Vendor
The maclof kubernetes-client library versions 0.17.0 through 0.31.x fails to verify TLS certificates during kubeconfig parsing, enabling on-path attackers to perform MitM attacks to intercept credentials.