What is CVE-2026-18621?
This vulnerability was found in the Data Science Pipelines (DSP) component. An attacker with namespace editor privileges can bypass security hardening by submitting a malicious Argo Workflow via the V1 API path, causing the API server to create pods with elevated privileges acting as a 'confused deputy'. Users of DSP should immediately apply the security updates provided by the vendor.
Azərbaycanca: Bu zəiflik Data Science Pipelines (DSP) komponentində aşkar edilib. Ad sahəsi redaktoru (namespace editor) icazələrinə malik təcavüzkar V1 API yolu ilə zərərli Argo Workflow təqdim edərək təhlükəsizlik sərtləşdirməsini keçə və API serverini 'confused deputy' kimi istifadə edərək yüksək imtiyazlı pod-lar yarada bilər. DSP istifadəçiləri təchizatçı tərəfindən təqdim edilən təhlükəsizlik yeniləməsini dərhal tətbiq etməlidirlər.
FAQ1
How does the CVE-2026-18621 vulnerability in the Data Science Pipelines (DSP) component lead to privilege escalation?
In this vulnerability, an attacker with namespace editor privileges can bypass security hardening by submitting a malicious Argo Workflow via the V1 API path. This causes the API server to act as a 'confused deputy', allowing the creation of pods with elevated privileges.
See also6
This explainer is AI-written from source data — skopnix's own reporting on this CVE; CVSS scores, vendors and versions are never invented. See NVD for the official record.