CVE-2020-8563: exploitation status and patch state
CVE-2020-8563 · CVSS 4.7 MEDIUM · EPSS 1%
In Kubernetes clusters using VSphere as a cloud provider, with a logging level set to 4 or above, VSphere cloud credentials will be leaked in the cloud controller manager's log. This affects < v1.19.3.
Is CVE-2020-8563 exploited?
Not in the CISA KEV catalog.
EPSS puts exploitation in the next 30 days at 1%.
Public exploit code: none found in monitored sources.