Insecure permissions in contour v1.28.3 allows attackers to access sensitive data and escalate privileges by obtaining the service account's token.
{
"cpes": [
"cpe:2.3:a:projectcontour:contour:*:*:*:*:*:kubernetes:*:*"
],
"severity": "Critical"
}