Kyverno Tag

Critical Kyverno Vulnerability — CVE-2026-54523

Critical Kyverno Vulnerability — CVE-2026-54523 On July 13, 2026, a critical vulnerability was disclosed in Kyverno, the Kubernetes-native policy engine used broadly across the cloud native ecosystem for policy-as-code enforcement. The vulnerability, tracked as CVE-2026-54523 (GHSA-79gf-7frw-68m9), allows a tenant with permission to create a NamespacedMutatingPolicy…

0
Screenshot

Kyverno vs Kubernetes Policies: How Kyverno Complements and Completes Kubernetes Policy Types

Do You Still Need Kyverno with the new Kubernetes Policy Types? With the addition of ValidatingAdmissionPolicy and MutatingAdmissionPolicy in Kubernetes, do you still need Kyverno? TL;DR: Yes, you still need Kyverno for applying policies on existing resources, complex logic, reporting, testing, and off-cluster / shift-left…

0
CNCF Livestream

Optimizing Your Kubernetes Environment with Policy as Code: A Recap of the CNCF Live Session

Recently, CNCF’s Cloud Native Live hosted an insightful session titled “Optimizing Cost, Performance, And Security In K8s With Policy-As-Code” featuring Anusha Hegde, Senior Product Manager, and Sachin Agarwal, Senior Solutions Architect, both from Nirmata. The session dove deep into the challenges of managing resources in…

0