Description

Metrics Server is a scalable, efficient source of container resource metrics for Kubernetes built-in autoscaling pipelines.

Overview

IdentityNamespaceAutomountSecretsPermissionsWorkloadsRisk
metrics-serverdefault51High

Numbers in the last two columns indicate how many bindings or workloads involve each ServiceAccount.


Identities

🤖 metrics-server

Namespace: default  |  Automount:

🔑 Permissions (5)

RoleResourceVerbsRiskTags
ClusterRole system:metrics-servercore/configmapsget · list · watchHighConfigMapAccess DataExposure InformationDisclosure
ClusterRole system:metrics-servercore/namespacesget · list · watchLowClusterStructure InformationDisclosure Reconnaissance
ClusterRole system:metrics-servercore/nodesget · list · watchLow
ClusterRole system:metrics-servercore/nodes/metricsgetLow
ClusterRole system:metrics-servercore/podsget · list · watchLow

⚠️ Potential Abuse (4)

The following security risks were found based on the above permissions:

📦 Workloads (1)

KindNameContainerImage
Deploymentmetrics-servermetrics-serverregistry.k8s.io/metrics-server/metrics-server:v0.7.2