Description

App Mesh Prometheus Helm chart for Kubernetes

Overview

IdentityNamespaceAutomountSecretsPermissionsWorkloadsRisk
appmesh-prometheusdefault61Critical

Numbers in the last two columns indicate how many bindings or workloads involve each ServiceAccount.


Identities

🤖 appmesh-prometheus

Namespace: default  |  Automount:

🔑 Permissions (6)

RoleResourceVerbsRiskTags
ClusterRole appmesh-prometheuscore/nodes/proxyget · list · watchCriticalAuthorizationBypass ClusterAdminAccess CodeExecution ElevationOfPrivilege LateralMovement (+1 more)
ClusterRole appmesh-prometheuscore/configmapsgetLow
ClusterRole appmesh-prometheuscore/endpointsget · list · watchLow
ClusterRole appmesh-prometheuscore/nodesget · list · watchLow
ClusterRole appmesh-prometheuscore/podsget · list · watchLow
ClusterRole appmesh-prometheuscore/servicesget · list · watchLow

⚠️ Potential Abuse (2)

The following security risks were found based on the above permissions:

📦 Workloads (1)

KindNameContainerImage
Deploymentappmesh-prometheusappmesh-prometheusprom/prometheus:v2.13.1