← Back to search

CVE-2026-10059

9.1 CRITICAL

Published 2026-08-05 · Updated 2026-08-06

AI risk analysis

Summary
The flaw allows a tenant administrator with namespace-scoped privileges to escalate their permissions by creating a namespaced ClusterCurator, leading to full cluster control.
Exploitability
Exploitation requires a tenant administrator with specific privileges and knowledge of the ClusterCurator feature. The vulnerability is relatively hard to exploit due to the required access level.
Blast radius
If exploited, the tenant administrator gains full control over the cluster, potentially leading to widespread damage or data loss.
Detection
No reliable host or network indicator is derivable from the published description.
Prioritized remediation
Disable the ClusterCurator feature or restrict access to it strictly to users with the necessary permissions.
auth-bypasspriv-escalationkubernetes

Analysis generated locally by qwen2.5:7b-instruct (no data left the box). AI-assisted — verify against primary sources before acting.

NVD description

A flaw was found in the Multicluster Engine for Kubernetes ClusterCurator controller. A tenant administrator with namespace-scoped privileges can exploit this vulnerability by creating a namespaced ClusterCurator. This action inadvertently grants the tenant administrator the ability to mint a token for a ServiceAccount with cluster-wide administrative authority. This leads to a privilege escalation, allowing the tenant administrator to gain full control over the cluster.

CVSS vector

CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:C/C:H/I:H/A:H

Weaknesses

CWE-266

All references

Source data: NVD (nvd.nist.gov), public domain. Exploit-DB.ai adds local AI analysis for defensive use only.

Related CVEs

Related by shared AI tags and CWE weakness class. Browse the full archive.