CVE-2020-8037

istio-egress

Bokeh Plot Bokeh.set_log_level("info"); {"ed787426-5b94-466a-8cf3-53a6c1e8f882":{"defs":[],"roots":{"references":[{"attributes":{},"id":"523242","type":"BasicTickFormatter"},{"attributes":{"bottom_units":"screen","fill_alpha":0.5,"fill_color":"lightgrey","left_units":"screen","level":"overlay","line_alpha":1.0,"line_color":"black","line_dash":[4,4],"line_width":2,"right_units":"screen","syncable":false,"top_units":"screen"},"id":"523183","type":"BoxAnnotation"},{"attributes":{"data_source":{"id":"523203"},"glyph":{"id":"523202"},"hover_glyph":null,"muted_glyph":null,"view":{"id":"523205"}},"id":"523204","type":"GlyphRenderer"},{"attributes":{"data_source":{"id":"523199"},"glyph":{"id":"523228"},"hover_glyph":null,"muted_glyph":null,"view":{"id":"523201"}},"id":"523200","type":"GlyphRenderer"},{"attributes":{},"id":"523202","type":"MultiLine"},{"attributes":{"below":[{"id":"523169"}],"center":[{"id":"523172"},{"id":"523176"}],"height":768,"left":[{"id":"523173"}],"renderers":[{"id":"523197"},{"id":"523237"}],"title":{"id":"523159"},"toolbar":{"id":"523184"},"width":1024,"x_range":{"id":"523161"},"x_scale":{"id":"523165"},"y_range":{"id":"523163"},"y_scale":{"id":"523167"}},"id":"523158","subtype":"Figure","type":"Plot"},{"attributes":{},"id":"523163","type":"DataRange1d"},{"attributes":{"fill_color":{"field":"nodeType","transform":{"id":"523227"}},"size":{"value":20}},"id":"523228","type":"Circle"},{"attributes":{"source":{"id":"523199"}},"id":"523201","type":"CDSView"},{"attributes":{},"id":"523182","type":"HelpTool"},{"attributes":{},"id":"523259","type":"Selection"},{"attributes":{"formatter":{"id":"523245"},"major_label_policy":{"id":"523243"},"ticker":{"id":"523174"}},"id":"523173","type":"LinearAxis"},{"attributes":{},"id":"523181","type":"ResetTool"},{"attributes":{"edge_renderer":{"id":"523204"},"inspection_policy":{"id":"523250"},"layout_provider":{"id":"523206"},"node_renderer":{"id":"523200"},"selection_policy":{"id":"523255"}},"id":"523197","type":"GraphRenderer"},{"attributes":{},"id":"523177","type":"PanTool"},{"attributes":{"background_fill_color":{"value":"white"},"source":{"id":"523199"},"text":{"field":"name"},"x":{"field":"x"},"y":{"field":"y"}},"id":"523237","type":"LabelSet"},{"attributes":{"overlay":{"id":"523257"}},"id":"523193","type":"BoxSelectTool"},{"attributes":{},"id":"523255","type":"NodesOnly"},{"attributes":{},"id":"523178","type":"WheelZoomTool"},{"attributes":{},"id":"523161","type":"DataRange1d"},{"attributes":{"axis":{"id":"523173"},"dimension":1,"ticker":null},"id":"523176","type":"Grid"},{"attributes":{},"id":"523165","type":"LinearScale"},{"attributes":{"data":{"end":["CKV_K8S_38","CKV_K8S_40","CKV_K8S_31","CKV_K8S_43","CKV_K8S_15","CKV_K8S_8","Deployment.default","CKV_K8S_40","CKV_K8S_31","CKV_K8S_43","CKV_K8S_15","CKV_K8S_8","docker.io/istio/proxyv2:1.10.3","CVE-2021-3711","CVE-2021-33910","CVE-2020-9794","CVE-2021-36222","CVE-2021-22946","CVE-2019-9513","CVE-2019-9511","CVE-2021-3712","CVE-2021-28359","CVE-2021-40528","CVE-2021-22947","CVE-2020-13844","CVE-2021-22925","CVE-2018-20217","CVE-2020-6096","CVE-2019-18276","CVE-2021-33560","CVE-2021-3326","CVE-2020-9991","CVE-2020-8037","CVE-2019-20838","CVE-2019-13050","CVE-2019-12098","CVE-2020-9849","CVE-2018-5710","CVE-2016-2781","CVE-2020-13529","CVE-2021-23336","CVE-2019-25013","CVE-2021-3426","CVE-2018-16868","CVE-2020-27618","CVE-2018-7169","CVE-2016-10739"],"start":["istio/egress","istio/egress","istio/egress","istio/egress","istio/egress","istio/egress","CKV_K8S_38","Deployment.default","Deployment.default","Deployment.default","Deployment.default","Deployment.default","Deployment.default","docker.io/istio/proxyv2:1.10.3","docker.io/istio/proxyv2:1.10.3","docker.io/istio/proxyv2:1.10.3","docker.io/istio/proxyv2:1.10.3","docker.io/istio/proxyv2:1.10.3","docker.io/istio/proxyv2:1.10.3","docker.io/istio/proxyv2:1.10.3","docker.io/istio/proxyv2:1.10.3","docker.io/istio/proxyv2:1.10.3","docker.io/istio/proxyv2:1.10.3","docker.io/istio/proxyv2:1.10.3","docker.io/istio/proxyv2:1.10.3","docker.io/istio/proxyv2:1.10.3","docker.io/istio/proxyv2:1.10.3","docker.io/istio/proxyv2:1.10.3","docker.io/istio/proxyv2:1.10.3","docker.io/istio/proxyv2:1.10.3","docker.io/istio/proxyv2:1.10.3","docker.io/istio/proxyv2:1.10.3","docker.io/istio/proxyv2:1.10.3","docker.io/istio/proxyv2:1.10.3","docker.io/istio/proxyv2:1.10.3","docker.io/istio/proxyv2:1.10.3","docker.io/istio/proxyv2:1.10.3","docker.io/istio/proxyv2:1.10.3","docker.io/istio/proxyv2:1.10.3","docker.io/istio/proxyv2:1.10.3","docker.io/istio/proxyv2:1.10.3","docker.io/istio/proxyv2:1.10.3","docker.io/istio/proxyv2:1.10.3","docker.io/istio/proxyv2:1.10.3","docker.io/istio/proxyv2:1.10.3","docker.io/istio/proxyv2:1.10.3","docker.io/istio/proxyv2:1.10.3"]},"selected":{"id":"523261"},"selection_policy":{"id":"523260"}},"id":"523203","type":"ColumnDataSource"},{"attributes":{"axis":{"id":"523169"},"ticker":null},"id":"523172","type":"Grid"},{"attributes":{"graph_layout":{"CKV_K8S_15":[0.20055038565030067,0.340552707298993],"CKV_K8S_31":[0.0986960181457265,0.4242993129420947],"CKV_K8S_38":[0.19676919491219114,0.38403998670934186],"CKV_K8S_40":[0.1021321341001773,0.3749512392082345],"CKV_K8S_43":[0.05770506340416364,0.40327355453974684],"CKV_K8S_8":[0.15098648757662045,0.36247328052152006],"CVE-2016-10739":[-0.10485515642514094,-0.2786866953400605],"CVE-2016-2781":[0.11476628775357489,-0.17949535769787225],"CVE-2018-16868":[-0.1537245392637626,-0.19988622830413455],"CVE-2018-20217":[-0.05067343776635261,-0.24135546641568073],"CVE-2018-5710":[0.048348797453791,-0.2639382712585991],"CVE-2018-7169":[-0.23322494561614202,-0.11244804878100492],"CVE-2019-12098":[0.14112002189642164,-0.1354541300376796],"CVE-2019-13050":[-0.09706706448121936,-0.20072653136835258],"CVE-2019-18276":[0.050433243326894715,-0.020237778320488346],"CVE-2019-20838":[-0.02626019369265444,0.0036109272227433393],"CVE-2019-25013":[-0.10538984947233418,0.005711759314438072],"CVE-2019-9511":[0.13208583024161782,-0.08259863981467004],"CVE-2019-9513":[-0.049967004980801866,-0.29578237151643916],"CVE-2020-13529":[-0.1667324827414422,-0.04753941059240672],"CVE-2020-13844":[0.06692606423308572,-0.13805241222096645],"CVE-2020-27618":[-0.20088287588464318,-0.22196462592190766],"CVE-2020-6096":[-0.047905271615881984,0.06900004330932213],"CVE-2020-8037":[0.0131207300188678,0.05425289133840156],"CVE-2020-9794":[-0.1516132267979097,-0.25993152811587333],"CVE-2020-9849":[-0.17943292609738265,0.01121769310256758],"CVE-2020-9991":[-0.23711558675342984,-0.06463472249442505],"CVE-2021-22925":[-0.23066014693036432,-0.17011466044659768],"CVE-2021-22946":[0.04670387704759281,-0.2021656861776424],"CVE-2021-22947":[0.1207844942087663,-0.025261936253750224],"CVE-2021-23336":[0.0013266123313447414,-0.2789289619243373],"CVE-2021-28359":[0.09617950348583776,-0.22987294479181808],"CVE-2021-3326":[-0.011285337975939008,-0.19164611587486857],"CVE-2021-33560":[-0.22327569388440177,-0.013198873912825055],"CVE-2021-33910":[-0.1847749918603045,-0.1432491713689295],"CVE-2021-3426":[0.07287288508222087,0.02865395603728288],"CVE-2021-36222":[0.07318150779570608,-0.07700846421910305],"CVE-2021-3711":[-0.10347713487924337,0.06970515724544461],"CVE-2021-3712":[-0.13902015401617174,-0.1066418345411672],"CVE-2021-40528":[-0.15798418092755992,0.055144001270178995],"Deployment.default":[0.08461373001187576,0.2523162092483551],"deps":[0.8761477709805038,1.0],"docker.io/istio/proxyv2:1.10.3":[-0.04813871582060523,-0.09498983617941394],"istio/egress":[0.1580102782264055,0.43660798458234706]}},"id":"523206","type":"StaticLayoutProvider"},{"attributes":{"factors":["root","checkov","chart","helmResource","CVE","image"],"palette":["#3288bd","#66c2a5","#abdda4","#e6f598","#fee08b","#fdae61","#f46d43","#d53e4f"]},"id":"523227","type":"CategoricalColorMapper"},{"attributes":{},"id":"523260","type":"UnionRenderers"},{"attributes":{"callback":null},"id":"523192","type":"TapTool"},{"attributes":{"overlay":{"id":"523183"}},"id":"523179","type":"BoxZoomTool"},{"attributes":{},"id":"523240","type":"AllLabels"},{"attributes":{},"id":"523245","type":"BasicTickFormatter"},{"attributes":{},"id":"523250","type":"NodesOnly"},{"attributes":{"formatter":{"id":"523242"},"major_label_policy":{"id":"523240"},"ticker":{"id":"523170"}},"id":"523169","type":"LinearAxis"},{"attributes":{},"id":"523243","type":"AllLabels"},{"attributes":{},"id":"523258","type":"UnionRenderers"},{"attributes":{"data":{"cvssScore":[null,null,null,null,null,null,null,null,null,null,9.8,5.5,8.1,7.5,7.5,7.5,7.5,7.4,6.1,5.9,5.9,5.5,5.3,5.3,8.1,7.8,7.5,7.5,7.5,7.5,7.5,7.5,7.4,6.5,6.5,6.5,6.1,5.9,5.9,5.7,5.6,5.5,5.3,5.3],"description":["istio/egress",null,"Ensure that Service Account Tokens are only mounted where necessary","Deployment.istio-egressgateway.default (container 0) - istio-proxy","Containers should run as a high UID to avoid host conflict","Ensure that the seccomp profile is set to docker/default or runtime/default","Image should use digest","Image Pull Policy should be Always","Liveness Probe Should be Configured",null,"In order to decrypt SM2 encrypted data an application is expected to call the API function EVP_PKEY_decrypt().

View BlastRadius Graph

istio-ingress

Bokeh Plot Bokeh.set_log_level("info"); {"cfdeea29-4377-45d7-99b0-637403124a76":{"defs":[],"roots":{"references":[{"attributes":{"active_multi":null,"tools":[{"id":"523501"},{"id":"523502"},{"id":"523503"},{"id":"523504"},{"id":"523505"},{"id":"523506"},{"id":"523515"},{"id":"523516"},{"id":"523517"}]},"id":"523508","type":"Toolbar"},{"attributes":{"callback":null,"tooltips":[["Name","@name"],["NodeType","@nodeType"],["Description","@description"]]},"id":"523515","type":"HoverTool"},{"attributes":{"overlay":{"id":"523507"}},"id":"523503","type":"BoxZoomTool"},{"attributes":{"bottom_units":"screen","fill_alpha":0.5,"fill_color":"lightgrey","left_units":"screen","level":"overlay","line_alpha":1.0,"line_color":"black","line_dash":[4,4],"line_width":2,"right_units":"screen","syncable":false,"top_units":"screen"},"id":"523581","type":"BoxAnnotation"},{"attributes":{"source":{"id":"523527"}},"id":"523529","type":"CDSView"},{"attributes":{"text":"istio-ingress"},"id":"523483","type":"Title"},{"attributes":{},"id":"523506","type":"HelpTool"},{"attributes":{},"id":"523582","type":"UnionRenderers"},{"attributes":{"edge_renderer":{"id":"523528"},"inspection_policy":{"id":"523574"},"layout_provider":{"id":"523530"},"node_renderer":{"id":"523524"},"selection_policy":{"id":"523579"}},"id":"523521","type":"GraphRenderer"},{"attributes":{},"id":"523584","type":"UnionRenderers"},{"attributes":{},"id":"523498","type":"BasicTicker"},{"attributes":{"factors":["root","checkov","chart","helmResource","CVE","image"],"palette":["#3288bd","#66c2a5","#abdda4","#e6f598","#fee08b","#fdae61","#f46d43","#d53e4f"]},"id":"523551","type":"CategoricalColorMapper"},{"attributes":{},"id":"523487","type":"DataRange1d"},{"attributes":{},"id":"523566","type":"BasicTickFormatter"},{"attributes":{"formatter":{"id":"523566"},"major_label_policy":{"id":"523564"},"ticker":{"id":"523494"}},"id":"523493","type":"LinearAxis"},{"attributes":{"source":{"id":"523523"}},"id":"523525","type":"CDSView"},{"attributes":{},"id":"523491","type":"LinearScale"},{"attributes":{},"id":"523494","type":"BasicTicker"},{"attributes":{"data":{"end":["CKV_K8S_38","CKV_K8S_40","CKV_K8S_31","CKV_K8S_43","CKV_K8S_15","CKV_K8S_8","Deployment.default","CKV_K8S_40","CKV_K8S_31","CKV_K8S_43","CKV_K8S_15","CKV_K8S_8","docker.io/istio/proxyv2:1.10.3","CVE-2021-3711","CVE-2021-33910","CVE-2020-9794","CVE-2021-36222","CVE-2021-22946","CVE-2019-9513","CVE-2019-9511","CVE-2021-3712","CVE-2021-28359","CVE-2021-40528","CVE-2021-22947","CVE-2020-13844","CVE-2021-22925","CVE-2018-20217","CVE-2020-6096","CVE-2019-18276","CVE-2021-33560","CVE-2021-3326","CVE-2020-9991","CVE-2020-8037","CVE-2019-20838","CVE-2019-13050","CVE-2019-12098","CVE-2020-9849","CVE-2018-5710","CVE-2016-2781","CVE-2020-13529","CVE-2021-23336","CVE-2019-25013","CVE-2021-3426","CVE-2018-16868","CVE-2020-27618","CVE-2018-7169","CVE-2016-10739"],"start":["istio/ingress","istio/ingress","istio/ingress","istio/ingress","istio/ingress","istio/ingress","CKV_K8S_38","Deployment.default","Deployment.default","Deployment.default","Deployment.default","Deployment.default","Deployment.default","docker.io/istio/proxyv2:1.10.3","docker.io/istio/proxyv2:1.10.3","docker.io/istio/proxyv2:1.10.3","docker.io/istio/proxyv2:1.10.3","docker.io/istio/proxyv2:1.10.3","docker.io/istio/proxyv2:1.10.3","docker.io/istio/proxyv2:1.10.3","docker.io/istio/proxyv2:1.10.3","docker.io/istio/proxyv2:1.10.3","docker.io/istio/proxyv2:1.10.3","docker.io/istio/proxyv2:1.10.3","docker.io/istio/proxyv2:1.10.3","docker.io/istio/proxyv2:1.10.3","docker.io/istio/proxyv2:1.10.3","docker.io/istio/proxyv2:1.10.3","docker.io/istio/proxyv2:1.10.3","docker.io/istio/proxyv2:1.10.3","docker.io/istio/proxyv2:1.10.3","docker.io/istio/proxyv2:1.10.3","docker.io/istio/proxyv2:1.10.3","docker.io/istio/proxyv2:1.10.3","docker.io/istio/proxyv2:1.10.3","docker.io/istio/proxyv2:1.10.3","docker.io/istio/proxyv2:1.10.3","docker.io/istio/proxyv2:1.10.3","docker.io/istio/proxyv2:1.10.3","docker.io/istio/proxyv2:1.10.3","docker.io/istio/proxyv2:1.10.3","docker.io/istio/proxyv2:1.10.3","docker.io/istio/proxyv2:1.10.3","docker.io/istio/proxyv2:1.10.3","docker.io/istio/proxyv2:1.10.3","docker.io/istio/proxyv2:1.10.3","docker.io/istio/proxyv2:1.10.3"]},"selected":{"id":"523585"},"selection_policy":{"id":"523584"}},"id":"523527","type":"ColumnDataSource"},{"attributes":{"bottom_units":"screen","fill_alpha":0.5,"fill_color":"lightgrey","left_units":"screen","level":"overlay","line_alpha":1.0,"line_color":"black","line_dash":[4,4],"line_width":2,"right_units":"screen","syncable":false,"top_units":"screen"},"id":"523507","type":"BoxAnnotation"},{"attributes":{},"id":"523489","type":"LinearScale"},{"attributes":{"axis":{"id":"523497"},"dimension":1,"ticker":null},"id":"523500","type":"Grid"},{"attributes":{},"id":"523579","type":"NodesOnly"},{"attributes":{},"id":"523564","type":"AllLabels"},{"attributes":{},"id":"523526","type":"MultiLine"},{"attributes":{"data":{"cvssScore":[null,null,null,null,null,null,null,null,null,null,9.8,5.5,8.1,7.5,7.5,7.5,7.5,7.4,6.1,5.9,5.9,5.5,5.3,5.3,8.1,7.8,7.5,7.5,7.5,7.5,7.5,7.5,7.4,6.5,6.5,6.5,6.1,5.9,5.9,5.7,5.6,5.5,5.3,5.3],"description":["istio/ingress",null,"Ensure that Service Account Tokens are only mounted where necessary","Deployment.istio-ingressgateway.default (container 0) - istio-proxy","Containers should run as a high UID to avoid host conflict","Ensure that the seccomp profile is set to docker/default or runtime/default","Image should use digest","Image Pull Policy should be Always","Liveness Probe Should be Configured",null,"In order to decrypt SM2 encrypted data an application is expected to call the API function EVP_PKEY_decrypt().

View BlastRadius Graph

istio-operator

Bokeh Plot Bokeh.set_log_level("info"); {"3b51dd91-f473-4926-8088-569ec7927154":{"defs":[],"roots":{"references":[{"attributes":{},"id":"524142","type":"BasicTicker"},{"attributes":{"below":[{"id":"524141"}],"center":[{"id":"524144"},{"id":"524148"}],"height":768,"left":[{"id":"524145"}],"renderers":[{"id":"524169"},{"id":"524209"}],"title":{"id":"524131"},"toolbar":{"id":"524156"},"width":1024,"x_range":{"id":"524133"},"x_scale":{"id":"524137"},"y_range":{"id":"524135"},"y_scale":{"id":"524139"}},"id":"524130","subtype":"Figure","type":"Plot"},{"attributes":{"data":{"cvssScore":[null,null,null,null,null,null,null,null,null,null,null,null,null,null,9.8,5.5,8.1,7.5,7.5,7.5,7.5,7.4,6.1,5.9,5.9,5.5,5.3,5.3,8.1,7.8,7.5,7.5,7.5,7.5,7.5,7.5,7.4,6.5,6.5,6.5,6.1,5.9,5.9,5.7,5.6,5.5,5.3,5.3],"description":["istio/operator",null,"Minimize wildcard use in Roles and ClusterRoles","ClusterRole.istio-operator.default","Ensure that Service Account Tokens are only mounted where necessary","Deployment.istio-operator.istio-operator (container 0) - istio-operator","Containers should run as a high UID to avoid host conflict","Apply security context to your pods and containers","Ensure that the seccomp profile is set to docker/default or runtime/default","Image should use digest","Image Pull Policy should be Always","Liveness Probe Should be Configured","Readiness Probe Should be Configured"

View BlastRadius Graph

mesosphere-istio

CVE-2021-3711, CVE-2021-3449, CVE-2021-33910, CVE-2021-3520, CVE-2021-20305, CVE-2020-9794, CVE-2021-36222, CVE-2021-3580, CVE-2021-22946, CVE-2019-9513, CVE-2019-9511, CVE-2021-3712, CVE-2021-28359, CVE-2021-40528, CVE-2021-22947, CVE-2021-24031, CVE-2020-13844, CVE-2021-22925, CVE-2021-22876, CVE-2018-20217, CVE-2020-6096, CVE-2019-18276, CVE-2021-33560, CVE-2021-3326, CVE-2020-9991, CVE-2020-8037, CVE-2019-20838, CVE-2019-13050, CVE-2019-12098, CVE-2020-9849, CVE-2018-5710, CVE-2016-2781, CVE-2020-13529, CVE-2021-23336, CVE-2019-25013, CVE-2021-3426, CVE-2018-16869, CVE-2018-16868, CVE-2020-27618, CVE-2018-7169, CVE-2016-10739, CVE-2021-20232, CVE-2021-20231, CVE-2018-12886, CVE-2021-27212, CVE-2021-23840, CVE-2020-8286, CVE-2020-8285, CVE-2020-8231, CVE-2020-8169, CVE-2020-36230, CVE-2020-36229, CVE-2020-36228, CVE-2020-36227, CVE-2020-36226, CVE-2020-36225, CVE-2020-36224, CVE-2020-36223, CVE-2020-36222, CVE-2020-36221, CVE-2020-29363, CVE-2020-29361, CVE-2020-28196, CVE-2020-25710, CVE-2020-25709, CVE-2020-25692, CVE-2020-24659, CVE-2020-11080, CVE-2020-8177, CVE-2021-37750, CVE-2021-23841, CVE-2020-1971, CVE-2020-27350, CVE-2020-29362, CVE-2019-1551, CVE-2021-33574, CVE-2021-35942, CVE-2019-17543, CVE-2019-17498, CVE-2019-13115, CVE-2019-3844, CVE-2019-3843, CVE-2019-20454, CVE-2019-15847, CVE-2019-14855, CVE-2019-12290, CVE-2020-1752, CVE-2020-1751, CVE-2019-13627, CVE-2021-31879, CVE-2016-10228, CVE-2020-10029, CVE-2020-14155, CKV_K8S_38, CKV_K8S_40, CKV_K8S_29, CKV_K8S_23, CKV_K8S_31, CKV_K8S_43, CKV_K8S_30, CKV_K8S_22, CKV_K8S_28, CKV_K8S_20, CKV_K8S_12, CKV_K8S_37, CKV_K8S_15, CKV_K8S_10, CKV_K8S_11, CKV_K8S_13, CKV_K8S_49, CKV_K8S_8, CKV_K8S_9

October 00, 1011

Bokeh Plot Bokeh.set_log_level("info"); {"1ee4f074-53ca-4868-8256-c0890ba36d06":{"defs":[],"roots":{"references":[{"attributes":{},"id":"677500","type":"SaveTool"},{"attributes":{"axis":{"id":"677493"},"dimension":1,"ticker":null},"id":"677496","type":"Grid"},{"attributes":{"data_source":{"id":"677519"},"glyph":{"id":"677548"},"hover_glyph":null,"muted_glyph":null,"view":{"id":"677521"}},"id":"677520","type":"GlyphRenderer"},{"attributes":{},"id":"677490","type":"BasicTicker"},{"attributes":{"bottom_units":"screen","fill_alpha":0.5,"fill_color":"lightgrey","left_units":"screen","level":"overlay","line_alpha":1.0,"line_color":"black","line_dash":[4,4],"line_width":2,"right_units":"screen","syncable":false,"top_units":"screen"},"id":"677577","type":"BoxAnnotation"},{"attributes":{},"id":"677502","type":"HelpTool"},{"attributes":{"data_source":{"id":"677523"},"glyph":{"id":"677522"},"hover_glyph":null,"muted_glyph":null,"view":{"id":"677525"}},"id":"677524","type":"GlyphRenderer"},{"attributes":{"fill_color":{"field":"nodeType","transform":{"id":"677547"}},"size":{"value":20}},"id":"677548","type":"Circle"},{"attributes":{"below":[{"id":"677489"}],"center":[{"id":"677492"},{"id":"677496"}],"height":768,"left":[{"id":"677493"}],"renderers":[{"id":"677517"},{"id":"677557"}],"title":{"id":"677479"},"toolbar":{"id":"677504"},"width":1024,"x_range":{"id":"677481"},"x_scale":{"id":"677485"},"y_range":{"id":"677483"},"y_scale":{"id":"677487"}},"id":"677478","subtype":"Figure","type":"Plot"},{"attributes":{},"id":"677579","type":"Selection"},{"attributes":{"source":{"id":"677523"}},"id":"677525","type":"CDSView"},{"attributes":{"callback":null},"id":"677512","type":"TapTool"},{"attributes":{},"id":"677522","type":"MultiLine"},{"attributes":{"overlay":{"id":"677503"}},"id":"677499","type":"BoxZoomTool"},{"attributes":{"axis":{"id":"677489"},"ticker":null},"id":"677492","type":"Grid"},{"attributes":{"text":"mesosphere-istio"},"id":"677479","type":"Title"},{"attributes":{"data":{"cvssScore":[null,null,null,null,null,null,null,null,null,null,null,null,null,null,null,null,null,null,null,null,null,null,null,null,null,9.8,5.9,5.5,9.8,8.1,8.1,7.5,7.5,7.5,7.5,7.5,7.4,6.1,5.9,5.9,5.5,5.5,5.3,5.3,5.3,8.1,7.8,7.5,7.5,7.5,7.5,7.5,7.5,7.4,6.5,6.5,6.5,6.1,5.9,5.9,5.7,5.7,5.6,5.5,5.3,5.3,null,null,9.8,9.8,8.1,7.5,7.5,7.5,7.5,7.5,7.5,7.5,7.5,7.5,7.5,7.5,7.5,7.5,7.5,7.5,7.5,7.5,7.5,7.5,7.5,7.5,7.5,7.5,7.5,7.1,6.5,5.9,5.9,5.7,5.3,5.3,9.8,9.1,8.1,8.1,8.1,7.8,7.8,7.5,7.5,7.5,7.5,7,7,6.3,6.1,5.9,5.5,5.3,null],"description":["mesosphere/istio",null,"Ensure that Service Account Tokens are only mounted where necessary","Job.istio-crd-1.9.1-jxxyb.default (container 0) - istio-crd","Containers should run as a high UID to avoid host conflict","Apply security context to your pods and containers","Minimize the admission of root containers","Ensure that the seccomp profile is set to docker/default or runtime/default","Image should use digest","Apply security context to your pods and containers","Use read-only filesystem for containers where possible"

View BlastRadius Graph

metakube-istio-operator

Bokeh Plot Bokeh.set_log_level("info"); {"f4b5663e-5383-4842-b9c4-d36f30d2c01c":{"defs":[],"roots":{"references":[{"attributes":{"text":"metakube-istio-operator"},"id":"682987","type":"Title"},{"attributes":{"callback":null},"id":"683020","type":"TapTool"},{"attributes":{"axis":{"id":"683001"},"dimension":1,"ticker":null},"id":"683004","type":"Grid"},{"attributes":{"fill_color":{"field":"nodeType","transform":{"id":"683055"}},"size":{"value":20}},"id":"683056","type":"Circle"},{"attributes":{},"id":"683005","type":"PanTool"},{"attributes":{},"id":"683078","type":"NodesOnly"},{"attributes":{"bottom_units":"screen","fill_alpha":0.5,"fill_color":"lightgrey","left_units":"screen","level":"overlay","line_alpha":1.0,"line_color":"black","line_dash":[4,4],"line_width":2,"right_units":"screen","syncable":false,"top_units":"screen"},"id":"683085","type":"BoxAnnotation"},{"attributes":{"below":[{"id":"682997"}],"center":[{"id":"683000"},{"id":"683004"}],"height":768,"left":[{"id":"683001"}],"renderers":[{"id":"683025"},{"id":"683065"}],"title":{"id":"682987"},"toolbar":{"id":"683012"},"width":1024,"x_range":{"id":"682989"},"x_scale":{"id":"682993"},"y_range":{"id":"682991"},"y_scale":{"id":"682995"}},"id":"682986","subtype":"Figure","type":"Plot"},{"attributes":{"data_source":{"id":"683027"},"glyph":{"id":"683056"},"hover_glyph":null,"muted_glyph":null,"view":{"id":"683029"}},"id":"683028","type":"GlyphRenderer"},{"attributes":{},"id":"683088","type":"UnionRenderers"},{"attributes":{"data":{"end":["CKV_K8S_49","CKV_K8S_38","CKV_K8S_40","CKV_K8S_29","CKV_K8S_31","CKV_K8S_43","CKV_K8S_15","CKV_K8S_8","CKV_K8S_9","ClusterRole.default","Deployment.default","CKV_K8S_40","CKV_K8S_29","CKV_K8S_31","CKV_K8S_43","CKV_K8S_15","CKV_K8S_8","CKV_K8S_9","docker.io/istio/operator:1.11.2","CVE-2020-9794","CVE-2021-36222","CVE-2021-22946","CVE-2021-40528","CVE-2021-22947","CVE-2020-6096","CVE-2019-18276","CVE-2021-33560","CVE-2021-3326","CVE-2020-9991","CVE-2020-8037","CVE-2019-20838","CVE-2020-9849","CVE-2016-2781","CVE-2019-25013","CVE-2020-27618"],"start":["metakube/istio-operator","metakube/istio-operator","metakube/istio-operator","metakube/istio-operator","metakube/istio-operator","metakube/istio-operator","metakube/istio-operator","metakube/istio-operator","metakube/istio-operator","CKV_K8S_49","CKV_K8S_38","Deployment.default","Deployment.default","Deployment.default","Deployment.default","Deployment.default","Deployment.default","Deployment.default","Deployment.default","docker.io/istio/operator:1.11.2","docker.io/istio/operator:1.11.2","docker.io/istio/operator:1.11.2","docker.io/istio/operator:1.11.2","docker.io/istio/operator:1.11.2","docker.io/istio/operator:1.11.2","docker.io/istio/operator:1.11.2","docker.io/istio/operator:1.11.2","docker.io/istio/operator:1.11.2","docker.io/istio/operator:1.11.2","docker.io/istio/operator:1.11.2","docker.io/istio/operator:1.11.2","docker.io/istio/operator:1.11.2","docker.io/istio/operator:1.11.2","docker.io/istio/operator:1.11.2","docker.io/istio/operator:1.11.2"]},"selected":{"id":"683089"},"selection_policy":{"id":"683088"}},"id":"683031","type":"ColumnDataSource"},{"attributes":{"graph_layout":{"CKV_K8S_15":[-0.12027657065011642,-0.17964150880163607],"CKV_K8S_29":[0.018161950807004903,-0.17835041469016252],"CKV_K8S_31":[-0.10821981918558155,-0.23704010889479085],"CKV_K8S_38":[-0.09024021736420165,-0.147214620533797],"CKV_K8S_40":[0.03967147319214294,-0.22265997150474193],"CKV_K8S_43":[-0.05007779867147348,-0.26594980034642235],"CKV_K8S_49":[-0.22003036079947633,-0.2068179385412529],"CKV_K8S_8":[-0.005263688276025061,-0.22237207497550432],"CKV_K8S_9":[-8.406203119319245e-06,-0.2629890799831211],"CVE-2016-2781":[-0.07818098894376237,0.12601441393447124],"CVE-2019-18276":[0.16622778501814248,0.22298056604948321],"CVE-2019-20838":[0.0870837824786624,0.07533906751330526],"CVE-2019-25013":[0.046170528022243425,0.3104219810361136],"CVE-2020-27618":[0.15314606103790313,0.10332034417297258],"CVE-2020-6096":[-0.10148463978153084,0.20815879661890538],"CVE-2020-8037":[0.11734708286298313,0.14912987049204185],"CVE-2020-9794":[-0.018414606806321284,0.24824232714317462],"CVE-2020-9849":[0.174459222504574,0.16842530658482982],"CVE-2020-9991":[-0.07104597481189069,0.2643157969927524],"CVE-2021-22946":[-0.0064743422200041235,0.08669575925523827],"CVE-2021-22947":[0.10652766157315353,0.2950527096367644],"CVE-2021-3326":[-0.01304926594980223,0.30385133168860956],"CVE-2021-33560":[-0.05801116338576056,0.18012379828625066],"CVE-2021-36222":[0.05671952315010864,0.2530602376717182],"CVE-2021-40528":[0.12528706476303655,0.24671265690999838],"ClusterRole.default":[-0.3048962311420024,-0.13624856263925839],"Deployment.default":[-0.021295421568077115,-0.12533344180724446],"deps":[0.21248884559373238,-0.9999999999999999],"docker.io/istio/operator:1.11.2":[0.034579102922482015,0.16427511420988383],"metakube/istio-operator":[-0.07090058816702378,-0.22150255547858091]}},"id":"683034","type":"StaticLayoutProvider"},{"attributes":{},"id":"683006","type":"WheelZoomTool"},{"attributes":{},"id":"683089","type":"Selection"},{"attributes":{"data":{"cvssScore":[null,null,null,null,null,null,null,null,null,null,null,null,null,null,8.1,7.5,7.5,5.9,5.9,8.1,7.8,7.5,7.5,7.5,7.5,7.5,6.5,6.5,5.9,5.5],"description":["metakube/istio-operator",null,"Minimize wildcard use in Roles and ClusterRoles","ClusterRole.istio-operator.default","Ensure that Service Account Tokens are only mounted where necessary","Deployment.istio-operator.istio-operator (container 0) - istio-operator","Containers should run as a high UID to avoid host conflict","Apply security context to your pods and containers","Ensure that the seccomp profile is set to docker/default or runtime/default","Image should use digest","Image Pull Policy should be Always","Liveness Probe Should be Configured","Readiness Probe Should be Configured"

View BlastRadius Graph

openinfradev-istio-operator

Bokeh Plot Bokeh.set_log_level("info"); {"b85829bd-293b-416d-a19f-a6394695c8d9":{"defs":[],"roots":{"references":[{"attributes":{},"id":"789749","type":"ResetTool"},{"attributes":{},"id":"789813","type":"BasicTickFormatter"},{"attributes":{"overlay":{"id":"789825"}},"id":"789761","type":"BoxSelectTool"},{"attributes":{},"id":"789810","type":"BasicTickFormatter"},{"attributes":{"below":[{"id":"789737"}],"center":[{"id":"789740"},{"id":"789744"}],"height":768,"left":[{"id":"789741"}],"renderers":[{"id":"789765"},{"id":"789805"}],"title":{"id":"789727"},"toolbar":{"id":"789752"},"width":1024,"x_range":{"id":"789729"},"x_scale":{"id":"789733"},"y_range":{"id":"789731"},"y_scale":{"id":"789735"}},"id":"789726","subtype":"Figure","type":"Plot"},{"attributes":{},"id":"789823","type":"NodesOnly"},{"attributes":{"data_source":{"id":"789771"},"glyph":{"id":"789770"},"hover_glyph":null,"muted_glyph":null,"view":{"id":"789773"}},"id":"789772","type":"GlyphRenderer"},{"attributes":{},"id":"789828","type":"UnionRenderers"},{"attributes":{},"id":"789748","type":"SaveTool"},{"attributes":{},"id":"789729","type":"DataRange1d"},{"attributes":{"fill_color":{"field":"nodeType","transform":{"id":"789795"}},"size":{"value":20}},"id":"789796","type":"Circle"},{"attributes":{},"id":"789735","type":"LinearScale"},{"attributes":{},"id":"789742","type":"BasicTicker"},{"attributes":{"formatter":{"id":"789810"},"major_label_policy":{"id":"789808"},"ticker":{"id":"789738"}},"id":"789737","type":"LinearAxis"},{"attributes":{"background_fill_color":{"value":"white"},"source":{"id":"789767"},"text":{"field":"name"},"x":{"field":"x"},"y":{"field":"y"}},"id":"789805","type":"LabelSet"},{"attributes":{"source":{"id":"789771"}},"id":"789773","type":"CDSView"},{"attributes":{"bottom_units":"screen","fill_alpha":0.5,"fill_color":"lightgrey","left_units":"screen","level":"overlay","line_alpha":1.0,"line_color":"black","line_dash":[4,4],"line_width":2,"right_units":"screen","syncable":false,"top_units":"screen"},"id":"789751","type":"BoxAnnotation"},{"attributes":{},"id":"789811","type":"AllLabels"},{"attributes":{},"id":"789829","type":"Selection"},{"attributes":{"data":{"end":["CKV_K8S_49","CKV_K8S_38","CKV_K8S_40","CKV_K8S_29","CKV_K8S_31","CKV_K8S_43","CKV_K8S_15","CKV_K8S_14","CKV_K8S_8","CKV_K8S_9","ClusterRole.default","Deployment.default","CKV_K8S_40","CKV_K8S_29","CKV_K8S_31","CKV_K8S_43","CKV_K8S_15","CKV_K8S_14","CKV_K8S_8","CKV_K8S_9","gcr.io/istio-testing/operator:latest","CVE-2020-9794","CVE-2021-36222","CVE-2021-22946","CVE-2021-40528","CVE-2021-22947","CVE-2020-6096","CVE-2019-18276","CVE-2021-33560","CVE-2021-3326","CVE-2020-9991","CVE-2020-8037","CVE-2019-20838","CVE-2020-9849","CVE-2016-2781","CVE-2019-25013","CVE-2020-27618"],"start":["openinfradev/istio-operator","openinfradev/istio-operator","openinfradev/istio-operator","openinfradev/istio-operator","openinfradev/istio-operator","openinfradev/istio-operator","openinfradev/istio-operator","openinfradev/istio-operator","openinfradev/istio-operator","openinfradev/istio-operator","CKV_K8S_49","CKV_K8S_38","Deployment.default","Deployment.default","Deployment.default","Deployment.default","Deployment.default","Deployment.default","Deployment.default","Deployment.default","Deployment.default","gcr.io/istio-testing/operator:latest","gcr.io/istio-testing/operator:latest","gcr.io/istio-testing/operator:latest","gcr.io/istio-testing/operator:latest","gcr.io/istio-testing/operator:latest","gcr.io/istio-testing/operator:latest","gcr.io/istio-testing/operator:latest","gcr.io/istio-testing/operator:latest","gcr.io/istio-testing/operator:latest","gcr.io/istio-testing/operator:latest","gcr.io/istio-testing/operator:latest","gcr.io/istio-testing/operator:latest","gcr.io/istio-testing/operator:latest","gcr.io/istio-testing/operator:latest","gcr.io/istio-testing/operator:latest","gcr.io/istio-testing/operator:latest"]},"selected":{"id":"789829"},"selection_policy":{"id":"789828"}},"id":"789771","type":"ColumnDataSource"},{"attributes":{"source":{"id":"789767"}},"id":"789769","type":"CDSView"},{"attributes":{"text":"openinfradev-istio-operator"},"id":"789727","type":"Title"},{"attributes":{"active_multi":null,"tools":[{"id":"789745"},{"id":"789746"},{"id":"789747"},{"id":"789748"},{"id":"789749"},{"id":"789750"},{"id":"789759"},{"id":"789760"},{"id":"789761"}]},"id":"789752","type":"Toolbar"},{"attributes":{"callback":null},"id":"789760","type":"TapTool"},{"attributes":{},"id":"789733","type":"LinearScale"},{"attributes":{},"id":"789808","type":"AllLabels"},{"attributes":{"data":{"cvssScore":[null,null,null,null,null,null,null,null,null,null,null,null,null,null,null,8.1,7.5,7.5,5.9,5.9,8.1,7.8,7.5,7.5,7.5,7.5,7.5,6.5,6.5,5.9,5.5],"description":["openinfradev/istio-operator",null,"Minimize wildcard use in Roles and ClusterRoles","ClusterRole.istio-operator.default","Ensure that Service Account Tokens are only mounted where necessary","Deployment.istio-operator.istio-operator (container 0) - istio-operator","Containers should run as a high UID to avoid host conflict","Apply security context to your pods and containers","Ensure that the seccomp profile is set to docker/default or runtime/default","Image should use digest","Image Pull Policy should be Always","Image Tag should be fixed - not latest or blank"

View BlastRadius Graph

particuleio-istio-operator

Bokeh Plot Bokeh.set_log_level("info"); {"5523b596-d5b8-4afd-ac81-0f3879458d3e":{"defs":[],"roots":{"references":[{"attributes":{"overlay":{"id":"825513"}},"id":"825449","type":"BoxSelectTool"},{"attributes":{},"id":"825438","type":"HelpTool"},{"attributes":{"fill_color":{"field":"nodeType","transform":{"id":"825483"}},"size":{"value":20}},"id":"825484","type":"Circle"},{"attributes":{},"id":"825434","type":"WheelZoomTool"},{"attributes":{"data":{"end":["CKV_K8S_49","CKV_K8S_38","CKV_K8S_40","CKV_K8S_29","CKV_K8S_31","CKV_K8S_43","CKV_K8S_15","CKV_K8S_14","CKV_K8S_8","CKV_K8S_9","ClusterRole.default","Deployment.default","CKV_K8S_40","CKV_K8S_29","CKV_K8S_31","CKV_K8S_43","CKV_K8S_15","CKV_K8S_14","CKV_K8S_8","CKV_K8S_9","gcr.io/istio-testing/operator:latest","CVE-2020-9794","CVE-2021-36222","CVE-2021-22946","CVE-2021-40528","CVE-2021-22947","CVE-2020-6096","CVE-2019-18276","CVE-2021-33560","CVE-2021-3326","CVE-2020-9991","CVE-2020-8037","CVE-2019-20838","CVE-2020-9849","CVE-2016-2781","CVE-2019-25013","CVE-2020-27618"],"start":["particuleio/istio-operator","particuleio/istio-operator","particuleio/istio-operator","particuleio/istio-operator","particuleio/istio-operator","particuleio/istio-operator","particuleio/istio-operator","particuleio/istio-operator","particuleio/istio-operator","particuleio/istio-operator","CKV_K8S_49","CKV_K8S_38","Deployment.default","Deployment.default","Deployment.default","Deployment.default","Deployment.default","Deployment.default","Deployment.default","Deployment.default","Deployment.default","gcr.io/istio-testing/operator:latest","gcr.io/istio-testing/operator:latest","gcr.io/istio-testing/operator:latest","gcr.io/istio-testing/operator:latest","gcr.io/istio-testing/operator:latest","gcr.io/istio-testing/operator:latest","gcr.io/istio-testing/operator:latest","gcr.io/istio-testing/operator:latest","gcr.io/istio-testing/operator:latest","gcr.io/istio-testing/operator:latest","gcr.io/istio-testing/operator:latest","gcr.io/istio-testing/operator:latest","gcr.io/istio-testing/operator:latest","gcr.io/istio-testing/operator:latest","gcr.io/istio-testing/operator:latest","gcr.io/istio-testing/operator:latest"]},"selected":{"id":"825517"},"selection_policy":{"id":"825516"}},"id":"825459","type":"ColumnDataSource"},{"attributes":{"axis":{"id":"825429"},"dimension":1,"ticker":null},"id":"825432","type":"Grid"},{"attributes":{},"id":"825423","type":"LinearScale"},{"attributes":{"formatter":{"id":"825498"},"major_label_policy":{"id":"825496"},"ticker":{"id":"825426"}},"id":"825425","type":"LinearAxis"},{"attributes":{"factors":["root","checkov","chart","helmResource","CVE","image"],"palette":["#3288bd","#66c2a5","#abdda4","#e6f598","#fee08b","#fdae61","#f46d43","#d53e4f"]},"id":"825483","type":"CategoricalColorMapper"},{"attributes":{"below":[{"id":"825425"}],"center":[{"id":"825428"},{"id":"825432"}],"height":768,"left":[{"id":"825429"}],"renderers":[{"id":"825453"},{"id":"825493"}],"title":{"id":"825415"},"toolbar":{"id":"825440"},"width":1024,"x_range":{"id":"825417"},"x_scale":{"id":"825421"},"y_range":{"id":"825419"},"y_scale":{"id":"825423"}},"id":"825414","subtype":"Figure","type":"Plot"},{"attributes":{},"id":"825501","type":"BasicTickFormatter"},{"attributes":{"active_multi":null,"tools":[{"id":"825433"},{"id":"825434"},{"id":"825435"},{"id":"825436"},{"id":"825437"},{"id":"825438"},{"id":"825447"},{"id":"825448"},{"id":"825449"}]},"id":"825440","type":"Toolbar"},{"attributes":{"edge_renderer":{"id":"825460"},"inspection_policy":{"id":"825506"},"layout_provider":{"id":"825462"},"node_renderer":{"id":"825456"},"selection_policy":{"id":"825511"}},"id":"825453","type":"GraphRenderer"},{"attributes":{},"id":"825498","type":"BasicTickFormatter"},{"attributes":{"graph_layout":{"CKV_K8S_14":[0.01295887449549938,0.202735139652125],"CKV_K8S_15":[0.17269830609019093,0.15433465630356127],"CKV_K8S_29":[0.06896393000704604,0.25661085747114976],"CKV_K8S_31":[0.07278188681826216,0.2001108540839179],"CKV_K8S_38":[-0.0030387663104149507,0.24674467108789735],"CKV_K8S_40":[0.124913450166231,0.17118088162831332],"CKV_K8S_43":[0.19000675467218991,0.20144358314902522],"CKV_K8S_49":[0.20187487941151896,0.4367294915495883],"CKV_K8S_8":[0.15445517554121302,0.23225713027011566],"CKV_K8S_9":[0.030256469610724576,0.283327545126517],"CVE-2016-2781":[0.038794286788907964,-0.15304586307787382],"CVE-2019-18276":[-0.1866506530956875,-0.15564347920697819],"CVE-2019-20838":[-0.1675766440730625,-0.3236694788489768],"CVE-2019-25013":[0.030432725539480242,-0.2607135094320352],"CVE-2020-27618":[-0.1395472051921588,-0.11624086957978477],"CVE-2020-6096":[-0.12575125398615097,-0.36114598163314976],"CVE-2020-8037":[0.09067774625622363,-0.21341056905823255],"CVE-2020-9794":[-0.1508214512610121,-0.24121987526709468],"CVE-2020-9849":[-0.21652807834130397,-0.20997143763006113],"CVE-2020-9991":[-0.06948144392878045,-0.3118341285126485],"CVE-2021-22946":[-0.06569171611562045,-0.38236724119540694],"CVE-2021-22947":[-0.061354625192863964,-0.11215517969756446],"CVE-2021-3326":[-0.2071347146359521,-0.2778805960427417],"CVE-2021-33560":[0.04371916708740962,-0.34123489173727245],"CVE-2021-36222":[0.08679453791220619,-0.2911232006122894],"CVE-2021-40528":[-0.00874087922662012,-0.3628652453760539],"ClusterRole.default":[0.2622467056316665,0.5499849558689105],"Deployment.default":[0.05590584795260902,0.11742982065615366],"deps":[-0.2985452427316981,1.0],"gcr.io/istio-testing/operator:latest":[-0.05465042815385492,-0.2122346808127381],"particuleio/istio-operator":[0.11803235826380097,0.27386664087362816]}},"id":"825462","type":"StaticLayoutProvider"},{"attributes":{"bottom_units":"screen","fill_alpha":0.5,"fill_color":"lightgrey","left_units":"screen","level":"overlay","line_alpha":1.0,"line_color":"black","line_dash":[4,4],"line_width":2,"right_units":"screen","syncable":false,"top_units":"screen"},"id":"825439","type":"BoxAnnotation"},{"attributes":{},"id":"825515","type":"Selection"},{"attributes":{},"id":"825499","type":"AllLabels"},{"attributes":{"source":{"id":"825455"}},"id":"825457","type":"CDSView"},{"attributes":{"bottom_units":"screen","fill_alpha":0.5,"fill_color":"lightgrey","left_units":"screen","level":"overlay","line_alpha":1.0,"line_color":"black","line_dash":[4,4],"line_width":2,"right_units":"screen","syncable":false,"top_units":"screen"},"id":"825513","type":"BoxAnnotation"},{"attributes":{},"id":"825516","type":"UnionRenderers"},{"attributes":{"data":{"cvssScore":[null,null,null,null,null,null,null,null,null,null,null,null,null,null,null,8.1,7.5,7.5,5.9,5.9,8.1,7.8,7.5,7.5,7.5,7.5,7.5,6.5,6.5,5.9,5.5],"description":["particuleio/istio-operator",null,"Minimize wildcard use in Roles and ClusterRoles","ClusterRole.istio-operator.default","Ensure that Service Account Tokens are only mounted where necessary","Deployment.istio-operator.istio-operator (container 0) - istio-operator","Containers should run as a high UID to avoid host conflict","Apply security context to your pods and containers","Ensure that the seccomp profile is set to docker/default or runtime/default","Image should use digest","Image Pull Policy should be Always","Image Tag should be fixed - not latest or blank"

View BlastRadius Graph

wiremind-istio-operator

Bokeh Plot Bokeh.set_log_level("info"); {"bc4b7bb7-a444-4858-acdb-16be91491ab7":{"defs":[],"roots":{"references":[{"attributes":{},"id":"1131662","type":"WheelZoomTool"},{"attributes":{},"id":"1131649","type":"LinearScale"},{"attributes":{"text":"wiremind-istio-operator"},"id":"1131643","type":"Title"},{"attributes":{"formatter":{"id":"1131726"},"major_label_policy":{"id":"1131724"},"ticker":{"id":"1131654"}},"id":"1131653","type":"LinearAxis"},{"attributes":{},"id":"1131666","type":"HelpTool"},{"attributes":{},"id":"1131658","type":"BasicTicker"},{"attributes":{"fill_color":{"field":"nodeType","transform":{"id":"1131711"}},"size":{"value":20}},"id":"1131712","type":"Circle"},{"attributes":{"data":{"end":["CKV_K8S_49","CKV_K8S_38","CKV_K8S_40","CKV_K8S_29","CKV_K8S_31","CKV_K8S_43","CKV_K8S_15","CKV_K8S_8","CKV_K8S_9","ClusterRole.default","Deployment.default","CKV_K8S_40","CKV_K8S_29","CKV_K8S_31","CKV_K8S_43","CKV_K8S_15","CKV_K8S_8","CKV_K8S_9","docker.io/istio/operator:1.9.5","CVE-2021-3711","CVE-2021-33910","CVE-2021-3520","CVE-2020-9794","CVE-2021-36222","CVE-2021-3580","CVE-2021-22946","CVE-2019-9513","CVE-2019-9511","CVE-2021-3712","CVE-2021-28359","CVE-2021-40528","CVE-2021-22947","CVE-2020-13844","CVE-2021-22925","CVE-2018-20217","CVE-2020-6096","CVE-2019-18276","CVE-2021-33560","CVE-2021-3326","CVE-2020-9991","CVE-2020-8037","CVE-2019-20838","CVE-2019-13050","CVE-2019-12098","CVE-2020-9849","CVE-2018-5710","CVE-2016-2781","CVE-2020-13529","CVE-2021-23336","CVE-2019-25013","CVE-2021-3426","CVE-2018-16869","CVE-2018-16868","CVE-2020-27618","CVE-2018-7169","CVE-2016-10739"],"start":["wiremind/istio-operator","wiremind/istio-operator","wiremind/istio-operator","wiremind/istio-operator","wiremind/istio-operator","wiremind/istio-operator","wiremind/istio-operator","wiremind/istio-operator","wiremind/istio-operator","CKV_K8S_49","CKV_K8S_38","Deployment.default","Deployment.default","Deployment.default","Deployment.default","Deployment.default","Deployment.default","Deployment.default","Deployment.default","docker.io/istio/operator:1.9.5","docker.io/istio/operator:1.9.5","docker.io/istio/operator:1.9.5","docker.io/istio/operator:1.9.5","docker.io/istio/operator:1.9.5","docker.io/istio/operator:1.9.5","docker.io/istio/operator:1.9.5","docker.io/istio/operator:1.9.5","docker.io/istio/operator:1.9.5","docker.io/istio/operator:1.9.5","docker.io/istio/operator:1.9.5","docker.io/istio/operator:1.9.5","docker.io/istio/operator:1.9.5","docker.io/istio/operator:1.9.5","docker.io/istio/operator:1.9.5","docker.io/istio/operator:1.9.5","docker.io/istio/operator:1.9.5","docker.io/istio/operator:1.9.5","docker.io/istio/operator:1.9.5","docker.io/istio/operator:1.9.5","docker.io/istio/operator:1.9.5","docker.io/istio/operator:1.9.5","docker.io/istio/operator:1.9.5","docker.io/istio/operator:1.9.5","docker.io/istio/operator:1.9.5","docker.io/istio/operator:1.9.5","docker.io/istio/operator:1.9.5","docker.io/istio/operator:1.9.5","docker.io/istio/operator:1.9.5","docker.io/istio/operator:1.9.5","docker.io/istio/operator:1.9.5","docker.io/istio/operator:1.9.5","docker.io/istio/operator:1.9.5","docker.io/istio/operator:1.9.5","docker.io/istio/operator:1.9.5","docker.io/istio/operator:1.9.5","docker.io/istio/operator:1.9.5"]},"selected":{"id":"1131745"},"selection_policy":{"id":"1131744"}},"id":"1131687","type":"ColumnDataSource"},{"attributes":{},"id":"1131654","type":"BasicTicker"},{"attributes":{"source":{"id":"1131687"}},"id":"1131689","type":"CDSView"},{"attributes":{"bottom_units":"screen","fill_alpha":0.5,"fill_color":"lightgrey","left_units":"screen","level":"overlay","line_alpha":1.0,"line_color":"black","line_dash":[4,4],"line_width":2,"right_units":"screen","syncable":false,"top_units":"screen"},"id":"1131741","type":"BoxAnnotation"},{"attributes":{"overlay":{"id":"1131741"}},"id":"1131677","type":"BoxSelectTool"},{"attributes":{"data":{"cvssScore":[null,null,null,null,null,null,null,null,null,null,null,null,null,null,9.8,5.5,9.8,8.1,7.5,7.5,7.5,7.5,7.5,7.4,6.1,5.9,5.9,5.5,5.3,5.3,8.1,7.8,7.5,7.5,7.5,7.5,7.5,7.5,7.4,6.5,6.5,6.5,6.1,5.9,5.9,5.7,5.7,5.6,5.5,5.3,5.3],"description":["wiremind/istio-operator",null,"Minimize wildcard use in Roles and ClusterRoles","ClusterRole.istio-operator.default","Ensure that Service Account Tokens are only mounted where necessary","Deployment.istio-operator.istio-operator (container 0) - istio-operator","Containers should run as a high UID to avoid host conflict","Apply security context to your pods and containers","Ensure that the seccomp profile is set to docker/default or runtime/default","Image should use digest","Image Pull Policy should be Always","Liveness Probe Should be Configured","Readiness Probe Should be Configured"

View BlastRadius Graph