← Back to CVE search

CVE-2026-15584

OpenShift

Description

A privilege escalation vulnerability was found in the incluster-checks tool for OpenShift. The tool creates privileged debug pods with host filesystem access in the shared default namespace, where any user with the standard edit role can exec into them and obtain root access on cluster nodes.

CVSS 7.5EPSS 0.246%Risk 0.77
View source
Published
2026-07-13 13:16:30
Affected versions
unknown
Type
Critical software
Vector
CVSS:3.1/AV:N/AC:H/PR:L/UI:N/S:U/C:H/I:H/A:H