VYPR

Efs Csi Driver

by Amazon

Source repositories

CVEs (2)

  • CVE-2026-85781HigSep 4, 2026
    risk 0.50cvss 8.7epss 0.00

    Unverified ownership of a storage access point in the volume deletion component of the Amazon EFS CSI Driver before v3.4.1 might allow an authenticated Kubernetes user with PersistentVolume creation privileges to cause recursive deletion of directories on an EFS filesystem they…

  • CVE-2026-6437MedApr 17, 2026
    risk 0.35cvss 6.5epss 0.01

    Improper neutralization of argument delimiters in the volume handling component in AWS EFS CSI Driver (aws-efs-csi-driver) before v3.0.1 allows remote authenticated users with PersistentVolume creation permissions to inject arbitrary mount options via comma injection. To…