CVE-2026-17107
A flaw was found in the cluster-proxy service-proxy component used in Red Hat Advanced Cluster Management for Kubernetes (RHACM) and multicl
CVSS
8.5
High
EPSS
0.3%
p27
KEV
—
Exploit Today
8
0-100
Published: Jul 24, 2026 · Last modified: Aug 9, 2026 · CWE-441
0.2%EPSS · 30 days0.3%
2026-07-252026-08-08
A flaw was found in the cluster-proxy service-proxy component used in Red Hat Advanced Cluster Management for Kubernetes (RHACM) and multicluster-engine (MCE). The service-proxy appends impersonation group headers to proxied requests without first removing caller-supplied values, and the spoke ServiceAccount holds unrestricted impersonation permissions. An authenticated hub principal can inject an Impersonate-Group header to escalate to cluster-admin on every managed cluster.
- access.redhat.comhttps://access.redhat.com/errata/RHSA-2026:46885
- access.redhat.comhttps://access.redhat.com/errata/RHSA-2026:47388
- access.redhat.comhttps://access.redhat.com/errata/RHSA-2026:47735
- access.redhat.comhttps://access.redhat.com/errata/RHSA-2026:47949
- access.redhat.comhttps://access.redhat.com/errata/RHSA-2026:47953
- access.redhat.comhttps://access.redhat.com/errata/RHSA-2026:47974
- access.redhat.comhttps://access.redhat.com/errata/RHSA-2026:48284
- access.redhat.comhttps://access.redhat.com/security/cve/CVE-2026-17107
- bugzilla.redhat.comhttps://bugzilla.redhat.com/show_bug.cgi?id=2506771
CVECVSSEPSSKEVRExploitTitleMod.
CVE-2026-449646.5 MED8.9%
——3In versions of the Datadog Android application prior to v545-5.9.2, OnCallNotificationActivity is declared exported with no permission guard. A co-installed application can launch it with attacker-controlled Intent extras, including a full-screen lock-screen message, an arbitrary on-call page ID, and an arbitrary Intent to run inside the Datadog process.
This requires:
A malicious application co-installed on the victim's device.
An active Datadog session in the Android app.
Impact: After a single tap on the Acknowledge button, the app sends a forged on-call acknowledgement to the backend under the victim's session, launches the attacker-supplied Intent from within the Datadog process (reaching otherwise non-exported components), and turns on the screen while dismissing the keyguard.2dCVE-2026-449459.1 CRI22.7%
——7A privilege escalation vulnerability exists in Rancher's impersonation middleware (pkg/auth/requests/impersonate.go). An authenticated Rancher user with the default user
global role can gain full administrative access to the Rancher control
plane and transitively to all downstream clusters it manages.
This issue affects Rancher: from 2.11.0 before 2.11.16, from 2.12.0 before 2.12.12, from 2.13.0 before 2.13.8, and from 2.14.0 before 2.14.2.4dCVE-2026-546636.1 MED7.8%
——2swagger-typescript-api generates API clients for Fetch or Axios from OpenAPI specifications. Prior to 13.12.2, src/resolved-swagger-schema.ts warmUpRemoteSchemasCache resolves external $ref URLs and fetchRemoteSchemaDocument uses isHttpUrl to fetch any http or https target without private IP, redirect, DNS rebinding, or same-origin validation, allowing an attacker-controlled OpenAPI spec to make the generator issue requests to internal or link-local services. This issue is fixed in version 13.12.2.10dCVE-2026-439108.2 HIG15.0%
——5Appium Java Client is the Java language binding for writing Appium tests that conform to the W3C WebDriver protocol. From 8.2.1 until 10.1.1, when directConnect(true) is enabled, AppiumCommandExecutor.setDirectConnect() reads the directConnectHost, directConnectPort, and directConnectPath fields from the server's NEW_SESSION response and rebuilds the client's server URL from them, validating only that the protocol is https, with no host allowlist or IP validation; a rogue or compromised server can therefore redirect all subsequent session traffic to an arbitrary destination, enabling full interception of session traffic and a server-side request forgery pivot to internal hosts, including cloud metadata (IMDS) credential theft. This vulnerability is fixed in 10.1.1.3dCVE-2026-4293310.0 CRI20.7%
——6Pronetiqs IntraVUE versions 3.2.1a14 and prior have an unintended proxy or intermediary vulnerability which could allow an attacker to use an active proxy, which would bypass OT segmentation.13dCVE-2026-130626.5 MED1.7%
——1An authenticated user with write privileges on a Queryable Encryption-enabled collection may be able to modify internal encryption metadata fields that are intended to be server-controlled, by sending crafted write commands through the mongos router on a sharded cluster. This can result in corruption of encrypted query correctness.4d