Kubernetes 1.x — End of Life
Active Medium risk EOL: Jun 28, 2027in 338d21 releases in this series51 CVEs
Kubernetes 1.x — All releases
| Version | Released | Active support | EOL date | Latest patch | Status | Alert me |
|---|---|---|---|---|---|---|
| 1.36 | Apr 22, 2026 | Apr 28, 2027 | Jun 28, 2027 | 1.36.3 | Active | |
| 1.35 | Dec 17, 2025 | Dec 28, 2026 | Feb 28, 2027 | 1.35.7 | Active | |
| 1.34 | Aug 27, 2025 | Aug 27, 2026 | Oct 27, 2026 | 1.34.10 | Active | |
| 1.33 | Apr 23, 2025 | Apr 28, 2026 | Jun 28, 2026 | 1.33.13 | EOL | |
| 1.32 | Dec 11, 2024 | Dec 28, 2025 | Feb 28, 2026 | 1.32.13 | EOL | |
| 1.31 | Aug 13, 2024 | Aug 28, 2025 | Nov 11, 2025 | 1.31.14 | EOL | |
| 1.30 | Apr 17, 2024 | Apr 28, 2025 | Jul 15, 2025 | 1.30.14 | EOL | |
| 1.29 | Dec 13, 2023 | Dec 28, 2024 | Feb 28, 2025 | 1.29.15 | EOL | |
| 1.28 | Aug 15, 2023 | Aug 28, 2024 | Oct 28, 2024 | 1.28.15 | EOL | |
| 1.27 | Apr 11, 2023 | Apr 28, 2024 | Jun 28, 2024 | 1.27.16 | EOL | |
| 1.26 | Dec 8, 2022 | Dec 28, 2023 | Feb 28, 2024 | 1.26.15 | EOL | |
| 1.25 | Aug 23, 2022 | Aug 27, 2023 | Oct 27, 2023 | 1.25.16 | EOL | |
| 1.24 | May 3, 2022 | May 28, 2023 | Jul 28, 2023 | 1.24.17 | EOL | |
| 1.23 | Dec 7, 2021 | Dec 28, 2022 | Feb 28, 2023 | 1.23.17 | EOL | |
| 1.22 | Aug 4, 2021 | Aug 28, 2022 | Oct 28, 2022 | 1.22.17 | EOL | |
| 1.21 | Apr 8, 2021 | Apr 28, 2022 | Jun 28, 2022 | 1.21.14 | EOL | |
| 1.20 | Dec 8, 2020 | Dec 28, 2021 | Feb 28, 2022 | 1.20.15 | EOL | |
| 1.19 | Aug 26, 2020 | Aug 28, 2021 | Oct 28, 2021 | 1.19.16 | EOL | |
| 1.18 | Mar 25, 2020 | Apr 28, 2021 | Jun 18, 2021 | 1.18.20 | EOL | |
| 1.17 | Dec 7, 2019 | — | Dec 25, 2020 | 1.17.17 | EOL | |
| 1.16 | Sep 18, 2019 | — | Aug 4, 2020 | 1.16.15 | EOL |
CVEs affecting Kubernetes 1.x (51)
| CVE | Severity | CVSS | EPSS | KEV | Cycle | Description | Published |
|---|---|---|---|---|---|---|---|
| CVE-2020-8562 | LOW | 2.2 | 1.08% | — | 1.17 | As mitigations to a report from 2019 and CVE-2020-8555, Kubernetes attempts to prevent proxied connections from accessin… | Feb 1, 2022 |
| CVE-2020-8562 | LOW | 2.2 | 1.08% | — | 1.19 | As mitigations to a report from 2019 and CVE-2020-8555, Kubernetes attempts to prevent proxied connections from accessin… | Feb 1, 2022 |
| CVE-2020-8562 | LOW | 2.2 | 1.08% | — | 1.20 | As mitigations to a report from 2019 and CVE-2020-8555, Kubernetes attempts to prevent proxied connections from accessin… | Feb 1, 2022 |
| CVE-2020-8562 | LOW | 2.2 | 1.08% | — | 1.21 | As mitigations to a report from 2019 and CVE-2020-8555, Kubernetes attempts to prevent proxied connections from accessin… | Feb 1, 2022 |
| CVE-2020-8562 | LOW | 2.2 | 1.08% | — | 1.18 | As mitigations to a report from 2019 and CVE-2020-8555, Kubernetes attempts to prevent proxied connections from accessin… | Feb 1, 2022 |
| CVE-2020-8562 | LOW | 2.2 | 1.08% | — | 1.16 | As mitigations to a report from 2019 and CVE-2020-8555, Kubernetes attempts to prevent proxied connections from accessin… | Feb 1, 2022 |
| CVE-2021-25740 | LOW | 3.1 | 1.95% | — | 1.33 | A security issue was discovered with Kubernetes that could enable users to send network traffic to locations they would … | Sep 20, 2021 |
| CVE-2021-25740 | LOW | 3.1 | 1.95% | — | 1.28 | A security issue was discovered with Kubernetes that could enable users to send network traffic to locations they would … | Sep 20, 2021 |
| CVE-2021-25740 | LOW | 3.1 | 1.95% | — | 1.34 | A security issue was discovered with Kubernetes that could enable users to send network traffic to locations they would … | Sep 20, 2021 |
| CVE-2021-25740 | LOW | 3.1 | 1.95% | — | 1.23 | A security issue was discovered with Kubernetes that could enable users to send network traffic to locations they would … | Sep 20, 2021 |
| CVE-2021-25740 | LOW | 3.1 | 1.95% | — | 1.20 | A security issue was discovered with Kubernetes that could enable users to send network traffic to locations they would … | Sep 20, 2021 |
| CVE-2021-25740 | LOW | 3.1 | 1.95% | — | 1.18 | A security issue was discovered with Kubernetes that could enable users to send network traffic to locations they would … | Sep 20, 2021 |
| CVE-2021-25740 | LOW | 3.1 | 1.95% | — | 1.31 | A security issue was discovered with Kubernetes that could enable users to send network traffic to locations they would … | Sep 20, 2021 |
| CVE-2021-25740 | LOW | 3.1 | 1.95% | — | 1.32 | A security issue was discovered with Kubernetes that could enable users to send network traffic to locations they would … | Sep 20, 2021 |
| CVE-2021-25740 | LOW | 3.1 | 1.95% | — | 1.19 | A security issue was discovered with Kubernetes that could enable users to send network traffic to locations they would … | Sep 20, 2021 |
| CVE-2021-25740 | LOW | 3.1 | 1.95% | — | 1.22 | A security issue was discovered with Kubernetes that could enable users to send network traffic to locations they would … | Sep 20, 2021 |
| CVE-2021-25740 | LOW | 3.1 | 1.95% | — | 1.30 | A security issue was discovered with Kubernetes that could enable users to send network traffic to locations they would … | Sep 20, 2021 |
| CVE-2021-25740 | LOW | 3.1 | 1.95% | — | 1.25 | A security issue was discovered with Kubernetes that could enable users to send network traffic to locations they would … | Sep 20, 2021 |
| CVE-2021-25740 | LOW | 3.1 | 1.95% | — | 1.26 | A security issue was discovered with Kubernetes that could enable users to send network traffic to locations they would … | Sep 20, 2021 |
| CVE-2021-25740 | LOW | 3.1 | 1.95% | — | 1.35 | A security issue was discovered with Kubernetes that could enable users to send network traffic to locations they would … | Sep 20, 2021 |
| CVE-2021-25740 | LOW | 3.1 | 1.95% | — | 1.27 | A security issue was discovered with Kubernetes that could enable users to send network traffic to locations they would … | Sep 20, 2021 |
| CVE-2021-25740 | LOW | 3.1 | 1.95% | — | 1.36 | A security issue was discovered with Kubernetes that could enable users to send network traffic to locations they would … | Sep 20, 2021 |
| CVE-2021-25740 | LOW | 3.1 | 1.95% | — | 1.29 | A security issue was discovered with Kubernetes that could enable users to send network traffic to locations they would … | Sep 20, 2021 |
| CVE-2021-25740 | LOW | 3.1 | 1.95% | — | 1.24 | A security issue was discovered with Kubernetes that could enable users to send network traffic to locations they would … | Sep 20, 2021 |
| CVE-2021-25740 | LOW | 3.1 | 1.95% | — | 1.16 | A security issue was discovered with Kubernetes that could enable users to send network traffic to locations they would … | Sep 20, 2021 |
| CVE-2021-25740 | LOW | 3.1 | 1.95% | — | 1.17 | A security issue was discovered with Kubernetes that could enable users to send network traffic to locations they would … | Sep 20, 2021 |
| CVE-2021-25740 | LOW | 3.1 | 1.95% | — | 1.21 | A security issue was discovered with Kubernetes that could enable users to send network traffic to locations they would … | Sep 20, 2021 |
| CVE-2020-8561 | MEDIUM | 4.1 | 2.10% | — | 1.21 | A security issue was discovered in Kubernetes where actors that control the responses of MutatingWebhookConfiguration or… | Sep 20, 2021 |
| CVE-2020-8561 | MEDIUM | 4.1 | 2.10% | — | 1.20 | A security issue was discovered in Kubernetes where actors that control the responses of MutatingWebhookConfiguration or… | Sep 20, 2021 |
| CVE-2020-8561 | MEDIUM | 4.1 | 2.10% | — | 1.22 | A security issue was discovered in Kubernetes where actors that control the responses of MutatingWebhookConfiguration or… | Sep 20, 2021 |
| CVE-2020-8554 | MEDIUM | 6.3 | 9.27% | — | 1.26 | Kubernetes API server in all versions allow an attacker who is able to create a ClusterIP service and set the spec.exter… | Jan 21, 2021 |
| CVE-2020-8554 | MEDIUM | 6.3 | 9.27% | — | 1.16 | Kubernetes API server in all versions allow an attacker who is able to create a ClusterIP service and set the spec.exter… | Jan 21, 2021 |
| CVE-2020-8554 | MEDIUM | 6.3 | 9.27% | — | 1.35 | Kubernetes API server in all versions allow an attacker who is able to create a ClusterIP service and set the spec.exter… | Jan 21, 2021 |
| CVE-2020-8554 | MEDIUM | 6.3 | 9.27% | — | 1.28 | Kubernetes API server in all versions allow an attacker who is able to create a ClusterIP service and set the spec.exter… | Jan 21, 2021 |
| CVE-2020-8554 | MEDIUM | 6.3 | 9.27% | — | 1.27 | Kubernetes API server in all versions allow an attacker who is able to create a ClusterIP service and set the spec.exter… | Jan 21, 2021 |
| CVE-2020-8554 | MEDIUM | 6.3 | 9.27% | — | 1.20 | Kubernetes API server in all versions allow an attacker who is able to create a ClusterIP service and set the spec.exter… | Jan 21, 2021 |
| CVE-2020-8554 | MEDIUM | 6.3 | 9.27% | — | 1.18 | Kubernetes API server in all versions allow an attacker who is able to create a ClusterIP service and set the spec.exter… | Jan 21, 2021 |
| CVE-2020-8554 | MEDIUM | 6.3 | 9.27% | — | 1.36 | Kubernetes API server in all versions allow an attacker who is able to create a ClusterIP service and set the spec.exter… | Jan 21, 2021 |
| CVE-2020-8554 | MEDIUM | 6.3 | 9.27% | — | 1.31 | Kubernetes API server in all versions allow an attacker who is able to create a ClusterIP service and set the spec.exter… | Jan 21, 2021 |
| CVE-2020-8554 | MEDIUM | 6.3 | 9.27% | — | 1.17 | Kubernetes API server in all versions allow an attacker who is able to create a ClusterIP service and set the spec.exter… | Jan 21, 2021 |
| CVE-2020-8554 | MEDIUM | 6.3 | 9.27% | — | 1.32 | Kubernetes API server in all versions allow an attacker who is able to create a ClusterIP service and set the spec.exter… | Jan 21, 2021 |
| CVE-2020-8554 | MEDIUM | 6.3 | 9.27% | — | 1.33 | Kubernetes API server in all versions allow an attacker who is able to create a ClusterIP service and set the spec.exter… | Jan 21, 2021 |
| CVE-2020-8554 | MEDIUM | 6.3 | 9.27% | — | 1.29 | Kubernetes API server in all versions allow an attacker who is able to create a ClusterIP service and set the spec.exter… | Jan 21, 2021 |
| CVE-2020-8554 | MEDIUM | 6.3 | 9.27% | — | 1.19 | Kubernetes API server in all versions allow an attacker who is able to create a ClusterIP service and set the spec.exter… | Jan 21, 2021 |
| CVE-2020-8554 | MEDIUM | 6.3 | 9.27% | — | 1.23 | Kubernetes API server in all versions allow an attacker who is able to create a ClusterIP service and set the spec.exter… | Jan 21, 2021 |
| CVE-2020-8554 | MEDIUM | 6.3 | 9.27% | — | 1.22 | Kubernetes API server in all versions allow an attacker who is able to create a ClusterIP service and set the spec.exter… | Jan 21, 2021 |
| CVE-2020-8554 | MEDIUM | 6.3 | 9.27% | — | 1.24 | Kubernetes API server in all versions allow an attacker who is able to create a ClusterIP service and set the spec.exter… | Jan 21, 2021 |
| CVE-2020-8554 | MEDIUM | 6.3 | 9.27% | — | 1.34 | Kubernetes API server in all versions allow an attacker who is able to create a ClusterIP service and set the spec.exter… | Jan 21, 2021 |
| CVE-2020-8554 | MEDIUM | 6.3 | 9.27% | — | 1.30 | Kubernetes API server in all versions allow an attacker who is able to create a ClusterIP service and set the spec.exter… | Jan 21, 2021 |
| CVE-2020-8554 | MEDIUM | 6.3 | 9.27% | — | 1.25 | Kubernetes API server in all versions allow an attacker who is able to create a ClusterIP service and set the spec.exter… | Jan 21, 2021 |
| CVE-2020-8554 | MEDIUM | 6.3 | 9.27% | — | 1.21 | Kubernetes API server in all versions allow an attacker who is able to create a ClusterIP service and set the spec.exter… | Jan 21, 2021 |
Frequently asked questions
Is Kubernetes 1 end of life?
Partially. Some Kubernetes 1.x releases have reached EOL. Check the version table above for the exact status of each sub-release.
What CVEs affect Kubernetes 1?
There are 51 CVEs tracked for Kubernetes 1.x. See the full list above with CVSS and EPSS scores.
What is the latest Kubernetes 1 version?
The latest Kubernetes 1.x patch release is 1.36.3, released on July 22, 2026. Always run the latest patch to benefit from all security fixes.
When was Kubernetes 1 first released?
Kubernetes 1.0 was initially released on April 22, 2026. See the full version timeline in the table above.
Is it safe to run Kubernetes 1 in production?
Kubernetes 1 is still supported and safe for production use until June 28, 2027. Ensure you are running the latest patch version (1.36.3) to have all security fixes applied.
Data sourced from endoflife.date · CVE data from NVD · EPSS from FIRST.org · KEV from CISA
