Privilege Escalation Vulnerability in StackRox/RHACS Central by Red Hat
CVE-2026-19278
6.8MEDIUM
What is CVE-2026-19278?
A vulnerability exists in the StackRox/RHACS Central's Auth Machine-to-Machine (M2M) token exchange mechanism. This issue arises when administrators configure role mappings, causing the system to utilize unanchored regular expressions for validating claim values. As a result, an attacker possessing a valid OpenID Connect (OIDC) token can exploit the flaw by presenting a claim value that acts as a superstring of a configured pattern, leading to unauthorized role access. This issue poses a significant risk of privilege escalation, enabling attackers to gain elevated privileges within the system.
References
CVSS V3.1
Score:
6.8
Severity:
MEDIUM
Confidentiality:
High
Integrity:
High
Availability:
High
Attack Vector:
Network
Attack Complexity:
High
Privileges Required:
Low
User Interaction:
None
Scope:
Unchanged
Timeline
Vulnerability published
Vulnerability Reserved
Credit
Red Hat would like to thank Sergey Kanibor (r0binak) for reporting this issue.