charts icon indicating copy to clipboard operation
charts copied to clipboard

Bug: Unnecessary permissions

Open Yseona opened this issue 8 months ago • 0 comments

Hi community!

I just found that the Daemonsets kured in the charts has patch verbs of the daemonsets resource and delete verb of the pods resource (clusterrole.yaml) and role.yaml). However, after reading the source code of kured, I didn't find any Kubernetes API usages that require these permissions. Therefore, for security reasons, I suggest checking these permissions to determine if they are truly unnecessary. If they are, the issue should be fixed by removing the unnecessary permission or or other feasible methods.

Yseona avatar May 31 '24 07:05 Yseona