CVE-2026-9165

A flaw was found in Red Hat Advanced Cluster Security for Kubernetes (RHACS). Central does not limit the depth of GraphQL queries served on the authenticated GraphQL API. An authenticated user with a valid API token can send deeply nested queries that cause excessive resource consumption in Central, resulting in a denial of service for the management plane.
Configurations

No configuration.

History

No history.

Information

Published : 2026-07-06 09:16

Updated : 2026-09-08 08:17


NVD link : CVE-2026-9165

Mitre link : CVE-2026-9165

CVE.ORG link : CVE-2026-9165


JSON object : View

Products Affected

No product.

CWE
CWE-400

Uncontrolled Resource Consumption