-
CVSS Score
-| Package Name | Ecosystem | Vulnerable Versions | First Patched Version |
|---|---|---|---|
| github.com/kubesphere/kubesphere | go | >= 4.0.0, < 4.1.3 | 4.1.3 |
| github.com/kubesphere/kubesphere | go | >= 3.0.0, < 3.4.1 | 3.4.1 |
The vulnerability stems from excessive permissions in the 'authenticated' GlobalRole (CWE-639). Key indicators:
A Semantic Attack on Google Gemini - Read the Latest Research