AUGUST 15, 2026
Live Feed
Back to database
Case File

CVE-2026-71473

HIGH · CVSS 8.5 EPSS 0.26% Public Exploit

Source: NVD + CISA KEV + EPSS · Published 2026-08-12 · Last synced 2026-08-15

CyberRota Analysis

AI-Generated

A vulnerability exists in the `search-v2-operator` component that allows users with specific administrative permissions on a managed cluster to inject arbitrary configuration data. This can lead to the replacement of container images, compromising the integrity of the managed cluster. Organizations utilizing this component should prioritize remediation to prevent potential exploitation and maintain security.

Public Exploit Signal

A public exploit, PoC, GitHub repository or Metasploit reference was detected for this CVE.

Detected Signals
exploit

Note: these links are listed for security research and verification purposes only.

CVE
CVE-2026-71473
Severity
HIGH
CVSS
8.5
EPSS
0.26%

Original NVD Description

A flaw was found in the `search-v2-operator` component. A user with specific administrative permissions on a managed cluster can exploit a vulnerability that allows them to inject arbitrary configuration data. This manipulation can override critical settings, leading to the replacement of container images. This ultimately results in container image injection on the managed cluster, potentially compromising its integrity.