The Kubernetes API server component in Kubernetes versions prior to 1.15.9, 1.16.0-1.16.6, and 1.17.0-1.17.2 has been found to be vulnerable to a denial of service attack via successful API requests.
{
    "github_reviewed_at": "2021-05-06T21:48:16Z",
    "severity": "MODERATE",
    "github_reviewed": true,
    "cwe_ids": [
        "CWE-400",
        "CWE-770",
        "CWE-789"
    ],
    "nvd_published_at": "2020-03-27T15:15:00Z"
}