Critical Chaos Mesh Vulnerabilities Allow Hackers to Hijack Entire Kubernetes Clusters with Minimal Access
Critical vulnerabilities dubbed "Chaotic Deputy" have been discovered in Chaos Mesh, a popular Kubernetes chaos engineering platform, that could enable complete cluster takeover. The flaws include an unauthenticated GraphQL server (CVE-2025-59358) and three command injection vulnerabilitie...
