Skip to content

weibaohui/k8m

v0.26.16 Security

This release includes 1 security fix for security teams reviewing exposed deployments.

Published 3mo MCP Developer Tools
✓ No known CVEs patched
Read the diff → Tool health → What is this tool? →
This release patches 1 known CVE

Topics

2fa ai apigateway chatgpt web kubernetes
+5 more
k8s-gpt mcp ollama openai openkruise

Affected surfaces

auth

Summary

AI summary

Added Kubeconfig export plugin and management page, plus paging for plugin list API.

Full changelog

新功能

  • Kubeconfig 导出插件: 新增 kubeconfig_export 插件,支持为集群生成和导出 kubeconfig 文件,支持按命名空间和角色限制导出范围
  • Kubeconfig 管理页面: 新增管理界面,提供模板列表查看与下载功能

优化改进

  • 插件列表分页: /admin/plugin/list API 新增分页支持,优化大量插件时的浏览体验

Bug 修复

  • 修复插件定时任务执行时 spec 参数传递问题
  • 添加文件名清理函数,防止响应头注入攻击

Security Fixes

  • Added file name sanitization function to prevent response header injection attacks.

Weekly OSS security release digest.

The CVE patches and breaking changes that affected production tools this week. One email, every Sunday.

No spam, unsubscribe anytime.

Share this release

Track weibaohui/k8m

Get notified when new releases ship.

Sign up free

About weibaohui/k8m

Provides MCP multi-cluster Kubernetes management and operations, featuring a management interface, logging, and nearly 50 built-in tools covering common DevOps and development scenarios. Supports both standard and CRD resources.

All releases →

Beta — feedback welcome: [email protected]