{"id":"CVE-2026-10090","published":"2026-08-05T09:18:14.667","lastModified":"2026-08-06T15:37:22.093","description":"A flaw was found in the Application Subscription controller (multicluster-operators-subscription) of Red Hat Advanced Cluster Management for Kubernetes (ACM). A user with namespace-scoped \"edit\" privileges in an ACM hub namespace can create a Channel resource pointing to a Helm repository they control and a Subscription resource referencing it. The app-subscription controller fetches and applies the Helm chart contents with its own elevated authority, without verifying whether the subscription creator holds the \"open-cluster-management:subscription-admin\" role and without restricting applied resources to the subscription namespace. This allows the attacker to include cluster-scoped resources in the Helm chart, such as a ClusterRoleBinding granting the attacker's ServiceAccount the \"cluster-admin\" ClusterRole. Successful exploitation results in full cluster-admin privilege escalation. This contradicts the ACM documentation which states that non-subscription-admin users should have resources deployed into the subscription namespace only.","cvssScore":9.9,"cvssSeverity":"CRITICAL","cvssVector":"CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:C/C:H/I:H/A:H","cwes":["CWE-267"],"vendors":[],"products":[],"references":[{"url":"https://access.redhat.com/security/cve/CVE-2026-10090","tags":[]},{"url":"https://bugzilla.redhat.com/show_bug.cgi?id=2483292","tags":[]}],"exploitRefs":[],"hasPoc":false,"ai":{"summary":"The flaw allows a user with namespace-scoped 'edit' privileges to create a Subscription resource that includes cluster-scoped resources, leading to full cluster-admin privilege escalation.","exploitability":"Exploitation is moderately hard as it requires the attacker to have namespace-scoped 'edit' privileges and control over a Helm repository. Precondition is the presence of the 'edit' privilege in an ACM hub namespace.","blast_radius":"If exploited, the attacker can gain full cluster-admin privileges, impacting all resources and operations within the cluster.","remediation":"Disable the Application Subscription controller or restrict access to the 'multicluster-operators-subscription' feature to only 'subscription-admin' roles.","detection":"No reliable host or network indicator is derivable from the published description.","tags":["rce","privilege-escalation","kubernetes","acm"],"model":"qwen2.5:7b-instruct","analyzedAt":"2026-09-27T08:58:54.398Z"}}