Red Hat OpenShift Pipelines是美国红帽(Red Hat)公司的一个Kubernetes原生持续集成与持续交付平台。 Red Hat OpenShift Pipelines存在安全漏洞,该漏洞源于tekton-scheduler-rolebinding ClusterRoleBinding授予system:authenticated组对Kueue和cert-manager自定义资源的写访问权限,可能导致任何经过身份验证的用户破坏工作负载调度、篡改调度优先级、删除其他租户的Workl
| Vendor | Product | Version Range | Status |
|---|---|---|---|
| Red Hat | OpenShift Pipelines | any |
unaffected |
any |
affected | ||
any |
affected | ||
any |
affected | ||
any |
unaffected | ||
any |
affected | ||
| Red Hat | Red Hat OpenShift Builds 1.7.3 | 1783341609< * |
unaffected |
| Red Hat | Red Hat OpenShift Builds 1.8.1 | 1784121108< * |
unaffected |
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| Vendor | Product | Affected Versions | CPE | Subscribe |
|---|---|---|---|---|
| Red Hat | Red Hat OpenShift Builds 1.7.3 | 1783341609 ~ * |
cpe:/a:redhat:openshift_builds:1.7::el9
|
|
| Red Hat | Red Hat OpenShift Builds 1.8.1 | 1784121108 ~ * |
cpe:/a:redhat:openshift_builds:1.8::el9
|
|
| Red Hat | OpenShift Pipelines | - |
cpe:/a:redhat:openshift_pipelines:1
|
|
| Red Hat | OpenShift Pipelines | - |
cpe:/a:redhat:openshift_pipelines:1
|
|
| Red Hat | OpenShift Pipelines | - |
cpe:/a:redhat:openshift_pipelines:1
|
|
| Red Hat | OpenShift Pipelines | - |
cpe:/a:redhat:openshift_pipelines:1
|
|
| Red Hat | OpenShift Pipelines | - |
cpe:/a:redhat:openshift_pipelines:1
|
|
| Red Hat | OpenShift Pipelines | - |
cpe:/a:redhat:openshift_pipelines:1
|
|
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POC| CVE-2026-10843 | 7.2 HIGH | Cloud-credential-operator: cco mint-mode credentialsrequest manifests grant account-wide i |
| CVE-2026-10805 | 6.7 MEDIUM | Networkmanager: networkmanager: local privilege escalation via malformed mud urls in dhcli |
No comments yet