Description

Scans SBOMs for vulnerabilities

Overview

IdentityNamespaceAutomountSecretsPermissionsWorkloadsRisk
vulnerability-operatordefault61Low

Numbers in the last two columns indicate how many bindings or workloads involve each ServiceAccount.


Identities

🤖 vulnerability-operator

Namespace: default  |  Automount:

🔑 Permissions (6)

RoleResourceVerbsRiskTags
ClusterRole vulnerability-operatorapps/daemonsetsgetLow
ClusterRole vulnerability-operatorapps/deploymentsgetLow
ClusterRole vulnerability-operatorbatch/jobsgetLow
ClusterRole vulnerability-operatorcore/podslistLow
ClusterRole vulnerability-operatorapps/replicasetsgetLow
ClusterRole vulnerability-operatorapps/statefulsetsgetLow

⚠️ Potential Abuse (1)

The following security risks were found based on the above permissions:

📦 Workloads (1)

KindNameContainerImage
Deploymentvulnerability-operatorvulnerability-operatorghcr.io/ckotzbauer/vulnerability-operator:@sha256:df6e35145cf5e82e051d6df9403633c63a00074f0c19fc91c074b93844567768