Read pod logs cluster-wide
Information Disclosure
High
Overview
| Field | Value |
|---|---|
| ID | 1018 |
| Name | Read pod logs cluster-wide |
| Risk Category | Information Disclosure |
| Risk Level | High |
| Role Type | ClusterRole |
| API Groups | core |
| Resources | pods/log |
| Verbs | get |
| Tags | ClusterWideLogAccess DataExposure InformationDisclosure |
Description
Allows accessing logs from any pod across all namespaces in the cluster. This can lead to information disclosure if logs contain sensitive data, credentials, or operational details that could be exploited.