Vulnerability in Multicloud Operators Channel Affects Red Hat Products
CVE-2026-64927

6.4MEDIUM

Key Information:

Vendor

Red Hat

Vendor
CVE Published:
12 August 2026

What is CVE-2026-64927?

A flaw exists in the multicloud-operators-channel component that enables users with specific permissions to manipulate sensitive information, termed 'Secrets', within various namespaces of the system. If exploited, this flaw could allow an attacker to modify Secrets in unauthorized locations, potentially granting them access to sensitive data or elevated privileges within the system, thereby compromising overall security.

References

CVSS V3.1

Score:
6.4
Severity:
MEDIUM
Confidentiality:
Low
Integrity:
Low
Availability:
Low
Attack Vector:
Network
Attack Complexity:
Low
Privileges Required:
Low
User Interaction:
None
Scope:
Changed

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.