Description

Scans SBOMs for vulnerabilities

Overview

IdentityNamespaceAutomountSecretsPermissionsWorkloadsRisk
vulnerability-operatordefault61Low

Numbers in the last two columns indicate how many bindings or workloads involve each ServiceAccount.


Identities

🤖 vulnerability-operator

Namespace: default  |  Automount:

🔑 Permissions (6)

RoleResourceVerbsRiskTags
ClusterRole vulnerability-operatorapps/daemonsetsgetLow
ClusterRole vulnerability-operatorapps/deploymentsgetLow
ClusterRole vulnerability-operatorbatch/jobsgetLow
ClusterRole vulnerability-operatorcore/podslistLow
ClusterRole vulnerability-operatorapps/replicasetsgetLow
ClusterRole vulnerability-operatorapps/statefulsetsgetLow

⚠️ Potential Abuse (1)

The following security risks were found based on the above permissions:

📦 Workloads (1)

KindNameContainerImage
Deploymentvulnerability-operatorvulnerability-operatorghcr.io/ckotzbauer/vulnerability-operator:0.28.10@sha256:c33ecd445dd3b276e79edf078f51a07a331d064539515d38ac347bf71e5a38b1