MEDIUM
projectcapsule
CVE published 2026-07-30
CVE-2026-65834
The Capsule framework for Kubernetes, versions prior to 0.13.8, had a vulnerability where CapsuleConfiguration.Spec.NodeMetadata.ForbiddenLabels.Regex and CapsuleConfiguration.Spec.NodeMetadata.ForbiddenAnnotations.Regex were not validated by the configuration admission webhook. This allowed a Cluster Admin to store a malformed regex that could crash the node admission webhook on Node create, update, or p [truncated]