Files
kube-hunter/docs/_kb/KHV043.md

679 B

vid, title, categories, severity
vid title categories severity
KHV043 Cluster Health Disclosure
Information Disclosure
low

{{ page.vid }} - {{ page.title }}

Issue description

The kubelet is leaking it's health information, which may contain sensitive information, via the /healthz endpoint. This endpoint is exposed as part of the kubelet's debug handlers.

Remediation

Disable --enable-debugging-handlers kubelet flag.

References