Description

vcluster-runtime - Virtual Kubernetes Clusters

Overview

IdentityNamespaceAutomountSecretsPermissionsWorkloadsRisk
vcluster-runtimedefault31Critical

Numbers in the last two columns indicate how many bindings or workloads involve each ServiceAccount.


Identities

🤖 vcluster-runtime

Namespace: default  |  Automount:

🔑 Permissions (3)

RoleResourceVerbsRiskTags
ClusterRole vcluster-runtimecore/nodes/proxygetCriticalAuthorizationBypass ClusterAdminAccess CodeExecution ElevationOfPrivilege LateralMovement (+1 more)
ClusterRole vcluster-runtimecore/namespacesget · list · watchLowClusterStructure InformationDisclosure Reconnaissance
ClusterRole vcluster-runtimecore/podsget · list · watchLow

⚠️ Potential Abuse (3)

The following security risks were found based on the above permissions:

📦 Workloads (1)

KindNameContainerImage
DaemonSetvcluster-runtimevcluster-runtimeghcr.io/loft-sh/vcluster-runtime:0.0.1-alpha.2