Overly Broad RBAC Permissions
Granting impersonate verb on users, groups, or serviceaccounts resources without understanding privilege escalation risks.
Authorization bypass could let attackers escalate privileges by acting as other users, including admins, enabling unauthorized cluster operations and access to sensitive resources.
Granting impersonate verb on users, groups, or serviceaccounts resources without understanding privilege escalation risks.
Sourcery automatically identifies authorization bypass due to impersonate permissions on serviceaccounts or nodes in kubernetes and many other security issues in your codebase.