k8sallowedrepos can be bypassed if repo entries lack a trailing /.Attackers exploit prefix matching to pull images from fake subdomains like
myrepo.io.attacker.com. Aqua shows real examples, a fixed v2 policy, and Trivy detection.More: https://ku.bz/fYQfsmHt-
