C
Cloud Native Computing Foundation
Security Risk Profile
45
/100
mediumSecurity Risk Score
Comprehensive risk assessment based on 3 vulnerabilities, EPSS scores, exploitation status, and remediation availability.
📅 Data spans from April 10, 2018 to present
3
Total CVEs
1
Critical+High
1
Exploited
0
Unpatched
Threat Assessment
Avg CVSS
7.1
Base severity
Avg EPSS
0%
Exploit probability
Unpatched
0
Critical/High
Risk Level
45/100
medium
⚠️ 1 Active Exploits
Severity Distribution
Critical
0High
1Medium
1Low
0Exploit Likelihood
>50% chance
020-50%
05-20%
0<5%
0Age Distribution
Common Weaknesses (CWE)
1
Command Injection
1
2
Input Validation
1
Most Affected Products
1. go/k8s.io/kubernetes4
2. go/github.com/containerd/containerd/v23
3. linuxfoundation Containerd3
4. Cloud Native Computing Foundation Kubernetes2
5. Cloud Native Computing Foundation containerd1
Recent Vulnerabilities
See more →CVE-2026-53489
CVSS 8.2high
containerd: Arbitrary host CRI log file read via symlink following in CRI checkpoint restore
Jun 19, 2026
CVE-2024-9042
CVSS 5.9medium
[kubernetes] CVE-2024-9042: Command Injection affecting Windows nodes via nodes/*/logs/query API
Jan 16, 2025⚠ Exploited
RHSA-2018:1072
unknown
Low: Kubernetes in the Extras channel - deprecation notice
Apr 10, 2018
Monitor Cloud Native Computing Foundation in Real-Time
Get instant alerts when new vulnerabilities are discovered. Stay ahead of security threats with SecAlerts.