High
A flaw was found in all versions of kubeclient up to (but not including) v4.9.3, the Ruby client for Kubernetes REST API, in the way it parsed kubeconfig files. When the kubeconfig file does not configure custom CA to verify certs, kubeclient ends up accepting any certificate (it wrongly returns VERIFY_NONE). Ruby applications that leverage kubeclient to parse kubeconfig files are susceptible to Man-in-the-middle attacks (MITM). Affected versions
0.0.1
0.0.2
0.0.3
0.0.4
0.0.5
0.0.6
0.0.7
0.0.8
0.0.9
0.1.0
0.1.1
0.1.10
+ 59 more Show less
0.1.11
0.1.12
0.1.13
0.1.14
0.1.15
0.1.16
0.1.17
0.1.2
0.1.3
0.1.4
0.1.5
0.1.6
0.1.7
0.1.8
0.1.9
0.2.0
0.3.0
0.4.0
0.5.0
0.5.1
0.6.0
0.7.0
0.8.0
0.8.1
0.9.0
1.0.0
1.1.0
1.1.1
1.1.2
1.1.3
1.1.4
1.2.0
2.0.0
2.1.0
2.2.0
2.3.0
2.4.0
2.5.1
2.5.2
3.0.0
3.1.0
3.1.1
3.1.2
4.0.0
4.1.0
4.1.1
4.1.2
4.2.0
4.2.1
4.2.2
4.3.0
4.4.0
4.5.0
4.6.0
4.7.0
4.8.0
4.9.0
4.9.1
4.9.2
Fixed in
4.9.3
References
Updated Nov 08, 2023 · Source: OSV.dev |
0.6.0
minor
Dependencies (10)
+ 2 more
Changelog
Compare changes
|
|
0.5.1
patch
1 CVE
CVE-2022-0759
GHSA-69p3-xp37-f692
Mar 26, 2022
Improper Certificate Validation in kubeclient
8.1
/ 10
High
Network
High
None
None
Unchanged
High
High
High
A flaw was found in all versions of kubeclient up to (but not including) v4.9.3, the Ruby client for Kubernetes REST API, in the way it parsed kubeconfig files. When the kubeconfig file does not configure custom CA to verify certs, kubeclient ends up accepting any certificate (it wrongly returns VERIFY_NONE). Ruby applications that leverage kubeclient to parse kubeconfig files are susceptible to Man-in-the-middle attacks (MITM). Affected versions
0.0.1
0.0.2
0.0.3
0.0.4
0.0.5
0.0.6
0.0.7
0.0.8
0.0.9
0.1.0
0.1.1
0.1.10
+ 59 more Show less
0.1.11
0.1.12
0.1.13
0.1.14
0.1.15
0.1.16
0.1.17
0.1.2
0.1.3
0.1.4
0.1.5
0.1.6
0.1.7
0.1.8
0.1.9
0.2.0
0.3.0
0.4.0
0.5.0
0.5.1
0.6.0
0.7.0
0.8.0
0.8.1
0.9.0
1.0.0
1.1.0
1.1.1
1.1.2
1.1.3
1.1.4
1.2.0
2.0.0
2.1.0
2.2.0
2.3.0
2.4.0
2.5.1
2.5.2
3.0.0
3.1.0
3.1.1
3.1.2
4.0.0
4.1.0
4.1.1
4.1.2
4.2.0
4.2.1
4.2.2
4.3.0
4.4.0
4.5.0
4.6.0
4.7.0
4.8.0
4.9.0
4.9.1
4.9.2
Fixed in
4.9.3
References
Updated Nov 08, 2023 · Source: OSV.dev |
0.5.1
patch
Dependencies (9)
+ 1 more
Changelog
Compare changes
|
|
0.5.0
minor
1 CVE
CVE-2022-0759
GHSA-69p3-xp37-f692
Mar 26, 2022
Improper Certificate Validation in kubeclient
8.1
/ 10
High
Network
High
None
None
Unchanged
High
High
High
A flaw was found in all versions of kubeclient up to (but not including) v4.9.3, the Ruby client for Kubernetes REST API, in the way it parsed kubeconfig files. When the kubeconfig file does not configure custom CA to verify certs, kubeclient ends up accepting any certificate (it wrongly returns VERIFY_NONE). Ruby applications that leverage kubeclient to parse kubeconfig files are susceptible to Man-in-the-middle attacks (MITM). Affected versions
0.0.1
0.0.2
0.0.3
0.0.4
0.0.5
0.0.6
0.0.7
0.0.8
0.0.9
0.1.0
0.1.1
0.1.10
+ 59 more Show less
0.1.11
0.1.12
0.1.13
0.1.14
0.1.15
0.1.16
0.1.17
0.1.2
0.1.3
0.1.4
0.1.5
0.1.6
0.1.7
0.1.8
0.1.9
0.2.0
0.3.0
0.4.0
0.5.0
0.5.1
0.6.0
0.7.0
0.8.0
0.8.1
0.9.0
1.0.0
1.1.0
1.1.1
1.1.2
1.1.3
1.1.4
1.2.0
2.0.0
2.1.0
2.2.0
2.3.0
2.4.0
2.5.1
2.5.2
3.0.0
3.1.0
3.1.1
3.1.2
4.0.0
4.1.0
4.1.1
4.1.2
4.2.0
4.2.1
4.2.2
4.3.0
4.4.0
4.5.0
4.6.0
4.7.0
4.8.0
4.9.0
4.9.1
4.9.2
Fixed in
4.9.3
References
Updated Nov 08, 2023 · Source: OSV.dev |
0.5.0
minor
Dependencies (9)
+ 1 more
Changelog
Compare changes
|
|
0.4.0
minor
1 CVE
CVE-2022-0759
GHSA-69p3-xp37-f692
Mar 26, 2022
Improper Certificate Validation in kubeclient
8.1
/ 10
High
Network
High
None
None
Unchanged
High
High
High
A flaw was found in all versions of kubeclient up to (but not including) v4.9.3, the Ruby client for Kubernetes REST API, in the way it parsed kubeconfig files. When the kubeconfig file does not configure custom CA to verify certs, kubeclient ends up accepting any certificate (it wrongly returns VERIFY_NONE). Ruby applications that leverage kubeclient to parse kubeconfig files are susceptible to Man-in-the-middle attacks (MITM). Affected versions
0.0.1
0.0.2
0.0.3
0.0.4
0.0.5
0.0.6
0.0.7
0.0.8
0.0.9
0.1.0
0.1.1
0.1.10
+ 59 more Show less
0.1.11
0.1.12
0.1.13
0.1.14
0.1.15
0.1.16
0.1.17
0.1.2
0.1.3
0.1.4
0.1.5
0.1.6
0.1.7
0.1.8
0.1.9
0.2.0
0.3.0
0.4.0
0.5.0
0.5.1
0.6.0
0.7.0
0.8.0
0.8.1
0.9.0
1.0.0
1.1.0
1.1.1
1.1.2
1.1.3
1.1.4
1.2.0
2.0.0
2.1.0
2.2.0
2.3.0
2.4.0
2.5.1
2.5.2
3.0.0
3.1.0
3.1.1
3.1.2
4.0.0
4.1.0
4.1.1
4.1.2
4.2.0
4.2.1
4.2.2
4.3.0
4.4.0
4.5.0
4.6.0
4.7.0
4.8.0
4.9.0
4.9.1
4.9.2
Fixed in
4.9.3
References
Updated Nov 08, 2023 · Source: OSV.dev |
0.4.0
minor
Dependencies (9)
+ 1 more
Changelog
Compare changes
|
|
0.3.0
minor
1 CVE
CVE-2022-0759
GHSA-69p3-xp37-f692
Mar 26, 2022
Improper Certificate Validation in kubeclient
8.1
/ 10
High
Network
High
None
None
Unchanged
High
High
High
A flaw was found in all versions of kubeclient up to (but not including) v4.9.3, the Ruby client for Kubernetes REST API, in the way it parsed kubeconfig files. When the kubeconfig file does not configure custom CA to verify certs, kubeclient ends up accepting any certificate (it wrongly returns VERIFY_NONE). Ruby applications that leverage kubeclient to parse kubeconfig files are susceptible to Man-in-the-middle attacks (MITM). Affected versions
0.0.1
0.0.2
0.0.3
0.0.4
0.0.5
0.0.6
0.0.7
0.0.8
0.0.9
0.1.0
0.1.1
0.1.10
+ 59 more Show less
0.1.11
0.1.12
0.1.13
0.1.14
0.1.15
0.1.16
0.1.17
0.1.2
0.1.3
0.1.4
0.1.5
0.1.6
0.1.7
0.1.8
0.1.9
0.2.0
0.3.0
0.4.0
0.5.0
0.5.1
0.6.0
0.7.0
0.8.0
0.8.1
0.9.0
1.0.0
1.1.0
1.1.1
1.1.2
1.1.3
1.1.4
1.2.0
2.0.0
2.1.0
2.2.0
2.3.0
2.4.0
2.5.1
2.5.2
3.0.0
3.1.0
3.1.1
3.1.2
4.0.0
4.1.0
4.1.1
4.1.2
4.2.0
4.2.1
4.2.2
4.3.0
4.4.0
4.5.0
4.6.0
4.7.0
4.8.0
4.9.0
4.9.1
4.9.2
Fixed in
4.9.3
References
Updated Nov 08, 2023 · Source: OSV.dev |
0.3.0
minor
Dependencies (9)
+ 1 more
Changelog
Compare changes
|
|
0.2.0
minor
1 CVE
CVE-2022-0759
GHSA-69p3-xp37-f692
Mar 26, 2022
Improper Certificate Validation in kubeclient
8.1
/ 10
High
Network
High
None
None
Unchanged
High
High
High
A flaw was found in all versions of kubeclient up to (but not including) v4.9.3, the Ruby client for Kubernetes REST API, in the way it parsed kubeconfig files. When the kubeconfig file does not configure custom CA to verify certs, kubeclient ends up accepting any certificate (it wrongly returns VERIFY_NONE). Ruby applications that leverage kubeclient to parse kubeconfig files are susceptible to Man-in-the-middle attacks (MITM). Affected versions
0.0.1
0.0.2
0.0.3
0.0.4
0.0.5
0.0.6
0.0.7
0.0.8
0.0.9
0.1.0
0.1.1
0.1.10
+ 59 more Show less
0.1.11
0.1.12
0.1.13
0.1.14
0.1.15
0.1.16
0.1.17
0.1.2
0.1.3
0.1.4
0.1.5
0.1.6
0.1.7
0.1.8
0.1.9
0.2.0
0.3.0
0.4.0
0.5.0
0.5.1
0.6.0
0.7.0
0.8.0
0.8.1
0.9.0
1.0.0
1.1.0
1.1.1
1.1.2
1.1.3
1.1.4
1.2.0
2.0.0
2.1.0
2.2.0
2.3.0
2.4.0
2.5.1
2.5.2
3.0.0
3.1.0
3.1.1
3.1.2
4.0.0
4.1.0
4.1.1
4.1.2
4.2.0
4.2.1
4.2.2
4.3.0
4.4.0
4.5.0
4.6.0
4.7.0
4.8.0
4.9.0
4.9.1
4.9.2
Fixed in
4.9.3
References
Updated Nov 08, 2023 · Source: OSV.dev |
0.2.0
minor
Dependencies (9)
+ 1 more
Changelog
Compare changes
|