arfianz/kubernetes-microservices-yoloo

Security Misconfiguration: Docker Socket Mounting

Opened this issue · 0 comments

Dear Colleague,

We are looking to find ways to help developers find security misconfigurations, i.e., Kubernetes manifest configurations that violate security best practices for Kubernetes manifests.

We have noticed an instance of Docker Socket Mounting in one of your Kubernetes manifests.

Location of security misconfiguration:

Location:

mountPath: /var/run/docker.sock

Please remove this misconfiguration. We would like to hear if you agree to fix this misconfiguration or have fixed the misconfiguration