CVE-2026-66792
Last modified
CVE-2026-66792 is a critical-severity vulnerability rated 9.9/10 on the CVSS scale. A flaw was found in the multicloud-operators-subscription component. This vulnerability allows a user on a managed cluster to escalate their privileges by creating a Subscription with specific, crafted annotations. EPSS estimates a 0.43% chance of exploitation in the next 30 days.
Description
A flaw was found in the multicloud-operators-subscription component. This vulnerability allows a user on a managed cluster to escalate their privileges by creating a Subscription with specific, crafted annotations. Successful exploitation grants the attacker the ability to deploy resources into any namespace with the elevated permissions of the controller's Service Account, potentially leading to unauthorized access and control over cluster resources.
Metrics
Weakness Enumeration
Affected Software
Source: CNA advisory (CVE.org). NVD analysis pending.
| Vendor | Product | Versions |
|---|---|---|
| Red Hat | Multicluster Global Hub 1.4.9 | All versions |
| Red Hat | Red Hat Advanced Cluster Management for Kubernetes 2.11 | All versions |
| Red Hat | Red Hat Advanced Cluster Management for Kubernetes 2.13 | All versions |
| Red Hat | Red Hat Advanced Cluster Management for Kubernetes 2.14 | All versions |
| Red Hat | Red Hat Advanced Cluster Management for Kubernetes 2.15 | All versions |
| Red Hat | Red Hat Advanced Cluster Management for Kubernetes 2.16 | All versions |
| Red Hat | Red Hat Advanced Cluster Management for Kubernetes 2.17 | All versions |
| Red Hat | Red Hat OpenShift Container Platform 4 | All versions |
References
Timeline
- Published
- Last Modified
- Status
- Awaiting Analysis
Frequently Asked Questions
What is CVE-2026-66792?
How severe is CVE-2026-66792?
How do I fix CVE-2026-66792?
How Strix Helps
- Uncovering a hidden BOLA in Appsmith's snapshot logicStrix autonomously discovered a BOLA/IDOR vulnerability in Appsmith's snapshot deletion path.
- Autonomous PentestingAI agents that find and validate exploitable vulnerabilities like this one across your applications.
- PR ReviewsPentest every pull request so vulnerable code is caught before it ships to production.
- AI Penetration TestingHow AI-driven penetration testing continuously covers your attack surface.
Related CVEs from 2026
- CVE-2026-66786A flaw was found in submariner. In cert-auth mode, the conne…9.1
- CVE-2026-66787A flaw was found in the lighthouse component of Red Hat Adva…5.4
- CVE-2026-66788A flaw was found in Lighthouse. A remote attacker, by compro…3.7
- CVE-2026-66789Rejected reason: This CVE ID was assigned in error as a dupl…
- CVE-2026-6679A heap buffer overflow could occur in the DTLS 1.3 ACK seria…7.5
- CVE-2026-66790Rejected reason: This CVE ID was assigned in error as a dupl…
- CVE-2026-66793A flaw was found in the governance-policy-addon-controller c…8.8
- CVE-2026-66794A flaw was found in the `cluster-proxy-addon` component of M…9.3
- CVE-2026-66795A flaw was found in the managedcluster-import-controller. Th…9.9
- CVE-2026-66797Improper access control in CloudStack's annotation functiona…5.4
- CVE-2026-66798Use after free in Microsoft Edge (Chromium-based) allows an …4.3
- CVE-2026-66799Heap-based buffer overflow in Windows Key Guard allows an au…7.8
Are you affected by CVE-2026-66792?
Run a free Strix scan to check your systems for this vulnerability.
Scan your code nowSource: NVD / NIST
