An issue in kubevirt kubevirt v1.2.0 and before allows a local attacker to execute arbitrary code via a crafted command to get the token component.
"https://storage.googleapis.com/osv-test-cve-osv-conversion/osv-output/CVE-2024-33394.json"