CVE-2026-71473

A flaw was found in the `search-v2-operator` component. A user with specific administrative permissions on a managed cluster can exploit a vulnerability that allows them to inject arbitrary configuration data. This manipulation can override critical settings, leading to the replacement of container images. This ultimately results in container image injection on the managed cluster, potentially compromising its integrity.
Configurations

No configuration.

History

No history.

Information

Published : 2026-08-12 22:17

Updated : 2026-08-27 04:16


NVD link : CVE-2026-71473

Mitre link : CVE-2026-71473

CVE.ORG link : CVE-2026-71473


JSON object : View

Products Affected

No product.

CWE
CWE-915

Improperly Controlled Modification of Dynamically-Determined Object Attributes