VYPR

mcp-server-kubernetes

by Kubernetes

CVEs (1)

  • CVE-2026-47250Jun 5, 2026
    risk 0.00cvss epss

    ### Summary The `kubectl_generic` tool in `mcp-server-kubernetes` passes user-supplied flags directly to kubectl without any allowlist, enabling a **privilege escalation attack** within Kubernetes environments. An attacker who already has limited cluster or codebase access, for…