Sealos Project maintains a container orchestration and cluster-management platform, with its vulnerability exposure concentrated in the core Sealos product and centered on access-control issues including improper authentication and incorrect authorization mechanisms. Current severity, exploitation, and exposure details are shown in the live statistics panel alongside this summary.
The number and severity of CVEs published that impact products developed by Sealos Project over time
Signals from CVEs in this vendor scope (2 CVEs).
2 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2023-33190CRITICAL Sealos is an open source cloud operating system distribution based on the Kubernetes kernel. In versions of Sealos prior to 4.2.1-rc4 an improper configuration of role based access | Jun 29, 2023 | 9.8 | 29 | NO | NO |
CVE-2023-36815HIGH Sealos is a Cloud Operating System designed for managing cloud-native applications. In version 4.2.0 and prior, there is a permission flaw in the Sealos billing system, which allow | Jul 3, 2023 | 8.1 | 22 | NO | NO |
Signals from CVEs in this vendor scope (2 CVEs).
An overview of all social media posts that mention a CVE ID that affects a product developed by Sealos Project.
Media articles that mention a CVE ID that affects a product developed by Sealos Project — matched by CVE ID, not by vendor name.