Overview

FieldValue
ID1009
NameUpdate/Patch pods in a namespace
Risk CategoryElevation of Privilege
Risk LevelHigh
Role TypeRole
API Groupscore
Resourcespods
Verbsupdate, patch
TagsPotentialPrivilegeEscalation Tampering WorkloadExecution

Description

Allows modifying existing pods within a specific namespace. This can be used to escalate privileges by changing a pod’s configuration to run with higher permissions, execute arbitrary code, or tamper with application behavior within that namespace.