HIGH8.3npm
GHSA-4xqg-gf5c-ghwq· CVE-2026-39884MCP Server Kubernetes has an Argument Injection in port_forward tool via space-splitting
Modified: 4/15/2026
package
pkg:npm/mcp-server-kubernetes
MCP Server Kubernetes has an Argument Injection in port_forward tool via space-splitting
Modified: 4/15/2026
MCP Server Kubernetes: kubectl-generic flag injection enables Kubernetes bearer token exfiltration
Modified: 6/12/2026
MCP Server Kubernetes: Tool Access Control Bypass via Presentation-Layer Filtering Without Execution-Layer Enforcement
Modified: 6/12/2026
MCP Server Kubernetes vulnerable to command injection in several tools
Modified: 2/4/2026
mcp-server-kubernetes has potential security issue in exec_in_pod tool
Modified: 12/5/2025