What is CVE-2026-73122?
A vulnerability found in the multicloud-operators-channel component of Red Hat Advanced Cluster Management allows a compromised agent from a managed cluster to gain unauthorized access to sensitive information. The agent can read all Secrets and ConfigMaps, posing a risk of confidential data exfiltration. Affected users should apply security updates immediately.
Azərbaycanca: Red Hat Advanced Cluster Management (RHACM) multicloud-operators-channel komponentində aşkar edilmiş bu zəiflik, idarə olunan klasterdəki kompromatə olunmuş bir agentə həssas məlumatlara icazəsiz giriş imkanı verir. Agent bütün Secrets və ConfigMaps resurslarını oxuya bilir ki, bu da məxfi məlumatların sızması riski yaradır. Təsirlənmiş RHACM istifadəçiləri dərhal təhlükəsizlik yeniləmələrini tətbiq etməlidir.
Related CVEs
link basis: same weakness class CWE-200; shared vendor: Red Hat
FAQ2
Which component of Red Hat Advanced Cluster Management does CVE-2026-73122 affect?
This vulnerability affects the multicloud-operators-channel component of Red Hat Advanced Cluster Management.
What type of confidential data can a threat actor access by exploiting CVE-2026-73122?
A threat actor can read all Secrets and ConfigMaps resources, which poses a risk of sensitive data exfiltration.
See also6
This explainer is AI-written from source data — skopnix's own reporting on this CVE; CVSS scores, vendors and versions are never invented. See NVD for the official record.