Vulnerability GO-2026-6520
Unknown
UNKNOWN RISK
Vulnerabilities without an assigned CVSS score. Severity is not determinable from available data.
3 hours ago
September 28, 2026 at 04:43 PM UTC
Capsule: Tenant owner bypasses Capsule's forbidden namespace/service/node label and annotation enforcement in github.com/projectcapsule/capsule
v0.0.1 - v0.13.6
v0.0.1 - v0.13.6
Summary
Capsule: Tenant owner bypasses Capsule's forbidden namespace/service/node label and annotation enforcement in github.com/projectcapsule/capsule
Details
Capsule: Tenant owner bypasses Capsule's forbidden namespace/service/node label and annotation enforcement in github.com/projectcapsule/capsule
Related Vulnerabilities
Other vulnerabilities affecting the same packages
Unknown
3 hours ago
Capsule: hostnameRegexHandler.OnUpdate validates stale (old) Tenant regex, allowing invalid AllowedHostnames regex to bypass webhook validation in github.com/projectcapsule/capsule
v0.13.0 - v0.13.6 GO-2026-6519
v0.13.0 - v0.13.6 GO-2026-6519
Unknown
3 hours ago
Capsule: Malformed ForbiddenAnnotations.Regex can bypass Tenant validation and trigger namespace admission panic in github.com/projectcapsule/capsule
v0.13.0 - v0.13.6 GO-2026-6521
v0.13.0 - v0.13.6 GO-2026-6521
Medium Risk
10 days ago
Capsule: hostnameRegexHandler.OnUpdate validates stale (old) Tenant regex, allowing invalid AllowedHostnames regex to bypass webhook validation
v0.13.0 - v0.13.6 GHSA-f94q-w3w8-cj67
v0.13.0 - v0.13.6 GHSA-f94q-w3w8-cj67
High Risk
10 days ago
Capsule: Tenant owner bypasses Capsule's forbidden namespace/service/node label and annotation enforcement
v0.0.1 - v0.13.6 GHSA-gjw4-3v3v-rqxg
v0.0.1 - v0.13.6 GHSA-gjw4-3v3v-rqxg
Medium Risk
10 days ago
Capsule: Malformed ForbiddenAnnotations.Regex can bypass Tenant validation and trigger namespace admission panic
v0.13.0 - v0.13.6 GHSA-gxjc-74v5-3vx3
v0.13.0 - v0.13.6 GHSA-gxjc-74v5-3vx3
Impacted packages
Timeline
Published
3 hours ago
September 28, 2026 at 04:43 PM UTC
Last Modified
2 hours ago
September 28, 2026 at 05:00 PM UTC